Legal
Privacy Policy
What we collect, how we use it, and the choices you have.
Last updated: January 29, 2026
Information we collect
We collect information you provide directly and data generated when you use Vistai. The categories below are the main types we handle:
- Account data — name, email, and profile photo from Google sign-in.
- Profile data — username, bio, and visibility settings you choose.
- Growth data — planets, tasks, streaks, badges, task history, and Orba usage.
- Connector data — OAuth tokens (encrypted), connected account display names, and synced activity metadata from GitHub, Notion, or Figma when you opt in (Plus/Max).
- MCP session data — encrypted session tokens and Skill Graph activity used when AI tools call Vistai MCP.
- Technical data — device/browser type and basic usage needed for limits and reliability.
We do not require payment information today. If billing is added later, this policy will be updated before checkout goes live.
How we use information
We use your information to operate and improve Vistai, including:
- Generating and serving daily missions, plans, and Orba responses.
- Syncing Connector activity into your Skill Graph and serving MCP tools to authorized AI clients.
- Syncing progress across devices and enforcing plan-tier limits.
- Displaying optional public profiles and leaderboard rankings.
- Responding to support requests and fixing bugs you report.
- Sending essential service notices — not selling your data to advertisers.
Storage & security
Data is stored on secure cloud infrastructure with encryption in transit and at rest. We apply access controls, monitoring, and reasonable organizational measures to reduce the risk of loss, misuse, or unauthorized access.
No online service is perfectly secure. If we learn of a breach that affects your account, we will notify you as required by applicable law and work to remediate quickly.
Your rights & choices
You stay in control of your Vistai data:
- Update profile fields and username rules in Settings.
- Control what appears on your public profile page.
- Disconnect cloud Connectors and rotate MCP session tokens from Settings.
- Sign out on any device from Settings.
- Request export or deletion by emailing support — we respond within a reasonable timeframe.
Questions about this policy? Email support@vistai.site or ask in Discord.
Need help? Email support@vistai.site or join our Discord community for updates, feedback, and support from the team and other builders.