Privacy
Your data and privacy
A short explanation of what we collect, why we use it, and the choices you have.
Collection
We collect your email and account details, the questions and context you submit, deliberation records, credit and order references, support messages, and technical information needed to secure and operate the service. During verification, Razorpay can send us payment and order status, payment method, and the email or contact details attached to the payment. We do not receive your full card number.
A managed run uses an Executive Council managed key and spends credits. Paid BYOK access, where available, uses your OpenRouter key instead. A key you enter can remain in browser local storage on that device and may also be stored encrypted server-side when key storage is configured.
Use
We use this information to provide and secure accounts, run deliberations, process credit purchases, send sign-in and run-status emails, answer support requests, prevent abuse, and meet record-keeping duties. We do not use your submitted content to train Executive Council models. Upstream model providers process prompts under their own terms and data policies.
Processors
Our current service providers include Vercel for website delivery and cookieless measurement, Render for the backend, Supabase for authentication and data storage, Razorpay for payments, OpenRouter for model routing, Cloudflare Turnstile for bot checks, Brevo for transactional email delivery, Web3Forms for the optional contact-form relay, and Google Analytics when you opt in. Models selected for a run may be provided through OpenRouter by OpenAI, Anthropic, Google, DeepSeek, Perplexity, xAI, Alibaba, Mistral, or Moonshot AI.
These processors may handle data outside India. We share only what is reasonably needed for the relevant service. Their locations, safeguards, and retention practices are governed by their own agreements and policies.
Run-status emails contain a status and a link to your account, not your submitted question or the council's answer. Viewing a linked result requires sign-in and access to the account that owns it.
Retention
We keep account data and deliberation records while your account is active. We delete unclaimed demo sessions after 30 days. Contact messages are normally kept for up to 24 months. Credit, tax, and payment records may be kept for up to seven years where Indian law requires it. Analytics retention follows the settings of the service in use.
We may retain limited information longer to resolve disputes, prevent fraud, or meet a legal obligation. We aim to complete deletion requests within 30 days where no lawful retention requirement applies.
Cookies
Supabase sign-in and Cloudflare Turnstile use essential cookies or similar storage to keep accounts and forms secure. Optional analytics is off until you choose to enable it. With your consent, we record your arrival source and events such as starting checkout or reaching zero credits. These events contain no questions or answers. Declining analytics does not change introductory-credit eligibility. Vercel Analytics counts visits under our legitimate interest and is configured so it stores nothing on your device. It is not in this control. You can change the optional analytics choice below at any time.
Optional analytics is off until you choose to enable it.
Your rights
Depending on where you live, you may ask to access, correct, delete, export, or restrict the use of your personal data, or withdraw consent for optional analytics. We honor rights available under applicable Indian law and, where applicable, the GDPR and UK GDPR. Contact support@executivecouncil.app or use the contact form.
Executive Council is operated by Vineeth Nair from Mumbai, Maharashtra, India. Our consumer complaints contact is Vineeth Nair at support@executivecouncil.app. For purchase complaints and review timelines, see the refund policy. If you are in the UK or EEA, you may also complain to your local supervisory authority.
Last updated 15 September 2026.