Legal

Privacy Policy

Tandem runs on your machine by default. Your vault, your data, your keys — local unless you explicitly sync.

Effective: June 2, 2026 Last updated: June 2, 2026

Contents

  1. 1. Scope and our role
  2. 2. Information we collect
  3. 3. Local-first architecture
  4. 4. How we use information
  5. 5. BYOK and AI providers
  6. 6. Legal bases (GDPR)
  7. 7. Sharing and disclosure
  8. 8. Sub-processors
  9. 9. Data retention
  10. 10. Security
  11. 11. International transfers
  12. 12. GDPR / UK rights
  13. 13. CCPA / CPRA rights
  14. 14. Children's privacy
  15. 15. Cookies and tracking
  16. 16. DNT and GPC
  17. 17. Automated decisions
  18. 18. Changes to this policy
  19. 19. Contact

1. Scope and our role

This Privacy Policy applies to personal information handled by Tandem ("Tandem," "we," "us"), through:

Tandem is a product of the Tandem AI division. Tandem runs locally on your device by default; Tandem's role as a controller is limited to the surfaces listed above.

2. Information we collect

Information you give us

Information collected automatically from our website

Information we do not collect

3. Local-first architecture

Tandem's default install is a desktop app that runs entirely on your machine. All project, task, session, and vault data lives in files on your local filesystem. Your prompts, AI conversations, generated code, and knowledge base are never transmitted to Tandem servers unless you explicitly:

Even in Cloud mode, we encrypt data at rest and in transit and keep sub-processor footprint minimal (Section 8).

4. How we use information

We do not use your information to train AI models, for advertising, or to build cross-site profiles.

5. BYOK and AI providers

Tandem is BYOK ("bring your own key") by default. When you configure Tandem with an Anthropic, OpenAI, or other model-provider key:

If you use the optional Credential Vault Proxy, the proxy injects credentials at request time so subagents never see raw keys; the prompts and completions still flow through the chosen provider under its own terms.

7. Sharing and disclosure

We do not sell personal information, and we do not share it for cross-context behavioral advertising. We disclose information only:

8. Sub-processors

Short list on purpose. As of the last updated date:

Model-provider APIs you configure (Anthropic, OpenAI, Google, etc.) are not our sub-processors — you contract with them directly (Section 5).

9. Data retention

10. Security

No system is perfectly secure. If a breach affects your personal information, we will notify you without undue delay and within the timeframes required by applicable law.

11. International transfers

Tandem and its sub-processors may process your information in the countries where they operate. We do not currently offer Cloud hosting in the European Union; EU Cloud hosting is coming soon, and we will put appropriate data-transfer safeguards in place before we offer it.

12. Your rights (GDPR / UK GDPR)

If you are in the UK, EEA, or Switzerland, you have the right to access, rectify, erase, restrict, port your data, object to processing based on legitimate interests, withdraw consent, and lodge a complaint with your supervisory authority. Email privacy@tandembase.xyz. We respond within 30 days.

13. Your rights (CCPA / CPRA)

If you are a California resident, you have the right to know, access, delete, correct, opt out of sale/sharing (we do not sell or share), limit use of sensitive personal information, and receive non-discrimination for exercising these rights. Email privacy@tandembase.xyz. We respond within 45 days.

14. Children's privacy

Tandem is directed to adults and is not intended for children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us personal information, email privacy@tandembase.xyz and we will delete it.

15. Cookies and tracking

tandembase.xyz is designed to run without third-party cookies or trackers. We use:

If we add analytics, it will be cookieless (Plausible, Umami, or equivalent). This policy will be updated first.

16. Do Not Track and Global Privacy Control

We do not track users across sites, so DNT and GPC signals do not change what we collect — there is already nothing to opt out of. We honor GPC as a valid CCPA/CPRA opt-out of sale or sharing.

17. Automated decision-making

We do not make decisions that have legal or similarly significant effects on you using solely automated processing.

18. Changes to this policy

We update this policy when our practices change, when the law requires, or when we add a sub-processor. Material changes are announced on this page with a new "Last updated" date and, where required, by direct notice. Continued use after an update constitutes acceptance.

19. Contact

Tandem

Previous versions of this policy are available on request from legal@tandembase.xyz.