Privacy Policy
Last updated: July 14, 2026
1. Overview
OpenSS (“we”, “our”, or “us”) is a native macOS application that operates as a local teleprompter and AI meeting assistant. We are committed to protecting your personal information and being transparent about what data is collected, how it is used, and your rights regarding it.
This Privacy Policy applies to the OpenSS desktop application, command-line interface, website (https://openss.xyz), API (https://api.openss.xyz), and related backend services.
2. Data We Do Not Collect
OpenSS is built to minimise data collection. By design, we do not collect or store:
- Screen captures or screenshots from your device
- Audio or video from your meetings
- Your AI provider API keys (stored exclusively in your macOS Keychain for supported CLI workflows)
See “AI Provider Requests” below for how extracted text and short-lived hosted-AI responses are handled.
3. Data We Do Collect
We collect the data necessary to operate accounts, provide hosted AI, process payments, and keep the service secure:
- Account data: Email address, name, and authentication credentials when you create an account or register for the beta.
- Billing data: Stripe customer ID, subscription tier, and billing status. We do not store full card numbers — this is handled entirely by Stripe.
- Account-linked operational usage: For hosted AI, request status, selected hosted tier, unit usage, token counts, estimated cost, billing source, timestamps, latency, and idempotency identifiers. These records are linked to your account while retained; they are not anonymous.
- Aggregated analytics: Optional website analytics are disabled until you consent. Where configured, we may use de-identified aggregate feature usage to improve the product. Aggregate analytics do not include AI prompt or response content.
- Server logs: Standard server access logs (IP address, request path, timestamp) retained for up to 30 days for security and debugging purposes.
4. AI Provider Requests
When you use OpenSS in supported CLI BYOK (Bring Your Own Key) mode, queries are sent directly from your device to the AI provider you configured (such as OpenAI or Anthropic). These requests do not pass through our servers and are governed by your agreement with those providers.
When you use OpenSS-hosted AI on either Free or Pro, the submitted instruction and relevant screenshot image, OCR, or transcript are sent through the OpenSS service to the configured AI provider to generate a response. Pro users may also save chat-scoped context; when enabled, that context is sent alongside requests in that chat. We do not persist extracted prompt text or screenshots. Generated response content may be retained for up to 24 hours solely to support reliable retries and idempotency, then is automatically removed. The provider’s handling of request content is governed by its own privacy terms.
5. How We Use Your Data
- To authenticate your account and verify your subscription status
- To process payments via Stripe
- To send you product updates, security notices, and support responses
- To enforce our Terms of Service and prevent abuse
- To improve OpenSS features using anonymized aggregate signals
6. Data Storage & Security
Account and account-linked operational usage data are stored on securely managed servers for as long as needed to operate the service, comply with legal obligations, resolve disputes, and prevent abuse. Hosted-AI response content is automatically removed after up to 24 hours. Your BYOK provider API keys are stored exclusively in the native macOS Keychain on your device and never leave your machine. We use TLS encryption for data in transit and industry-standard security practices for data at rest.
7. Cookies and Consent Choices
OpenSS uses essential first-party cookies for account authentication, security and remembering your cookie choices. Optional analytics and marketing categories remain disabled unless you consent through the cookie-preferences control.
No targeted advertising or third-party marketing pixel is currently loaded on openss.xyz. If that changes, the optional category will remain subject to your consent and this policy will be updated. You can reopen Cookie preferences from the website footer at any time.
8. Third-Party Services
OpenSS integrates with the following third-party services, each governed by their own privacy policies:
- Stripe — payment processing
- OpenAI / Anthropic — AI inference (direct from device in BYOK mode, or through the OpenSS service when hosted AI is selected)
- Better Auth — authentication infrastructure
9. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access, correct, or delete the personal data we hold about you
- Withdraw consent at any time where processing is based on consent
- Request data portability
- Lodge a complaint with your local data protection authority
To exercise any of these rights, contact us at hello@southbytelabs.com.
10. Children’s Privacy
OpenSS is not directed at children under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal information, please contact us and we will delete it immediately.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify registered users of material changes via email. Continued use of OpenSS after changes constitutes acceptance of the updated policy.
12. Contact
For privacy-related questions or requests: hello@southbytelabs.com