Privacy Policy
Effective date: TODO: effective date
This policy explains what personal data Glance (“Glance”, “we”, “us”) collects, how we use it, and the choices you have. Glance is a service that renders and serves live dashboards published by your agents over MCP. We render and serve dashboard content — we never hold your data-source credentials.
Who we are
The data controller responsible for your personal data is TODO: data-controller legal entity name and registered address. You can reach us about this policy or any privacy request at TODO: privacy contact email address.
Information we collect
We collect only what we need to authenticate you and serve your organization's dashboards.
- Google account profile. When you sign in with Google, we receive your name, email address, profile picture, and the OpenID identifier (the
subclaim) that uniquely and stably identifies your Google account. We request only the standard sign-in scopes (openid,email,profile); we do not request access to any other Google service, and we never receive your Google password. - Organization and membership. The organization (tenant) you belong to and your role within it, so we can scope every dashboard to the right team.
- Publisher API keys. Keys you generate to let your agents publish dashboards. We store only a hash of each key, never the key itself.
- Dashboard content. The dashboard layouts and data values your agents publish over MCP. This is application content you send us to store and render on your behalf.
We do not use cookies for advertising or third-party tracking. We use only the session cookie required to keep you signed in.
How we use your information
- To authenticate you and keep you signed in.
- To associate you with your organization and scope dashboards and API access to that organization.
- To store, render, and serve the dashboards your agents publish.
- To operate, secure, and troubleshoot the service.
We do not use your Google profile data or your dashboard content to train machine learning models, and there is no large language model in the path that serves your dashboards.
How your data is stored
Your profile, organization membership, API key hashes, and dashboard content are stored tenant-scoped in a PostgreSQL database, so each organization's data is isolated from every other organization's. Access is limited to what is required to operate the service.
How we share your data
We do not sell your personal data, and we do not share it with third parties for their own marketing.
We rely on a small number of infrastructure providers (sub-processors) to run the service — for example application hosting, the managed database, and Google for sign-in. The current list of sub-processors is: TODO: list every sub-processor and what it processes (e.g. Vercel — hosting; Neon — managed Postgres; Google — authentication). We may also disclose data if required by law or to protect the rights, safety, and security of Glance and its users.
How long we keep it
We keep your personal data for as long as your account is active and for TODO: retention window after account closure (e.g. 30 days), after which it is deleted, unless a longer period is required by law.
Your choices and deletion
You can request access to, correction of, or deletion of your personal data at any time by contacting us at TODO: privacy contact email address. On a deletion request we remove your profile data and, where you are the last member of an organization, its dashboards. You can also revoke Glance's access to your Google account at any time from your Google Account permissions page.
Children
Glance is a tool for organizations and is not directed to children. We do not knowingly collect personal data from children.
Changes to this policy
We may update this policy from time to time. When we do, we will revise the effective date above and, where appropriate, notify you.
Contact
Questions about this policy or your data? Contact us at TODO: privacy contact email address.