Your context, your control.
Agent checkpoints
Agent checkpoints store structured task state, artifact references and the latest version in Supabase through Vercel. Saving, listing and reading checkpoints do not send their contents to an AI provider. Agent key hashes, labels, optional task scopes and revocation status are stored. Keys are only shown when created. Checkpoint receipts retain request IDs and fingerprints for up to 90 days without task content. Only the latest checkpoint is retained; export before replacing information you need.
What is saved
We store the conversations you submit for AI processing, your context packs, project revisions, usage records, and a hash of your workspace key. Your browser stores the workspace key. A hashed network address helps limit abuse.
Who processes it
Supabase stores workspace data. Vercel hosts the service and routes AI requests through AI Gateway to OpenAI’s GPT model. The conversation and previous context pack are sent to these providers when you request an AI update. Their applicable processing and retention terms apply. We do not sell your project data or use it for advertising.
Your workspace key
Your recovery key is the credential for your workspace. Anyone with it can read, edit, export, or delete your projects and access billing controls. Keep it in a password manager. It is not placed in URLs. We cannot reconstruct a lost key. Use it on another device through Workspace → Restore.
Payments
Stripe processes payment details and keeps billing records. We store Stripe customer and subscription identifiers and your plan status. We do not receive full card numbers.
Deletion and export
Export packs as Markdown or JSON, or download your whole workspace. Deleting a project removes its stored conversations, generations, and revisions from the active database. Deleting a workspace removes its project data. Active subscriptions must end first. Usage counters without conversation content remain to enforce allowances. Infrastructure backups and legally required billing records may remain under provider retention policies.
What to leave out
Only submit information you have the right to share. Remove passwords, API keys, payment card details, and information that should not be sent to an AI provider. This service is not designed for regulated health or highly sensitive records.
Contact
Threadkeep is operated by Interesting Concepts LLC. For support, billing, privacy, or deletion requests, email hello@getsearchlight.io. Include your workspace ID when possible. Never send your recovery key.
Back to Threadkeep