Deputant Join the waitlist

Draft. Not yet in effect. Under legal review.

Legal

Privacy Policy

How Deputant collects, uses, shares, and protects your information, and how you control it. We wrote it in plain English so you can read all of it.

Effective date: November 1, 2026Last updated: October 8, 2026

Summary

  • We never sell or rent your personal data. We show no ads, and we do not track you for ads.
  • We do not use your vault, your agent email, or your agents' requests to train AI models.
  • You choose which agents can use each item in your vault. You can see a log of what each agent used.
  • You can turn on the privacy filter for each agent. It removes information that the agent does not need.
  • We encrypt your data. Passwords and cards get a separate layer of encryption. A human sees an item only for a task you approve.
  • You can export or delete your data at any time. Every user gets the same rights, in every state.

1.About this policy

This policy explains how Deputant, Inc., a Delaware corporation ("Deputant", "we", "us"), handles personal information. It applies to deputant.com, the Deputant apps, and the Deputant service. Deputant is for adults in the United States.

Deputant is in early access. It is free, and you can join only by invitation. You can join our waitlist, or a friend who uses Deputant can invite you. This policy applies to the people on our waitlist and to the people who use Deputant.

In this policy, these words have one meaning:

  • Agent means a third-party AI agent that you connect to Deputant, for example Meta Muse, xAI Grok Bot, Instinct, Hark, OpenAI Dots, and others. Other companies make these agents. We do not own or control them.
  • Vault (the Deputant Vault) means the items you keep in Deputant: passwords, payment cards, addresses, connected apps, and memories. You choose which agents can use each item.
  • Apps means third-party services you connect to Deputant, such as your calendar, email, or documents.
  • Privacy filter means an optional Deputant feature. It scans the requests and responses between your vault and an agent. It removes information that the agent does not need, based on your rules.
  • Human means a person on the Deputant team who does a real-world task for your agent through human help.
  • Agent email means the one shared Deputant email address that your agents use.

2.What we collect when you join the waitlist

To join the waitlist, you give us your email address. Our server also records your country, your browser type, and a one-way hash of your IP address. We use these only to find spam sign-ups. We do not store your full IP address with your sign-up. If a friend invites you, we record who invited you.

When you visit our site, our servers receive basic technical data. This includes your IP address, browser type, and the time of your visit. Our site runs on major US cloud providers, and they process this data for us. We use only the cookies that the site needs to work. We do not use advertising cookies or ad trackers.

We use your waitlist details to decide who gets access, to tell you when your spot is ready, and to send you news about Deputant. Each email has a link to unsubscribe. You can ask us to delete your waitlist details at any time. See section 10.

3.What we collect when you use Deputant

When you use Deputant, we collect the information below. We collect it to run the service you ask for.

Account data

Your name, email address, phone number, and sign-in details. Deputant is free during early access, so we do not collect billing details. If we add paid plans, we will update this policy first and name our payment processor.

Vault contents

The passwords, payment cards, addresses, and memories that you add. It also includes the access keys that connect your apps to Deputant.

Data from your apps

When you connect an app, such as your calendar, email, or documents, Deputant can read the data in that app that you allow. An agent gets this data only if you give that agent access.

Agent permissions and access log

Which agents you connect, which vault items each agent can use, and a log of what each agent accessed and when.

Privacy filter settings and records

Whether the privacy filter is on for each agent, the rules you set, and a record of what the filter removed. See section 4.

Agent email

Deputant gives your agents one shared email address. We receive and store the messages sent to it. These include receipts, sign-in codes, and shipping updates. These messages can contain information about you and about the people and businesses who write to you.

Human help task records

When an agent asks a human for help, we keep a record of the task. The record shows what the task was, when you approved it, which vault items the human used, and the result. It also includes notes and messages about the task.

Device and usage data

Your device type, operating system, app version, IP address, crash reports, and how you use Deputant features.

