Legal
Privacy Policy
Last updated: 18 March 2026
1. Introduction
Orbitable (“we”, “us”, “our”) operates the Orbitable platform, an autonomous marketing command centre. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.
2. Information We Collect
Account Information: When you sign up through Replit authentication, we receive your Replit user ID, display name, email address, and profile image. We store this to create and manage your account.
Customer Data: Information you provide about your business — website URLs, brand details, competitor information, and marketing content. This is used exclusively to power your AI agents.
Usage Data: We track agent message counts, image generation counts, and feature usage to enforce plan limits and improve the service.
Payment Information: Payment details are processed and stored by Stripe. We do not store credit card numbers or banking details on our servers. We receive your Stripe customer ID and subscription status.
3. How We Use Your Information
- To provide, operate, and maintain the Orbitable platform
- To power AI agent responses specific to your business context
- To process payments and manage subscriptions via Stripe
- To enforce usage limits based on your subscription plan
- To communicate service updates, security alerts, and support
- To detect, prevent, and address technical issues or abuse
4. Data Isolation
Each customer account operates in an isolated “world”. Your business data, agent conversations, generated content, and market intelligence are not shared with or accessible to other users. AI agents only access data within your world.
5. AI Processing
Your data is processed by third-party AI providers (including Anthropic Claude) to power agent responses. These providers process data according to their respective privacy policies and data processing agreements. Your data is not used to train AI models.
6. Data Sharing
We do not sell your personal information. We share data only with:
- Stripe — for payment processing
- Anthropic — for AI agent processing
- Replit — for authentication
- Law enforcement — only when required by law
7. Data Retention
We retain your account data for as long as your account is active. If you cancel your subscription, your data is retained for 90 days in case you reactivate, after which it is permanently deleted. You may request earlier deletion by contacting us.
8. Security
We implement industry-standard security measures including encrypted connections (TLS), isolated database schemas per tenant, and secure authentication via Replit OIDC. However, no method of electronic storage is 100% secure.
9. Your Rights
You may access, correct, or delete your personal data at any time through your account settings. You may also request a complete export of your data. To exercise these rights, contact us at the address below.
10. Cookies
We use a session cookie to maintain your authentication state. This is essential for the service to function and cannot be disabled. We do not use tracking cookies or third-party analytics cookies.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the “Last updated” date.
12. Contact
For questions about this Privacy Policy or your data, contact us at [email protected].