Effective: August 6, 2026.
Plain-language notice. Not formal legal advice.
Signed-in users may download Lacey for Windows from Settings → Security. That build runs on your PC (not remote control from the cloud). Cloud chat still cannot control anyone’s computer.
access.json that stores access mode (folder or full) and the allowed root path (default folder sandbox: %USERPROFILE%\LaceyWorkspace).ALLOW FULL during setup. Folder mode rejects paths outside the chosen root.access.json; revoke a listed device in Settings → Security; delete your website account anytime.Cloud Lacey runs on a Hetzner VPS. Account signup data stays in the join gate (separate from chat). Lacey cannot read passwords, the account database, SSH keys, or admin keys. Local PC Lacey keeps chat/access data on your Windows machine under the install and workspace folders you chose.
Passwords, other users’ accounts, SSH/API/admin keys, and similar secrets are blocked from chat and never taught into Lacey’s shared memory.
We don’t sell your chats. Logs are for running Lacey, fixing bugs, and keeping the service safe.
An HttpOnly Secure session cookie keeps you signed in after signup/sign-in. The PC zip download requires that signed-in session (guests get 401). No ad trackers.
Don’t paste secrets into chat. Open Settings to download Lacey for Windows, manage devices, or delete your account by typing delete.
Hosting (Hetzner), DNS, fonts CDN, or optional web/wiki fetches may process technical data under their policies when those features run.
Lacey isn’t directed at children under 13. Contact the operator if you believe a child used the service.