Back to VariantGate
Local-first by design

Privacy model

Creative files, names, folder paths, dimensions, hashes, and ZIP contents remain inside the browser during inspection.

What VariantGate stores

Convex stores account and workspace records, requirement definitions, aggregate audit counts, usage, entitlements, provider event status, and reports you explicitly choose to save. Filenames are excluded by default and require a separate informed opt-in.

Identity and billing

WorkOS manages credentials, email verification, password reset, and sessions. Stripe manages payment details, invoices, retries, and subscription checkout after billing is enabled. VariantGate stores provider identifiers and a subscription projection, never card data or passwords.

Export, retention, and deletion

Workspace owners can generate a data export and schedule deletion from Settings. Exports expire automatically; audit and report history follows the active plan’s retention window. Temporary registration intents and abandoned quota reservations are cleaned on schedule.

Operational logging

Logs and provider-event projections must exclude raw creative data, passwords, payment details, full webhook payloads, and registration emails. Provider callbacks persist only the minimum identifiers and state needed for safe retry and reconciliation.

Review the security architecture · Open support guidance