The virtual computer runs on your own device. Your agent browses with your own internet connection and accounts. The pages, cookies, and browsing history in the virtual computer stay on your device. Deputant servers receive only what the service needs: the vault items your agent asks for, status messages, and crash reports.

Messages with us

What you send us when you ask for support or give feedback.

4.How the privacy filter works

The privacy filter is an AI layer between your vault and your agents. It helps you share less.

  • You choose. You can turn the privacy filter on or off for each agent. You can also set it to be on for each new agent you connect. You set the rules.
  • Automated scanning. When the filter is on, Deputant scans each request and response between your vault and that agent. It removes (redacts) information that the agent does not need under your rules. The scanning is automated. Humans on the Deputant team do not read these requests and responses. A human looks at a filter record only if you ask us for help with it.
  • What we keep. We keep a record of what the filter removed, so you can check it in your access log. We do not keep the full text of each request and response after the filter finishes.
  • Who runs it. The filter uses AI models that we run, or that a service provider runs for us. These service providers can use the data only to run the filter for us. They cannot keep it for their own use or use it to train AI models.
  • It can make mistakes. The filter can miss information that your rules say to remove. It can also remove information that the agent needs. Check your access log, and give each agent only the items you are comfortable with it using. You are still responsible for what you choose to share. Our Terms of Service explain more.

5.How we use information

We use your information to:

  • Run Deputant. This means we store your vault, give your agents the items you allow, run the privacy filter when you turn it on, support the virtual computer, and deliver your agent email.
  • Review the waitlist and invitations.
  • Do the human help tasks that you approve.
  • Keep your account safe. We look for fraud, abuse, and security problems.
  • Fix problems and make Deputant better.
  • Send you service messages, such as security alerts, task approval requests, and notices about changes.
  • Send you product news. You can stop these emails at any time.
  • Follow the law and enforce our Terms of Service.

We do not use your vault contents, your agent email, your app data, or your agents' requests and responses to train AI models. This applies to our own models and to models that service providers run for us. We do not use this data for advertising.

6.How we protect your vault

Your vault holds your most sensitive data. We make these commitments about it:

  • Encryption. We encrypt your data when we send it (in transit) and when we store it (at rest). Passwords and payment card numbers get a separate layer of encryption, with their own keys.
  • Per-agent permissions. Each agent gets only the items you allow. Each part of Deputant gets only the data it needs to do its job.
  • Humans see only what a task needs. Our team does not look at your passwords or cards in normal work. A human sees a vault item only when a task needs it, and only after you approve that task. We log each time a human opens a vault item.
  • Access log. We log each time an agent or a human uses a vault item. You can see this log in your account.
  • Your control. You can remove an agent's access, or delete an item, at any time.
  • Notice of a breach. If a security breach affects your personal information, we tell you without undue delay, and within any time limit that the law sets.

No system is perfectly secure. Please keep your device and your Deputant sign-in safe, and tell us at once if you think someone has used your account.

7.When we share information

We share personal information only in these cases:

  • With agents you choose. An agent gets a vault item only if you allow it. If the privacy filter is on for that agent, the agent gets only what the filter lets through. After an agent receives data, that agent's own privacy policy applies. Read it before you connect the agent.
  • With humans on the Deputant team. A human gets only what a task needs, and only after you approve the task.
  • With websites and businesses, to complete a task. For example, when your agent or a human buys something for you, the store receives your name, address, and card.
  • With service providers. These companies help us run Deputant. They include major US cloud providers for hosting, and providers for email delivery, customer support, security, and the AI models that run the privacy filter. Our contracts let them use your data only to do work for us.
  • For legal reasons. We share data when the law requires it, or when we must protect the safety, rights, or property of you, other people, or Deputant. When the law allows, we tell you before we share.
  • In a business change. If Deputant merges with or is sold to another company, your data can move to that company. We will tell you, and this policy will continue to protect your data.
  • With your permission. In other cases, we ask you first.

