Privacy Policy
Last updated: September 16, 2026
Arcane Intelligent Systems ("we," "us," or "our") operates software products and services available through our website and related applications. This Privacy Policy explains how we collect, use, and protect information when you use our services.
Information We May Collect
Depending on how you interact with our services, we may collect the following types of information:
- Account and contact information — such as your name, email address, or other details you provide when creating an account or contacting us.
- Payment-related information — payment transactions are processed by third-party payment providers. We may receive limited transaction details (such as confirmation of payment or subscription status) but generally do not store full payment card details directly.
- Webpage content — when you ask Tracy a question, a screenshot of the visible area you are hovering over, along with limited page text (such as the page title and a portion of the page content), is sent to an AI provider to generate a response. This only occurs after you have granted microphone permission in your browser and actively asked a question. This data is transmitted in real time and is not stored by us after the response is delivered.
- Voice queries — your spoken questions are processed after you grant microphone permission in your browser. These queries are sent to an AI provider to generate responses and are not stored by us after the response is delivered.
- Usage data — information about how you use our services, including features accessed and actions taken within our products.
- Device and technical information — such as browser type, operating system, device identifiers, and IP address, collected automatically when you use our services.
- Support communications — messages, emails, and other communications you send to us for support or feedback purposes.
How We Use Your Information
We use the information we collect to:
- Provide, operate, and improve our services
- Process transactions and manage your account
- Respond to support requests and communicate with you
- Maintain the security of our services and prevent abuse
- Comply with legal obligations where applicable
Payment Processing
We use third-party payment processors to handle payment transactions. These providers have their own privacy policies governing how they handle your payment information. We do not necessarily store your full payment card details on our own systems.
Cookies and Analytics
Our services may use cookies or similar technologies to maintain session information, remember preferences, and understand how our services are used. We aim to keep the use of tracking technologies minimal and relevant to service functionality. You can manage cookie preferences through your browser settings.
Tracy does not include third-party tracking pixels, advertising scripts, or cross-site identifiers. Our servers maintain operational logs (such as error rates, response latency, and anonymized usage counts) to ensure service reliability. These logs do not contain the content of your queries or webpage data.
Pages under /tracy on this website fire anonymous funnel beacons so we can understand how visitors discover and purchase Tracy. Each browser is assigned a random session identifier stored locally for thirty days; we record the page you visited, the referring site, any campaign parameters in the URL (such as utm_source), and a two-letter country code derived from your IP address. We never store the IP itself, do not fingerprint your device, and do not share this data with third parties. The session identifier resets when you clear your browser’s site data.
Anonymized Usage Data
We collect anonymized, aggregated counts (such as how many installations are on each version, how many questions are answered, and error rates) to keep the service reliable and decide what to build next. This data is not linked to your identity and cannot be used to identify you.
Anything richer than counts — your questions, the pages Tracy looked at, or its answers — is collected only if you deliberately turn on the Optional Research Programme described above. It is off by default, and you can turn it off again at any time in Tracy’s settings panel.
Install Identity and Your Email
When the Tracy extension is installed it generates a random identifier for that installation. It is not derived from you, your device, or your browsing — it is a random value, it grants access to nothing, and on its own it tells us only that some installation exists. This is separate from, and longer-lived than, the thirty-day website session identifier described above.
The extension sends this identifier to our server about once a day along with the extension version and which mode you are using (free trial, Tracy Pro, or your own API key). We use it to see how many installations are active, to catch a faulty release before it affects more people, and to understand when someone stops using Tracy. It is also included when you remove the extension, so that if you tell us why on the page that opens, we can connect your comment to the version and mode you were actually running.
This identifier is never accompanied by your questions, the pages you read, their addresses, or your browsing history. We do not collect browsing history, device fingerprints, keystrokes, or background activity.
