Privacy Policy
Last updated: July 16, 2026
1. What Terum does
Terum is a browser extension and web service that captures your AI conversation history, compacts it into a private, structured knowledge graph that you control, and can optionally use that knowledge to personalize your future AI interactions and daily briefings. This policy explains what data we collect, why, and how you control it.
2. Information we collect
Account information
When you sign in with Google, we receive your name and email address from Google OAuth. We use this solely for authentication and account identification.
AI conversation content
When the extension is active, we capture the text of your conversations on ChatGPT (chatgpt.com), Claude (claude.ai), and Perplexity (perplexity.ai) — the prompts you send and the responses you receive, along with conversation titles, timestamps, and conversation identifiers. You can pause capture per-site at any time from the extension popup. With your explicit action, the extension can also import up to 30 days of past conversations (a backfill), which uses your existing logged-in browser session with those services.
If you separately install our optional command-line tool, it can capture your Claude Code coding sessions into the same pipeline. This is opt-in and configured by you outside the browser extension.
Google Workspace data (only if you connect it)
If you choose to connect Google, we read — with your OAuth consent — the Gmail messages and Google Docs in your account, including their text content, to enrich your knowledge graph. Access is read-only. You can disconnect Google at any time to stop further collection.
Slack data (only if you connect it)
If you choose to connect Slack, we read messages from the public channels in your workspace, with your OAuth consent. We use this to enrich your knowledge graph and to deliver Terum briefings into Slack. You can disconnect Slack at any time.
Authentication tokens
The extension stores a JSON Web Token (JWT) issued by our backend in your browser's
local extension storage (chrome.storage.local) to authenticate API
requests. This storage is accessible only to the extension.
Usage metadata
Capture counts, sync progress, and limited error diagnostics (for example, that a capture failed and on which site) so we can keep the service reliable. We do not track general web browsing, search history, or activity on sites other than the specific AI platforms and integrations listed above.
Product analytics and session replay
In the Terum web app we use PostHog to understand how the product is used so we can improve it — for example which pages you visit and which features you use, along with aggregate usage trends. This includes session replay, which records how you navigate and interact with the app (clicks, navigation, and page structure). Text content and form inputs are masked by default, and replay is disabled on screens that display your captured conversation content. We do not use this data for advertising and we do not sell it. PostHog processes this data on our behalf, in the United States, under a data processing agreement (see Third-party services below).
3. How we collect information
The extension uses content scripts that run on the supported AI platforms to observe the API requests your browser already makes to those services, capturing the conversation data. Collection happens locally in your browser before any data is sent to our servers over HTTPS. Google and Slack data is retrieved server-side using the OAuth tokens you grant when you connect those sources.
4. How we use your information
- Knowledge graph construction. Your data is processed to extract entities (skills, tools, topics, preferences, roles, organizations) and relationships, forming your personal, private knowledge graph.
- Personalization (when you enable it). Relevant context from your knowledge graph can be used to personalize your future AI prompts and to generate your daily briefings. These features are under your control.
- Powering the Terum dashboard. Identity, memory, sources, and briefing views in the Terum app.
We do not sell your data. We do not use your conversation content to train AI models. We do not use your data for advertising, profiling for third parties, or any purpose unrelated to providing the Terum service.
5. Third-party services
To provide Terum, we rely on the following service providers, which act as data processors on our behalf:
- OpenAI. Conversation and document text is sent to OpenAI's API to generate embeddings and extract structured entities for your knowledge graph.
- Supabase. Account data and captured content are stored in a Supabase-hosted PostgreSQL database (encrypted at rest).
- Vercel. Our web application and APIs are hosted on Vercel's infrastructure.
- Google. Authentication (Google sign-in) and, only if you connect it, the Gmail and Google Docs APIs.
- Slack. Only if you connect it, to read public-channel messages and deliver briefings.
- Resend. Sending transactional email such as team invitations and briefings.
- PostHog. Product analytics and session replay for the Terum web app, to help us understand usage and improve the product. PostHog is hosted in the United States and acts as a data processor under a data processing agreement (DPA). Session replay masks text and form inputs and is disabled on screens that show your captured content.
We do not sell or transfer your data to any third party for purposes unrelated to providing the Terum service.
6. Data storage and security
Your data is stored in encrypted-at-rest cloud infrastructure and secured with
row-level security policies scoped to your authenticated user ID. The extension
stores authentication tokens and a local capture queue in
chrome.storage.local, accessible only to the extension. All
communication between the extension and our servers uses HTTPS with Bearer-token
authentication.
7. Your rights and control
- Pause capture. Turn conversation capture off globally or per-site at any time from the extension popup.
- Choose your sources. You decide which sources (ChatGPT, Claude, Perplexity, Google, Slack) to connect. Disconnecting a source stops further collection from it.
- Disconnect the extension. The "Disconnect extension" control in the popup clears all locally stored tokens and stops all data collection.
- Delete your data. You can delete your captured data and account from the Terum dashboard, or email us at privacy@terum.ai to request complete deletion. We process deletion requests within 30 days.
- Uninstall. Removing the extension immediately stops all data collection; local data in
chrome.storage.localis deleted automatically on uninstall.
8. Data we do not collect
- Browsing history or activity outside the supported AI platforms and the integrations you connect.
- Passwords or financial information.
- Content from other browser tabs or applications.
- Third-party session cookies are not transmitted to Terum servers.
9. Data retention
We retain your data for as long as your account is active. If you request account deletion, we delete your personal data from our systems within 30 days, except where retention is required by law.
10. Children's privacy
Terum is not intended for use by anyone under the age of 13, and we do not knowingly collect personal information from children under 13.
11. Changes to this policy
We may update this privacy policy as Terum evolves. Material changes will be communicated through the Terum application or by email. The "last updated" date above reflects the most recent revision.
12. Contact
Questions about this policy or want to exercise your data rights? Reach us at privacy@terum.ai.