Stackmint Privacy Policy

Last Updated: September 14, 2026

Stackmint Inc. (“Stackmint,” “we,” “our,” or “us”) provides a platform for creating and running AI applications, agents and workflows. This Privacy Policy explains how we collect, use and disclose personal information when you use our websites, applications and related services (the “Services”).

It also explains how personal information may be processed when you connect business systems, upload content or run workflows through Stackmint.

1. Our Role and Customer Workspaces

Stackmint acts as a data controller when we determine how personal information is used to operate our business, including account administration, billing, customer communications and website operations.

When we process personal information on behalf of a customer to run that customer’s applications or workflows, we act as a processor or subprocessor under the applicable customer agreement and Data Processing Addendum. The customer determines the purposes of that processing.

If your information is processed through an organization’s Stackmint workspace, that organization’s policies may also apply. Requests concerning information controlled by that organization should generally be directed to the organization. We assist our customers with these requests as required by our agreements and applicable law.

2. Information We Process

Account and contact information

We process information provided when you create an account, contact us or use the Services, such as your name, email address, organization and account preferences.

Authentication and connected accounts

When you sign in through a third-party provider, we receive the information made available through the authorized sign-in process, such as your email address and profile information.

When you connect an external service, we process the authorization information needed to access that service, which may include access tokens, refresh tokens or API credentials.

Workspace content and execution data

We process content submitted to or generated through the Services. Depending on the features you use, this may include prompts, uploaded documents, application and workflow definitions, Buds, Branches, agent configurations, model outputs and information returned by connected services.

Running an application or workflow may also generate execution records, such as inputs and outputs, timestamps, approval decisions, errors, retries and usage information. Where memory features are enabled, information may be stored and retrieved to provide context for subsequent executions.

This information may contain personal information about you or other people, depending on the content and systems used in your workspace.

Information from connected services

When an authorized user connects a service, Stackmint processes the information accessed through that connection to perform the configured tasks. Depending on the integration and permissions granted, this may include business records, contact information, messages, documents, calendar events and related metadata.

Billing information

We process billing contact information, subscription details and payment transaction records to administer purchases and accounts. For card payments through Stripe Checkout, card details are submitted to Stripe; Stackmint creates the checkout session and receives payment and transaction references.

Technical and usage information

We process technical information needed to operate and understand the Services, such as IP addresses, browser and device information, session information, feature usage, diagnostic records and error reports. Our website loads Google Analytics. Embedded application analytics may record IP addresses, user-agent information, referrers and event metadata; the country-lookup feature sends the IP address to ipapi.co. Cookies and browser storage are also used for sessions and preferences.

3. How We Use Information

We use personal information to:

  • —Create and administer accounts and workspaces.
  • —Authenticate users and enforce access permissions.
  • —Run applications, agents and workflows requested or configured by authorized users.
  • —Send relevant inputs to AI providers and connected services as part of those executions.
  • —Store and retrieve content, execution history and enabled memory.
  • —Provide customer support and operational communications.
  • —Administer billing and subscriptions.
  • —Monitor reliability, investigate errors and improve service functionality.
  • —Detect and respond to misuse, fraud and security incidents.
  • —Meet legal obligations and establish, exercise or defend legal claims.

Processing customer-controlled content remains subject to the applicable customer agreement and our role described in Section 1.

4. AI Providers and Model Processing

Stackmint uses third-party AI services to provide model-powered functionality. When a feature requires a model, the information sent to the provider may include your prompt, relevant conversation or workflow context, selected document content and information retrieved from connected services.

The provider receiving that information depends on the model used for the execution and the feature-specific routing, platform defaults and configuration applicable to your workspace. Information sent to a provider may contain personal information included in those inputs.

The providers involved in delivering the Services are described in our subprocessor information, where applicable. Customer-configured integrations and provider accounts may also be subject to the terms of the relevant provider.

5. How Information Is Disclosed

We disclose personal information as needed to provide the Services, including to:

  • —Infrastructure, storage, authentication, AI, payment, support and other service providers involved in delivering the Services.
  • —External services that authorized users configure applications or workflows to interact with.
  • —Workspace administrators and other authorized users, according to the permissions and sharing settings applicable to the workspace.
  • —Recipients selected through user-directed sharing or publication features, where those features are available.
  • —Authorities or other parties where disclosure is required by law or reasonably necessary to protect rights, safety or security.
  • —Parties involved in a proposed or completed merger, acquisition, financing or sale of assets, subject to applicable confidentiality and legal requirements.

6. Retention and Deletion

We retain personal information for the purposes described in this policy. Retention depends on the type of information, the Services being provided, applicable customer agreements and legal requirements.

Workspace content and execution records are stored to provide the Services and execution history. Persistent memory is stored as workspace variables and can be updated or deleted through workspace-variable controls by authorized users. Transient memory is passed within an execution; its content may still appear in stored execution inputs or outputs. Deleting a workspace variable does not by itself delete historical execution records. Account and billing records may need to be retained to administer the relationship, satisfy accounting obligations, resolve disputes or prevent fraud.

You may request account deletion by contacting legal@stackmint.ai. Requests concerning customer-controlled workspace data are handled in accordance with Section 1.

Deleting an account may not immediately remove every record. Information may remain where legally required or necessary for security or legal claims, or in backups subject to the applicable customer agreement. An account-deletion request is distinct from deletion of workspace content, uploaded files, execution records and stored memory.

7. Security

We use access controls and integration-credential handling to help protect information. No system is completely secure. See our security overview for further information.

8. Your Choices and Rights

You can update account information and manage connections and workspace content where your permissions allow. Browser settings can limit cookies and storage, which may affect functionality. Depending on applicable law, you may have rights to request access, correction, deletion or restriction of processing. Contact legal@stackmint.ai to make a request. Requests relating to customer-controlled workspace data should generally be directed to that organization, as described in Section 1.

9. Children’s Privacy

The Services are not intended for children under 13. If you believe a child has provided personal information, contact legal@stackmint.ai.

10. International Processing

Information may be processed outside your country of residence by the services involved in an execution. The applicable customer agreement and Data Processing Addendum govern customer-controlled processing and any applicable transfer obligations.

11. Changes to This Privacy Policy

We may update this Privacy Policy by posting a revised version on this page with a new Last Updated date.

12. Contact Us

For questions or privacy requests, contact Stackmint Inc. at legal@stackmint.ai.