Your email address. Tracy asks for your email once, after it has answered a few questions for you; you can decline that ask and it will not be repeated. It is required when you set up Tracy with your own API key, because that is the only way we can reach you about your setup or answer you if you write in. You can also leave an address when sending feedback, so that we can reply to it. We use your address to contact you about your setup and to reply to you — nothing else.
Marketing is separate. Tracy will only email you about product news if you tick the clearly labelled box asking for it. That box is unticked by default, declining it does not restrict your use of Tracy in any way, and you can withdraw it at any time by replying to any message or writing to support@arcsys.one.
Optional Research Programme
Tracy has an opt-in setting, off by default, that contributes your questions, the page image Tracy looked at, and Tracy’s answers to a research set used solely to improve how Tracy understands and responds to questions.
If you turn it on, the developer will read and look at what you contribute — that is the purpose of it. It is never sold, never shared with advertisers, data brokers, or any other information reseller, and never used to build a profile of you.
The setting is off unless you deliberately turn it on. You can turn it off again at any moment in Tracy’s settings panel, and you can have everything you contributed deleted by writing to support@arcsys.one. Declining, or later withdrawing, changes nothing about how Tracy works for you.
Data Retention
We retain your information for as long as reasonably necessary to provide our services, fulfill the purposes described in this policy, and comply with legal requirements. When information is no longer needed, we take reasonable steps to delete or de-identify it.
Webpage content and queries processed by Tracy are not stored after a response has been delivered. Within 90 days of account closure, your email address is permanently deleted and your account is de-identified. Operational metadata (such as response status, latency, and token counts) associated with your account is retained in de-identified form for service improvement and capacity planning, and can no longer be linked to you.
The installation identifier, and your email address if you gave us one, are retained until you ask us to delete them or until 90 days after you stop using Tracy, whichever comes first. Removing the extension does not by itself delete them, because the record of why someone left is the point — write to support@arcsys.one and we will remove it. Research-programme contributions are retained until you withdraw or request deletion.
Security
We take reasonable measures to protect your information from unauthorized access, loss, or misuse. However, no method of electronic transmission or storage is completely secure, and we cannot guarantee absolute security.
Third-Party Services and AI Providers
Tracy uses third-party AI providers to process your queries and generate responses. Depending on your plan, your webpage content and queries may be sent to one or more of the following providers:
- OpenAI (privacy policy)
- Anthropic (privacy policy)
- Google (privacy policy)
Tracy Pro subscribers: Your queries and webpage content are routed through our servers before being forwarded to an AI provider. We do not log or store the content of your queries or the webpage data beyond what is needed to deliver the response.
Our servers record operational metadata for each request — such as response status codes, response latency, and token usage counts — to detect outages, compute costs, and maintain service quality. This data is associated with your account for quota enforcement, billing, and support purposes. These logs do not contain your query text, webpage content, or conversation history.
We may use third-party messaging services (such as Telegram) for internal operational alerts when service errors are detected. These alerts contain only aggregate or anonymized technical data, not user content.
Bring Your Own Key (BYOK) users: Your queries and webpage content are sent directly from your browser to the AI provider you have configured. Your API key is stored locally on your device and is never transmitted to our servers.
Payments are processed by Paddle (privacy policy), which acts as our merchant of record. Paddle handles all billing, invoicing, and tax compliance. We receive subscription status and transaction confirmations but do not have access to your full payment details.
Our services may also integrate with or link to other third-party services. These third parties have their own privacy practices, and we are not responsible for their policies.
Your Rights
Depending on your location and applicable law, you may have certain rights regarding your personal information. These may include the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Object to or restrict certain processing of your data
- Request a portable copy of your data
To exercise any of these rights, please contact us at support@arcsys.one. We will respond to your request within 30 days.
Children's Privacy
Our services are not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected information from a child under 13, we will take steps to delete it.
Changes to This Policy
We may update this Privacy Policy from time to time. If we make significant changes, we will indicate the updated date at the top of this page. Your continued use of our services after any changes indicates your acceptance of the updated policy.
Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us at support@arcsys.one.