Privacy Policy

Last Updated
February 2026
In Brief (TL;DR)

We value your privacy. We only collect essential data (email), use secure OAuth login methods, isolate your data with Supabase RLS, and offer full data deletion. No marketing trackers or selling of data.

1. Privacy-First Philosophy

At Silo, your privacy is not an option; it is the core of the project. We minimize data collection to the absolute strict necessity to make your "Second Brain" work.

2. Information Collected & OAuth

We collect your email address for account creation. When you use **Google or GitHub OAuth**, Silo **never** receives your third-party password. We only receive a secure authentication token and your public profile information (name, email).

3. Technical Security (RLS)

Your data is hosted securely via trusted third-party providers (Supabase/AWS). We use Supabase **Row Level Security (RLS)**, ensuring that at the database's physical level, your information is completely isolated and accessible only via your own identity.

4. Transactional Emails

Silo may send you emails for **security reasons only**: password resets, MFA configuration, or suspicious login alerts. These emails are not used for marketing purposes.

5. Retention & Deletion

Your data is only kept as long as your account is active. You have the right to request full and immediate deletion of your account and all associated data via the application settings.

Your trust is the foundation of Silo. We never sell your data.