Privacy

What Delegate keeps, and what it never does.

Last updated 21 August 2026

Delegate lets you send a task to a person you trust and get the result back. This page explains, in plain terms, what we keep, what we never keep, and who else helps run the service.

What we store

  • Your accountYour name, handle, email address, and plan, so you can sign in and we can reach you.
  • Your tasksThe tasks you send and receive: the title, the body, any context you attach (a repo, a branch, a link, file names), and the summary and links sent back when one is done.
  • Images you attachImages you attach to a task or to a result, plus a small copy of each one that the recipient and their agent see. Delegating a page review attaches one too: a fresh picture of each pinned element, so the person you sent it to can see what you meant without opening the review. We keep them for 12 months and then delete them. The person who uploaded an image can delete it sooner, which removes it for everyone it was sent to.
  • Your page reviewsWhen you review a website with Markup: the page address, your pins and comments, a picture of the element you pinned, a small snapshot of the page structure so pins can find their place again, and a list of sites you recently reviewed, which we drop after 180 days. Deleting your account removes your reviews.
  • The picture on a pinCropped to the element you pinned and taken at the moment you pin it; the desktop app shows it to you in the composer before your comment is sent. Only the desktop app takes one for you; a pin made any other way carries a picture only if whoever made it uploaded one. You and anyone you share the review with can see it, and nobody else does. It goes when you delete the pin, when its last comment goes, when you delete your account, and in any case 12 months after it was taken. Delegating the review sends a separate copy with the task, which belongs to that task and stays with it.
  • Your connectionsThe contacts you have approved and the invites you have created.
  • Basic logsRequest logs that keep the service running and help us fix problems.

What we never store

  • Your agent's key in the clearAPI keys are hashed before they reach the database. We cannot read them back.
  • Your code or your working filesDelegate hands a task to your agent. It never reads or keeps the contents of your repositories, your machine, or your agent's working files. The one exception is an image you attach to a task yourself, up to six per task, which we store so the person you sent it to can open it.
  • A picture of your screenThe picture on a pin is cropped to the element you pinned. We never photograph the rest of the page, your other tabs, or anything else on your screen.
  • Your card numberPayments run through Stripe. We never see or store your card details.
  • Task text as commandsA task is a request, not commands your agent runs blindly. By default it summarises the task and asks before acting. If you put a contact on auto-trust, their tasks can run and report back without asking, so save that for people you fully trust.

Who else processes your data

A small set of trusted services helps run Delegate. Each sees only what it needs.

  • ClerkSign-in and account management.
  • Amazon Web ServicesStores your account, tasks, and contacts (DynamoDB), and the pictures on your tasks and your page reviews (S3). Those sit in a private bucket: every view is a link that we sign for you once we have checked you can see what it belongs to, and it stops working fifteen minutes later.
  • ResendSends notification emails when a task arrives or is finished.
  • StripeProcesses Pro subscriptions and any one-off purchase. Stripe receives your email address to send the receipt.
  • PostHogProduct analytics. We record actions like a task being sent or finished, plus which pages you visit, keyed to an account ID. We never send task titles, bodies, or email addresses to analytics, we do not record your screen, and links you arrive on are stripped of anything after the path, so an invite token or an email in a link never reaches analytics.
  • MetaAd measurement. If you sign up after clicking one of our ads, we tell the ad platform that a signup happened so we know which ads work. That report carries a one-way hash of your email address and the click ID the platform itself attached to the ad, and nothing else: no name, no pages, nothing about what you do in the product.

Your control

  • Export or deleteYou can ask us to export or delete your account and its data at any time. Write to privacy@delegate.ing.
  • What deleting your account leavesDeleting your account removes your profile, your contacts, your keys, your reviews, and any image you uploaded but never sent. Tasks you already exchanged stay for the other party, and so do the images on them, the same way a message you have already sent stays in the other person’s inbox. Delete an image first if you want it gone.
  • ChangesThis page will change as Delegate grows. The date at the top always reflects the current version.