Privacy notice

What we collect when you use Oat or write to us, what it is for, who else touches it, and how long it stays.

Last updated 23 September 2026

The operating company name, its registered address and the governing law for these terms are to be confirmed by counsel before public launch. Everything else on this page describes what the service does today.

Who is responsible

The company that operates Oat is the controller for the personal data described here. Its name and address will be stated here once confirmed by counsel. Until then, questions go through the contact page.

What we collect and why

Categories of personal data, their purpose and their source
DataWhere it comes fromWhat it is for
Account: name, email address, sign-in method, sessionClerk, when you sign inKnowing who you are and which workspaces you belong to
Workspace content: imported writing, drafts, comments, revision requests, approvalsYou and your team, through the desk or a linked chatPreparing, reviewing and publishing your work; the audit trail
Connection data: account name and ID, granted scopes, encrypted tokens, sync timesThe provider, when you connect an accountReading your reporting and publishing to accounts you authorised
Messages you send to Oat on WhatsApp or Apple Messages, and your linked numberYou, through the providerReview and approval in a conversation; replies to your questions
Access and contact requests: name, email, what you make, site URL, role, message, the page you sent it fromThe forms on this siteDeciding whether Oat fits, and replying to you
Usage and audit records: who did what, when, to which revision; job states; model usage and costGenerated by the serviceOperating the service, keeping approvals accountable, staying within budget
Technical logs: IP address, browser, request path, error detailsVercel and Railway, as requests are servedSecurity, debugging and keeping the service up

We do not collect payment details; there is no public billing. We do not buy data about you from anyone. We do not run advertising or analytics tags on this site.

How your writing is used

Your archive and your drafts are used as context for the work Oat prepares for your workspace and for nothing else. They are sent to the configured writer model through the Vercel AI Gateway when a draft is prepared or assessed, and to no one otherwise. We do not use your writing to train models, and the voice rules Oat learns from your corrections are stored in your workspace, shown to you, and reversible.

Messages from WhatsApp and Apple Messages are used for review and replies only and are never fed into lasting model improvement.

Who receives data

The vendors that run parts of Oat are listed on the subprocessors page, with what each one receives. Providers you connect (your site host, Google, Meta, LinkedIn, HeyGen, Kapso for WhatsApp, Apple) receive what their connection needs and are governed by their own terms. We do not sell personal data and we do not share it with advertisers.

Some vendors operate outside the United Kingdom and the European Economic Area. The transfer mechanism for each will be recorded on the subprocessors page once confirmed by counsel.

How long we keep it

Retention periods by category
DataKept for
Workspace content and audit recordsUntil you delete the piece, the source or the workspace. Deleted data leaves active systems within 7 days and backups within 30. A tombstone without any content remains until the affected backups expire.
Audit events90 days after the event, or until the workspace is deleted, whichever is first
Redacted diagnostics30 days
Raw transport payloads (webhook bodies, provider responses)7 days
Connection tokensUntil you disconnect, when the ciphertext is deleted at once
Access and contact requestsUntil we have replied and the matter is closed, and at most 12 months after our last reply; sooner if you ask
Account records in ClerkUntil you delete your account or ask us to
Concierge support accessExpires after 7 days unless renewed explicitly

Your rights

You can ask for a copy of the personal data we hold about you, ask us to correct it, ask us to delete it, or object to a use of it. Owners can export a workspace as Markdown or HTML from the desk and delete it outright. For anything else, write through the contact page; we answer within a month. If you are in the UK or the EEA you can also complain to your data protection authority.

Cookies

Oat sets session cookies from Clerk to keep you signed in and a short-lived cookie during an account connection. Nothing else. The cookies page lists them.

Security

The security page describes the controls in plain words: workspace isolation enforced in the database, encrypted connections, approvals bound to exact revisions, and models that never hold credentials.

Changes

When this notice changes, the date at the top changes with it and the difference is described here. Material changes are also sent to workspace Owners by email.