The short version
Your projects and agent context stay on your device unless you explicitly connect a service that needs them. TDE does not sell personal information. Website analytics load only after you accept.
01
Local-first by default
TDE stores your projects, task board, local credentials and agent context on your device. Your source code is not uploaded by TDE unless you explicitly configure a service or connector that needs it.
02
Website analytics (Himetrica)
The tde.sh marketing site and account portal may use Himetrica to measure product interest and day-zero behavior during private beta — page views, navigation, scroll depth, engagement time, and conversion events such as install, login and checkout. Analytics scripts and event tracking load only after you Accept the analytics banner. If you Reject, we do not load Himetrica or send those events. Essential cookies used for signed-in sessions are separate and continue to work either way. After you Accept and sign in, we may associate analytics with your account email so we can understand retained beta usage; you can change this choice later via Analytics preferences in the site footer.
03
Optional services
TDE Sync, TDE Pass, licensing, the Store and OAuth brokers process only the data needed to provide the service. TDE Machines sends machine lifecycle, runtime timing, task identifiers, optional task titles, and Web Share session timing to produce account usage reports. Titles are stored separately from immutable usage evidence so they can be changed or removed. Detailed Machines usage events, labels and report rollups are retained globally for up to 400 days for commercial support and disputes; after that period, personal identifiers in this telemetry are deleted or anonymized. A Machine's first provisioned timestamp and current lifecycle state remain in its active service record while the Machine exists. Those reports do not include command output, file contents or viewer IP addresses. OAuth credentials are exchanged server-side and returned once to your TDE device; the website does not retain reusable workspace tokens.
04
What an Organization Brain shares
When you explicitly bind a TDE project to an Enterprise Organization, TDE sends finished-stage Recaps and their project, task, stage, author-device and timestamp references to that Organization's dedicated database. Active members can Sync those consolidations, and TDE materializes local copies in their Brain. Org Brain does not publish raw agent sessions, failed or in-progress work, credentials, or source files as part of this flow. Removing a member or suspending Enterprise blocks future hosted access but cannot automatically erase copies already synchronized to member devices. Hosted Organization data remains stored while the Organization exists; cancellation suspends access without immediately deleting it. The Organization owner can request hosted-data deletion through Support, and members control local copies on their own devices.
05
No sale of personal data
TDE does not sell personal information. We do not use your connected Slack, email or project content for advertising.
06
Questions
For privacy questions or deletion requests, open a private support request through the TDE project.
Contact support