Company · Legal
Privacy policy
UIDiscovery is built to need very little about you. This page explains, in plain language, exactly what that is.
Draft — last updated
On this page
- 1.The short version
- 2.Who we are
- 3.Information kept in your browser
- 4.Search queries, briefs and AI ranking
- 5.Technical and log information
- 6.Cookies and tracking
- 7.When you contact us
- 8.Accounts and payments
- 9.Who we share information with
- 10.Links to other sites
- 11.Retention and security
- 12.Your choices and rights
- 13.Children
- 14.Changes to this policy
01The short version
- You don't need an account to use UIDiscovery, and there isn't one to create yet.
- We don't run advertising, analytics or cross-site tracking scripts. Public browsing does not set cookies.
- What you save — references, boards and notes — stays in your own browser. We never receive it.
- When you search, your query is sent to our server and, when AI ranking is on, to one AI provider so it can put the most relevant references first.
- We don't sell personal information, and we don't share it for advertising.
02Who we are
UIDiscovery is operated by [COMPANY LEGAL NAME] ("UIDiscovery", "we", "us"). This policy covers the UIDiscovery website, its public API and the UIDiscovery MCP server. It explains what information is involved when you use them and what we do with it.
Questions or requests about privacy: [CONTACT_EMAIL].
03Information kept in your browser
When you save a reference, create a board or write a note, UIDiscovery stores it in your browser's local storage on your device. We use three keys:
kitbash-saved-items— the references you saved, which board they're on, and any private note you added.kitbash-boards— the names of the boards you created.kitbash-active-board— which board you last had open.
This data is not sent to us, isn't synced between devices, and disappears if you clear your browser's site data. When you export a board, the file is generated in your browser and downloaded straight to your device.
04Search queries, briefs and AI ranking
When you search the library — on the search page, through the API or through the MCP server — the text you type is sent to our server so we can find matching references. The same applies to product briefs submitted to the brief endpoint.
To order results by relevance, we may send your query (up to 180 characters for search, 600 for a brief) together with descriptions of candidate references to TypeSafe, an AI service that scores how well each reference fits. We send the text only — no name, email, account or device identifier. Results are cached in our server's memory for a short time so repeated searches are fast, and that cache is cleared when the server restarts.
Please don't type personal or confidential information into search or brief fields. API users can skip AI ranking entirely by adding ai=0 to a search request.
05Technical and log information
Like any website, our servers receive standard request information when you load a page or call the API: IP address, browser type, the page or endpoint requested, and the time. Our hosting provider ([HOSTING PROVIDER]) may keep this in server logs for security and troubleshooting.
To stop abuse of the AI-backed endpoints, we keep a short-lived counter per IP address in memory. It counts requests over a one-minute window, lives only in the server's memory, and is never written to a database.
07When you contact us
If you email us — for a content-removal request, a job application or anything else — we receive your email address and whatever you choose to include. We use it to reply and to handle your request, and we keep it only as long as needed for that purpose and our records.
08Accounts and payments
UIDiscovery doesn't offer accounts or paid checkout yet, so we don't collect passwords or payment details. The plans on our pricing page can't be purchased today. Before accounts or payments launch, we'll update this policy to describe what's collected and which payment provider processes it.
10Links to other sites
Reference pages link to the original websites and App Store listings they come from. Those sites have their own privacy practices, which this policy doesn't cover.
11Retention and security
We keep the little information we receive only as long as needed for the purposes above. Browser-stored data stays under your control. We limit what we collect in the first place and protect what we hold with reasonable safeguards, but no system is perfectly secure.
12Your choices and rights
Depending on where you live, you may have rights to access, correct, delete or object to the processing of your personal information. Because we don't run accounts, most of what relates to you is in your own browser — you can delete it any time by clearing site data for UIDiscovery.
For anything we hold (for example an email you sent us), write to [CONTACT_EMAIL] and we'll respond within the time the law requires. You can also contact your local data-protection authority.
13Children
UIDiscovery is a professional design tool and isn't directed at children under 16. We don't knowingly collect information from them.
14Changes to this policy
We'll update this page when our practices change — in particular before launching accounts, payments or analytics — and change the date at the top. This policy is governed by the laws of [JURISDICTION].
