1. Who operates Driftbreak
Driftbreak is operated by Aternox, LLC. In this policy, “Driftbreak”, “we”, “our”, and “us” refer to the Driftbreak product and the team operating it.
Driftbreak helps builders recover drifting AI-built applications, lock the first trustworthy version, and generate a recovery and implementation package.
2. Information we collect
We collect account information needed to sign you in and keep your cases isolated to your account, including name, email address, OAuth provider identifier, workspace membership, session state, and sign-in metadata.
We collect case information you submit, including intake answers, pasted notes, pasted repo-audit results, screenshots, quote records, payment verification metadata, run records, package records, support notes, and admin/recovery events.
We also collect technical information needed to operate the product, including browser/device data, page and action events, referral and UTM parameters, diagnostic logs, error states, and security/audit records.
3. Google sign-in data
Driftbreak uses Google sign-in to authenticate users. We request only the basic profile information needed for account access, such as your Google account identifier, name, email address, and profile image when provided by Google.
Driftbreak does not request access to Gmail, Google Drive, Calendar, contacts, or other private Google product data. We do not sell Google user data, and we do not use Google user data for advertising.
4. How we use information
We use information to authenticate you, create and protect your workspace, run the intake, preserve case history, generate quotes, process payments, launch recovery runs, compile packages, provide downloads, debug failures, prevent abuse, and support stuck-state recovery.
We may use aggregate and de-identified operational data to understand funnel health, product reliability, and launch performance.
5. AI processing
Driftbreak uses AI model providers to process the case material you submit and to generate intake questions, case summaries, pricing assessments, architecture, technical blueprints, implementation workflows, and package files.
Screenshots are treated as visible UI evidence only. Pasted repo audits are treated as supplied inspection evidence. Driftbreak should not claim it inspected a live repository unless that evidence was actually supplied.
6. Payments
Payments are processed by Stripe. Driftbreak does not store full card numbers. We store the payment and checkout facts needed to verify a paid run, prevent duplicate launches, handle support, reconcile payment status, and maintain accounting records.
7. Analytics and session replay
Driftbreak may use PostHog or similar analytics tools to understand visits, sign-ins, intake starts, page movement, and product friction. Session replay may be enabled so we can inspect product usability issues.
We aim to avoid capturing passwords, access tokens, session tokens, payment card data, private intake answers, uploaded screenshots, or sensitive private content in analytics tooling.
8. Sharing and subprocessors
We share information with service providers only as needed to operate Driftbreak. Current categories include cloud hosting and storage, authentication, AI model providers, payment processing, analytics, email/support tooling, and security diagnostics.
Core providers may include Microsoft Azure, Google OAuth, Stripe, OpenAI or Azure OpenAI, and PostHog.
9. Retention and deletion
We retain account, case, quote, run, package, support, payment, and security records for as long as needed to provide the product, support recovery, prevent abuse, resolve disputes, and comply with legal or accounting obligations.
You may request deletion or export by contacting legal@dgsengine.com. Some records may remain where retention is required for security, fraud prevention, payment reconciliation, legal claims, or accounting.
10. Security
Driftbreak uses account ownership, workspace isolation, protected routes, payment verification, and internal admin controls to protect customer cases and package records. No internet service can guarantee absolute security.
11. Contact
Questions, privacy requests, or deletion requests should be sent to legal@dgsengine.com.