Per-session token counts, cost estimates, and provider/model/device telemetry. Project names and budget labels are sealed on-device; the server groups spend only by opaque per-project hashes.
- Our servers see
- provider
- model
- device
- token counts
- cost estimates
- timestamps
- opaque project hashes
- Only your devices
- project names
- budget labels
Connected AI provider accounts. Labels + status only — the actual credentials live in Google Cloud Secret Manager, never in your data tree.
- Our servers see
- provider id
- redacted label
- status
- refresh metadata
- Only your devices
- secret material (in Secret Manager, not the user tree)
Connected Devices & Pairings
Your paired Macs, phones, and relays and which can talk to your account.
- Our servers see
- device ids
- pairing metadata
- last seen
- relay routing
- opaque relay key material (public keys)
- Only your devices
- paired relay + gateway frame contents after E2EE/runtime readiness is complete (message text, sender names, attachment file names — sealed on-device in that mode)
NOTE Paired relay and hosted-gateway frame contents are only claimed as sealed after paired E2EE is enabled and the runtime-readiness gate is complete; relay routing metadata, public keys, coarse tool labels, thread ids, attachment ids, and delivery state remain visible. The per-agent subscription graph is cloaked behind opaque keyed doc ids.
External Agent Access (MCP)
Coding agents you've granted hosted-MCP access to, the scopes they hold, and their access audit trail.
- Our servers see
- client id
- display name
- granted scopes
- grant mode
- access timestamps
- Only your devices
- decrypted search/recall results (decrypted only in the local shim)
Your subscription entitlements (Cloud Pro, Ultra) and their change history.
- Our servers see
- entitlement ids
- product ids
- active state
- expiry
- purchase source
- Only your devices
- —
A unified, tamper-evident log of who/what accessed your data, when — across every device, agent, and grant.
- Our servers see
- actor
- action
- domain
- timestamp
- hash-chain links
- generic notification routing ids
- Only your devices
- —