LLM Council
/Privacy Policy

Legal

Privacy Policy

Last updated: May 2025

Information we collect

When you create an account, we collect your email address and authentication data via Clerk. When you use LLM Council, we store your council configurations, session questions, and model responses in Supabase. We do not store your API keys in plaintext — they are AES-256 encrypted before being written to the database.

How we use your information

We use your information solely to operate the LLM Council service: running council sessions, persisting your history, and managing your account. We do not sell your data, use it for advertising, or share it with third parties except as required to operate the service (Clerk for auth, Supabase for storage, OpenRouter/your chosen provider for LLM calls).

API keys

API keys you add in Settings are encrypted with AES-256 (Fernet) before storage. The plaintext key is never logged or stored. Keys are decrypted in memory only at the moment a council session is run, and are immediately discarded after use.

Session data

Your council questions and model responses are stored to enable session history, exports, and follow-up questions. You can delete any council (and all its sessions) from the Dashboard at any time.

Cookies and tracking

We use session cookies issued by Clerk for authentication. We do not use third-party analytics trackers or advertising cookies.

Data retention

Your data is retained for as long as your account is active. If you delete your account, all associated data is permanently removed from our systems within 30 days.

Contact

For privacy-related requests, email us at privacy@llmcouncil.online.