8.We never sell or rent your data

We never sell or rent your personal data. We do not share it for targeted advertising. We show no ads in Deputant, and we use no ad trackers. We do not let service providers use your data for their own purposes.

9.How long we keep data

We keep data only as long as we need it to run Deputant or to follow the law.

  • Waitlist details. Until we open Deputant to everyone, or until you ask us to delete them, whichever comes first. If you open an account, your waitlist details become part of your account.
  • Vault items. While your account is open. When you delete an item, we purge it from our active systems within 30 days. Our backups rotate, so the item leaves our backups within 35 days.
  • Access log and privacy filter records. While your account is open.
  • Agent email. 90 days, unless you choose to keep a message. You can delete messages at any time.
  • Human help task records. 2 years after the task, for safety and to resolve disputes.
  • Security logs. Up to 12 months.
  • When you close your account. We delete your data within 30 days. Copies in backups go within the 35-day backup cycle. We keep some records longer only when the law requires it, for example tax records.

10.Your rights and choices

Every user gets the same rights, whatever state you live in. You can:

  • See your data. Ask for a copy of the personal data we hold about you.
  • Export your data. Download all your data at any time in a standard format, such as JSON or CSV, that you can take elsewhere.
  • Correct your data. Fix data that is wrong.
  • Delete your data. Delete any item at any time, or close your account and delete all of it.
  • Control your agents. Change or remove an agent's access at any time, and see what each agent accessed.
  • Control the privacy filter. Turn it on or off for each agent, and change your rules.
  • Control human help. Choose which tasks humans may do, or turn human help off.
  • Opt out of optional uses. Turn off any use of your data that Deputant does not need to run the service, such as product emails and optional usage analytics.
  • Stop product emails. Use the unsubscribe link in any email. We still send service messages, such as security alerts.

You can do most of this in your account settings. You can also email privacy@deputant.com. We check your identity before we act on a request. We aim to answer within 30 days. If we need more time, we tell you why. We do not treat you differently because you use these rights. If we deny your request, you can appeal by replying to our answer.

11.US state privacy laws

California and several other US states give residents privacy rights. This section explains how they apply to Deputant. We give these rights to all our users, as section 10 says.

What we collect

In the last 12 months we collected the categories in sections 2 and 3. Under California law these include identifiers, customer records, commercial information, internet activity, and sensitive personal information.

Sensitive personal information

Your passwords, payment card numbers, account sign-in details, and email contents count as sensitive personal information. We use them only to provide the service you ask for, as the law allows. We do not use them to infer facts about you.

Your rights

  • The right to know what personal information we collect, use, and share.
  • The right to delete it.
  • The right to correct it.
  • The right to get a copy in a portable format.
  • The right to opt out of the sale or sharing of personal information. We do not sell or share it, so there is nothing to opt out of. We treat a Global Privacy Control signal from your browser as an opt-out request.
  • The right to limit the use of sensitive personal information. We already use it only to provide the service.
  • The right not to be treated differently because you used these rights.

How to make a request

Email privacy@deputant.com. A person you authorize can also make a request for you. We will ask for proof that you gave them permission. If we deny your request, you can appeal by replying to our answer. If you disagree with the result of your appeal, you can contact your state attorney general.

12.Children

Deputant is only for adults 18 and older. We do not knowingly collect personal information from anyone under 18. If we learn that we have, we delete it. If you think a child has given us data, email privacy@deputant.com.

13.Where we store data

We store and process data in the United States, with major US cloud providers.

14.Changes to this policy

We will update this policy as Deputant changes. When we do, we change the "Last updated" date at the top. If a change is important, we tell you by email or in the app before it takes effect. We will not use data we already have in a new way that you have not agreed to.

15.Contact us

If you have questions about this policy or your data, contact us.

Email: privacy@deputant.com
Mail: Deputant, Inc., [company address]