Local by default

Website and product privacy

What Switchyard stores locally, sends only after an explicit preview, and excludes from diagnostics and optional anonymous metrics.

01

Core workflows stay local.

Projects, manifests, operations, audit history, logs, diagnoses, recipes, plugins, and settings remain on your machine unless you explicitly export or send them.

02

AI is optional and previewed.

Deterministic workflows do not require a provider. Optional AI sends only the bounded, redacted evidence preview to the provider you select, under that provider's terms.

03

Metrics are off by default.

There is no vendor-controlled telemetry destination. Optional anonymous counters require an explicit HTTPS endpoint and contain no project, path, command, log, or error detail.

Excluded from support bundles

Private material is not a diagnostic shortcut.

  • Source and database contents
  • Resolved secrets and arbitrary environment values
  • Terminal output and project application logs
  • Machine credentials and runtime-native identifiers

Novel secret formats remain a residual risk. Always inspect a generated preview before sharing it, and use a private route when context could expose people, systems, or proprietary work. Read the complete product privacy contract →