Privacy Policy
// Key points
- We collect financial, email, and usage data to power the Service
- We share with trusted processors only as needed to operate
- We do NOT sell your personal data — ever
- All data is encrypted in transit (TLS 1.3) and at rest (AES-256)
- Bank connections are read-only; we never store your bank credentials
- You can export or delete your data at any time from Settings
- Questions? contact@orbitlo.com
1. Introduction
Orbitlo LLC ("Orbitlo," "we," "our," or "us"), a New York limited liability company, is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform — including the orbitlo.com website and waitlist, and the Orbitlo application at app.orbitlo.com. Please read it carefully. By using Orbitlo, you consent to the practices described here.
2. Information We Collect
2.1 Information you provide
| Data type | Examples | Purpose |
|---|---|---|
| Waitlist | Email address | To notify you when Orbitlo opens |
| Account information | Name, email address | Account creation and authentication via Google or Microsoft OAuth |
| Payment information | Credit card (via Stripe) | Subscription billing |
| Preferences | Notification settings, display preferences, workspace layout | Personalization |
2.2 Financial information (via Plaid)
When you connect your bank accounts we receive account names and balances, transaction history (merchant, amount, date, category), and masked account and routing numbers.
2.3 Brokerage and wallet information
If you connect a brokerage account (for example Coinbase or Alpaca) we receive portfolio holdings, balances, order history, and positions from accounts you own, and we transmit orders you author. If you track a blockchain wallet, we read publicly available balances from the address you supply — read-only, with no signing permission and no access to your keys.
2.4 Email & calendar data (via Google / Microsoft)
When you connect Gmail or Outlook, we may access email metadata, email content (for subscription detection and travel-confirmation parsing), and calendar events. You control which permissions you grant and can disconnect at any time. Email Cleanup requires separate explicit opt-in before anything is deleted.
2.5 Documents you upload
Files you add to the Document Vault or process with our PDF tools, including extracted text and financial figures parsed from receipts, statements, and tax documents.
2.6 Codaa projects
Prompts you submit to Codaa, the code and applications it generates for you, and the conversation history needed to iterate on a project. Generated projects run in a preview environment inside Orbitlo; they are not published to a public address by us.
2.7 Voice input
If you use voice features, audio you record is processed to produce text, and text responses may be converted to speech. Audio is processed for that purpose and is not used to train our models.
2.8 Travel information
- Search queries (destinations, dates, preferences)
- Saved trips, flights, hotels, restaurants, activities
- Booking confirmations (if email access granted)
2.9 Automatically collected information
| Data type | Purpose |
|---|---|
| Device information | Browser type, OS, device identifier used for account security and fraud prevention |
| Usage data | Features used, pages visited, time spent |
| Log data | IP address, timestamps, error logs |
| Cookies | Session management, preferences, analytics |
3. How We Use Your Information
We use your information to provide and improve the Service: syncing accounts, detecting subscriptions, analyzing spending patterns, generating insights, enabling travel search, syncing email and calendar data, powering the trading terminal and Codaa, processing payments, communicating with you, and keeping accounts secure.
We do not use the content of your financial accounts, emails, or documents for advertising, and we do not sell your personal information.
4. How We Share Your Information
4.1 Third-party service providers
| Provider | Purpose | Data shared |
|---|---|---|
| Plaid | Bank connections | Financial credentials (handled by Plaid, never stored by us) |
| Stripe | Payment processing | Payment information |
| Sign-in, Gmail / Calendar integration | OAuth tokens | |
| Microsoft | Sign-in, Outlook / Calendar integration | OAuth tokens |
| Coinbase, Alpaca | Brokerage connections you authorize | Orders you author, account tokens |
| Vast.ai | GPU infrastructure hosting the AI models we operate | Query content processed on infrastructure we control |
| External model providers | Fallback and specialized AI processing | Tokenized, masked query content only — never raw account data |
| Speech providers | Speech-to-text and text-to-speech | Audio and text of voice interactions |
| Amadeus | Flight and hotel search | Search queries (destinations, dates, passengers) |
| Infrastructure & monitoring | Hosting, security, error reporting | Operational and error data |
4.2 Other disclosures
We may disclose information when required by law, to protect our rights or user safety, or in connection with a merger or acquisition — in which case we will notify you before your data becomes subject to a different policy.
4A. How AI Processing Works
We operate our own fine-tuned models on dedicated GPU infrastructure (Vast.ai) rather than relying on a third-party assistant. Where a request is routed to an external model provider, identifiers are tokenized and financial identifiers masked before transmission — raw account numbers, balances tied to identity, and personal identifiers are not sent.
5. Data Retention
| Data type | Retention period |
|---|---|
| Account data | Until account deletion + 30 days |
| Financial transactions | 24 months rolling |
| Search history | 12 months |
| Assistant & Codaa conversation logs | 90 days |
| Generated exports | 7 days, then permanently deleted |
| Analytics data | 24 months (aggregated) |
| Waitlist email | Until you unsubscribe or we launch |
6. Data Security
- Encryption: all data encrypted in transit (TLS 1.3) and at rest (AES-256)
- Access controls: role-based access, principle of least privilege
- Infrastructure: secure cloud hosting on SOC 2-compliant infrastructure
- Authentication: secure OAuth-based login, optional 2FA
- Isolation: Codaa-generated applications run in sandboxed environments separated from your account data
- Monitoring: continuous security monitoring and alerting
No system is perfectly secure. We will notify affected users of any breach as required by applicable law.
7. Your Privacy Rights
You can view, export, correct, and delete your data at any time from Settings, and disconnect any bank, brokerage, or email connection whenever you choose. California residents have additional CCPA rights, including the right to know and the right to delete. EU/EEA and UK residents have GDPR rights including access, rectification, erasure, portability, restriction, objection, and the right to lodge a complaint with a supervisory authority. To exercise any right, contact contact@orbitlo.com.
8. Cookies and Tracking
| Cookie type | Purpose | Duration |
|---|---|---|
| Essential | Authentication, security | Session |
| Functional | Preferences, settings, theme | 1 year |
| Analytics | Usage statistics | 2 years |
9. Children's Privacy
Orbitlo is not intended for users under 18 years old. We do not knowingly collect data from children.
10. International Data Transfers
Your data may be transferred to and processed in the United States and other countries. We ensure appropriate safeguards are in place for international transfers.
11. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes via email or in-app notification at least 30 days before they take effect.