Privacy Policy
Last updated October 5, 2026
CORYPH LLC ("CORYPH", "we") makes CORYPH Spatial. This policy explains what we collect through this website, our products and our services, and what we do with it. Questions: [email protected].
This website
- We don't use analytics, advertising trackers or tracking cookies on this site.
- Our hosting provider (Cloudflare) processes standard technical data, such as IP addresses and request logs, to deliver the site and protect it from abuse.
When you email us or join the waitlist
The waitlist is a Google Form (Google hosts it under its own privacy policy). It asks for your email, and optionally what you'd use CORYPH Spatial for and which computer you use. We use your email, and the name and email in anything you send us, to reply, to keep you on the waitlist, and to tell you when CORYPH Spatial is available. Reply "unsubscribe" at any time and we'll remove you. We don't sell or rent your information.
Purchases
- Digital products (the Build Pack, the App, Source, Pro and Updates) are sold through Polar, which acts as the merchant of record and handles payment and sales tax.
- Services (setup, pilots and custom builds) are paid through Stripe.
- These companies collect your payment details under their own privacy policies. We receive your name, email, billing country and order details, never your full card number.
Bookings
If you book a call, our scheduling provider collects your name, email, the time you pick, and any answers you add, and shares them with us so we can hold the call.
The CORYPH Spatial app
- Camera: hand tracking runs on your device. Camera frames are never recorded, saved or uploaded, and the camera stays off until you turn it on.
- Voice: by default, speech recognition runs on your device and no audio is uploaded. Your voice audio is sent to Google only if you turn on Legacy Web Speech in Voice settings and confirm. The app never switches to it automatically.
- What the AI sees: when you ask a question, the app sends it to the AI provider you choose, along with up to 12 recent chat messages and a short summary of your dashboard and local workspace (tasks, contacts and deal values, short note excerpts, and your calendar events for the coming days, including their times and locations) so the answer fits your day. Don't connect data you aren't allowed to share with that provider.
- Your AI keys stay on your device. Anything you send to an AI provider is handled under that provider's terms.
- Location is optional: CORYPH Spatial stores only coordinates rounded to about 1 km and a place label, sends those rounded coordinates to the US National Weather Service (MET Norway as a fallback) for weather, sends a ZIP or address to Zippopotam.us or OpenStreetMap Nominatim only when you type one, and lets you clear the saved location in Settings → Weather location.
- Phone remote and the CORYPH iPhone app are off by default. To pair a phone, you scan a single-use QR code shown on your Mac, then approve the phone on the Mac. You can remove a paired phone at any time in Settings on your Mac. Once paired, your phone receives:
- your room names, which room is open, and whether Lobby or Booth mode is on;
- your Needs (up to 20): each one's title, the reason and source shown with it, and the options you can choose;
- today's agenda (up to 20 items, each with its title, detail and time) and your Next up item;
- in the iPhone app's Core view, up to 80 items from your local workspace (such as tasks, contacts, notes, calendar events, message threads and file links), each with its name, a short excerpt of its text (up to 420 characters, such as a task's details, the start of a note or the latest message in a thread), where it came from, when it last changed, linked people and tasks, and tags;
- the chat messages you send from the phone, and any replies shown on the phone. Your Mac handles those messages like any other chat, as described under "What the AI sees" above;
- titles and links from your assistant's activity feed, but not the full text of those entries.
The phone can send only a fixed set of commands, such as switching rooms, acting on a Need or sending a chat message. It can't browse the files on your Mac, change your settings or see your AI keys. None of this goes through CORYPH's servers; we run no cloud relay.
- How the phone connection is protected: the iPhone app signs every request with a key created during pairing (HMAC), and the phone-browser remote uses a session token, so your Mac ignores requests from phones it hasn't paired. Signing proves a request came from your paired phone; it doesn't hide what's in it. At home, the connection is plain HTTP over your local network and isn't encrypted, so anyone who can watch traffic on that network could read it, and could copy the phone-browser remote's session token to send commands as that phone. Use it only on a trusted private Wi-Fi network. Away from home is optional and uses Tailscale, which you install and sign in to yourself. When you turn it on, your paired phone also gets your Mac's Tailscale address and MagicDNS name, your Mac also listens on that address, and traffic between them travels inside Tailscale's encrypted tunnel. Tailscale's own terms and privacy policy apply.
- Booth Kit (for businesses): visitor leads are saved only with the visitor's consent and are stored on the Mac running the booth. A booth question goes to the AI provider with only the visitor's question, never your workspace. If the business turns on its own webhook, consented leads are also sent to that address. Visitors who use the booth's phone form send their details directly to that Mac over the local network, which isn't encrypted. Booth stats stay on that Mac and aren't sent to CORYPH.
- The app sends no analytics to CORYPH.
- When license activation is available, the app sends your license key and a label with the app name and your computer's operating system to Polar to check your license. Your computer's name isn't sent.
- Services you connect: weather sends your chosen location to the US National Weather Service (MET Norway as a backup). Todoist, calendar links, news feeds and market-data providers (Finnhub, Twelve Data, CoinGecko) receive only the requests needed to fetch your data. MCP servers you add receive the tool calls you approve, plus any read-only tool calls you allow to run automatically. Current builds don't check for updates on their own. If a future version does, this policy will say what it contacts. Each service handles data under its own terms.
Children
Our products aren't directed to children under 13, and we don't knowingly collect their information.
Your choices
You can ask us to show you, correct or delete the information we hold about you. Email [email protected] and we'll respond within 30 days.
Changes
If we change this policy, we'll update the date at the top of this page.