Skip to content

/ Policy · Privacy

What we know about you.

If you joined the waitlist, we hold your email address, the one answer you picked about what you are working on, and the time you signed up. Nothing is sold, and no advertising network is involved. Email privacy@getspire.co and we will delete it.

Last updated 15 August 2026

If you only joined the waitlist

This is the whole record we create:

  • Your email address, lowercased.
  • Which of the three answers you picked about the code you are looking at.
  • The page that referred you, if your browser sent one. This is how we tell which channel is working.
  • The date and time you joined.

We do not run analytics, advertising pixels, or session-recording tools on this site. There is no profile behind your email address, because there is nothing to build one from. If that ever changes, this page changes first and before it takes effect.

One thing worth saying plainly: submitting the form does not tell you, or anyone else, whether that address was already on the list. The confirmation is identical either way, on purpose.

If you have an account

Using Spire itself creates more than a waitlist entry:

  • Your email address and, if you set a password, a one-way hash of it. We never store the password itself and cannot read it.
  • If you sign in with Google, the email address and name Google gives us. Nothing else from your Google account.
  • The project descriptions you submit, and the architecture packs, diagrams, and critiques generated from them.
  • A record of each active sign-in: browser, approximate IP address, and when it started, so you can see and revoke your own sessions.
  • If you buy something, the fact of the purchase and which plan. Card details go directly to Paddle and never touch our servers.

We do not use your project descriptions or generated artifacts to train any model of our own, and we do not sell them.

Why we are allowed to hold it

For the waitlist: because you asked us to tell you when the takeover scan opens, and an email address is the only way to do that. You can withdraw that at any time by emailing us — no form, no account required.

For accounts: because we cannot run the service you signed up for without it. For security records like sign-in history, because keeping accounts from being taken over is a legitimate interest of both of ours.

Who else can see it

Running this needs other companies. Each one below sees only what its row says, and none of them is allowed to use it for their own purposes. A waitlist signup alone reaches only the first three.

CompanyWhat it doesWhat it can see
VercelWaitlist tooHosts the website you are reading.Request logs: IP address, browser user agent, page requested.
RailwayWaitlist tooRuns our API and the PostgreSQL database behind it.Everything we store: your email, waitlist answer, account, and projects.
ResendWaitlist tooDelivers our email — verification, password resets, waitlist news.Your email address and the contents of the message we send you.
GoogleOptional "sign in with Google" for account holders.Your Google account email and name, only if you choose that sign-in.
PaddleSells and bills our paid products as merchant of record.Your billing details. Card numbers go to Paddle, never to us.
Groq and CerebrasRun the models that generate architecture packs.The project description you submit for a generation. Not your source code.

These providers operate data centres in several countries, so your data may be processed outside the one you live in. We will also hand over data if a valid legal order requires it — and we will tell you unless we are legally barred from doing so.

How long we keep it

  • Waitlist entries: until the takeover scan launches and we have written to you, or until you ask us to remove yours — whichever comes first.
  • Account data: for as long as your account exists, then deleted within 30 days of you closing it.
  • Sign-in records: they expire on their own after 7 days, or immediately when you revoke the session.
  • Billing records: kept as long as tax and accounting law requires, which is generally several years and is not something we can shorten.

What you can ask us to do

Email privacy@getspire.co and ask for any of this:

  • A copy of everything we hold about you.
  • A correction, if something is wrong.
  • Deletion. For waitlist entries this is done by hand — the application itself has no ability to delete or overwrite them, which is deliberate, so a person removes the row.
  • Export of your projects and generated artifacts, if you have an account.
  • To stop hearing from us entirely.

We answer within 30 days and will not ask you to create an account to make the request. If you are in the UK, EU, or another place with a data-protection regulator, you can complain to them — but please try us first, because we can usually fix it the same week.

Cookies

The site sets two functional cookies and no tracking cookies, which is why you are not being asked to accept anything. The full list, with lifetimes, is on the cookie page.

Children

Spire is a tool for professional software work and is not intended for anyone under 16. We do not knowingly collect their data; if you believe we have, write to us and it will be removed.

When this page changes

We will update the date at the top for any substantive change. If a change affects what we collect or who sees it, and we hold your email address, we will email you before it takes effect rather than relying on you to re-read this page.

Contact

Privacy questions and requests: privacy@getspire.co. A real person reads that address.