Privacy Policy
Effective date: 11 September 2026
This policy explains what data we collect when you use godbrowser.io, the GodBrowser browser, the Cortex cluster, the dashboard, the REST API, and the MCP server (together, the "Services").
GodBrowser is a developer tool. We collect the minimum needed to run your account, and the browsing your automation performs on your own nodes stays on your nodes.
1. Who we are
The Services are operated by EFIRITY PTE. LTD., a company incorporated in Singapore (UEN 202402844G), registered office 68 Circular Road #02-01, Singapore (049422) ("GodBrowser", "we", "us"). We are the data controller for the data described here. Contact: support@godbrowser.io.
2. What we collect
- Account data — the email address or mobile number you register with, an optional display name, and your sign-in state. We never store your password in plaintext.
- API keys — stored only in hashed form, with a short non-secret prefix and metadata. The full key is shown to you once and cannot be recovered afterwards.
- Usage metadata — job identifiers, timestamps, task counts, which of your nodes are online, and usage counters for your account.
- Workflows and results — what you submit, and the result rows it produces.
- Cookies and local storage — see Section 5.
- Request logs — IP address, user agent, and timestamps, for security and debugging.
If you use the AI-driven account-register flow, the inputs you give it and its run metadata are stored like any other workflow. You are responsible for what you supply to it (see the Terms of Service).
3. What we do NOT collect
- We do not collect the browsing on your own nodes. GodBrowser runs on infrastructure you operate. The pages your automation loads and the traffic it generates stay there. We receive only what your workflow returns as results, plus operational metadata.
- We do not sell your personal data, and we do not use your workflow content for advertising or to train models.
- Your mobile number and SMS opt-in data are never shared for marketing or promotional purposes (Section 5b).
4. How your data is isolated
Account, workflow, result, and usage data is scoped to your account and separated from every other customer's. API keys are held only as hashes, and every API call is limited to the account behind the key.
5. Cookies & local storage
We use a small number of functional cookies and, on the public marketing site only, analytics cookies. We do not use advertising or cross-site tracking cookies.
gb_auth— keeps you signed in across thegodbrowser.iosites. Sign-in may set a few additional cookies or local-storage tokens needed to maintain your session, and our hosting may set minimal operational cookies.- Analytics cookies — set on the public marketing site (godbrowser.io) only, to tell returning visitors apart and group page views into a session. They are not set on the dashboard, the REST API, or the MCP server. For visitors in the EEA, the UK and Switzerland they are off by default and no analytics cookie is set.
- Measurement storage — the public marketing site stores two values in your browser (
gb_gt_vid,gb_gt_sent_v1) so that one browser is counted once. The first is a random value generated in your browser, is never shared, and reaches us only as a salted hash. Neither is set for visitors in the EU/EEA, the UK or Switzerland.
5b. Phone numbers, SMS, and mobile opt-in data
What we collect and why. If you add a mobile number to your account, we store it to send you one-time sign-in codes and account notifications by SMS (programme name: GodBrowser Alerts). We record when and how you consented — the timestamp, the channel, and the exact consent text shown to you. We do not send product news or marketing by SMS; if we ever do, it will require a separate opt-in, unchecked by default, that you can withdraw at any time.
Mobile opt-in data is not shared. No mobile information will be shared with third parties or affiliates for marketing or promotional purposes. Information sharing to subcontractors in support services, such as customer service, is permitted. All other use case categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties. In plain words: we do not share, sell, rent, or provide your mobile phone number or your messaging consent data to third parties or affiliates for marketing or promotional purposes, and we never treat your consent as something that can be passed to another sender.
Delivery. Messages are transmitted by a specialist SMS delivery subcontractor acting as our processor, which handles your number and the message content only to deliver that message and for no purpose of its own.
Frequency, rates, opt-out, and help. Message frequency varies — a sign-in code is sent only when you request one. Msg & data rates may apply. Reply STOP at any time to unsubscribe — this stops all SMS from GodBrowser to that number, including sign-in codes, so use another sign-in method afterwards. Reply HELP for help, or contact support@godbrowser.io. To remove the number entirely, delete your account at godbrowser.io/delete-account. Consent is not a condition of any purchase. Carriers are not liable for delayed or undelivered messages. The full programme description is at godbrowser.io/sms.
6. Service providers
We use a small number of providers to run the Services, each processing data only to provide their part of it: hosting and content delivery, database and authentication, transactional email, SMS delivery, an internal alerting tool used by our own staff, and web analytics on the public marketing site. We do not name them here; the current list of sub-processors, and a data-processing agreement, are available on request from support@godbrowser.io.
We do not use an advertising provider, and we do not currently use a payment processor; if that changes, the effective date above will be updated before any payment data is collected.
7. Data retention
Account data is kept while your account is active. Workflows, results and usage metadata are aged out on a rolling basis, and you can delete any workflow and its results at any time from the dashboard or the API — which removes both its rows and its stored files. Request and security logs are kept for a limited period. Hashed API keys persist until you revoke them. If you need a specific contractual retention period, ask at support@godbrowser.io.
8. Your rights
Depending on where you live, you may have the right to access, correct, export or delete your personal data, and to object to or restrict certain processing.
- Access or export: godbrowser.io/export-data — that page states what the export contains and the timeline (acknowledged within 3 business days, delivered within 30 days of a verified request). Signed-in users can request the same from the dashboard.
- Correction: use the support form or email support@godbrowser.io. You can rotate API keys and delete workflows, results, sessions and secrets yourself at any time.
- Account deletion: godbrowser.io/delete-account — no sign-in required; that page explains what is erased, what is retained and why, on the same timeline.
- If you are in the EU or UK, you may also complain to your local supervisory authority.
9. Security
We transmit data over TLS, store API keys only as hashes, keep each customer's data separated, and limit internal access on a least-privilege basis. No system is perfectly secure; we cannot guarantee absolute security, but we work to protect your data and respond promptly to incidents. To report a vulnerability, write to support@godbrowser.io.
10. International transfers
Your account, workflow, result and usage data is stored and processed in the European Union. Some providers described in Section 6 — including SMS delivery and analytics — process data in the United States. Your own nodes run wherever you operate them, and the browsing they perform stays there.
For transfers of personal data out of the EEA or the UK we rely on the European Commission's Standard Contractual Clauses (with the UK Addendum where applicable) or another lawful transfer mechanism.
11. Children
The Services are intended for developers and businesses. We do not knowingly collect data from children under 18.
12. Changes to this policy
We may update this policy as the Services evolve. Material changes are reflected by updating the effective date above. Continued use after an update means you accept the revised policy.
13. Contact
Questions or requests: support@godbrowser.io
EFIRITY PTE. LTD. · UEN 202402844G 68 Circular Road #02-01, Singapore (049422)