Last updated: 26 July 2026 · Cepho (Denmark / EU)
Cepho ("we", "us") operates cepho.cloud and the Cepho mobile app and VS Code/Cursor extension. This policy explains how we process personal data under the GDPR and what you should know before using Cepho on Google Play or elsewhere.
Account
Email address, display name, Firebase authentication identifiers, account creation date.
Project data
Files and file contents you sync to Cepho cloud, chat messages and AI responses, sync metadata (file paths, timestamps, snapshot identifiers). This data is stored in Firebase Storage and Firestore.
Chat attachments
If you attach photos or files in chat, we store them in Firebase Storage and may send resized image data (or extracted text from documents) to our AI provider to answer your request. We do not access your photo library except when you choose a file.
Voice input
If you use microphone / speech-to-text in the app, audio is processed by your device’s operating system speech recognition to create text. Cepho does not upload raw audio recordings to our servers. The resulting text becomes part of your chat message and is handled like other chat content (including AI processing below).
Beta program
If you participate in the Cepho beta, we collect: usage counters (messages sent, messages remaining), beta status flag, and approximate country/region derived from your IP address at registration time. We do not store your precise IP address.
Waitlist and share campaign
Email address submitted to our waitlist. If you participate in our share campaign, we collect your email address and the link to your post.
Download tracking
We log anonymous download clicks on beta app distribution pages (no personal data, only timestamp and approximate country).
Billing
Payment status and subscription tier via Stripe. We do not store full card numbers — Stripe handles all payment processing.
Technical
Device type, app version, extension version, crash information if you submit feedback.
Cookies
Essential session cookies on cepho.cloud only. No advertising trackers, no third-party analytics.
We process data to provide cloud sync, AI chat, billing, and support (contract / legitimate interest). Beta and waitlist data is processed on the basis of your consent at sign-up. Marketing emails only with consent. Microphone and photo-library access are used only when you invoke those features, to turn speech into text or attach media you select.
You retain full ownership of your code and files. Cepho is a sync and interface layer — we do not claim rights to your content. We are not responsible for the content, quality, security, or licensing of code you upload. Do not store unlawful material, secrets, or credentials in your Cepho workspace.
Cepho’s chat feature uses a third-party AI provider. When you use Cepho AI chat, your messages, relevant file contents you choose to include, and any images/attachments you send in that conversation are transmitted via our Firebase Cloud Functions to Anthropic’s Claude API to generate responses. Anthropic processes this data as a sub-processor on our behalf to provide inference (answers), not as a separate product you sign up for.
We do not use your chat content, code, or attachments to train Cepho’s own AI models. We do not sell your personal data. Under Anthropic’s commercial API terms, customer content submitted via the API is not used to train Anthropic’s foundation models; see anthropic.com/privacy and Anthropic’s API terms for their current practices.
AI replies may be incorrect — verify generated code before use. By sending a chat message that triggers AI, you consent to that message (and any attached content for that request) being processed by Anthropic as described above.
Where sub-processors are based outside the EEA, we rely on Standard Contractual Clauses or equivalent safeguards. Data in transit to our services and processors is protected with industry-standard encryption (TLS).
We share personal data with the processors listed above only as needed to run Cepho. We do not sell personal data and we do not share it for cross-app advertising. Approximate country/region from IP is used for beta/geo insights, not for ads.
Account and project data: retained while your account is active. After account deletion we purge cloud data within 30 days unless law requires longer retention.
Beta data: retained until the beta program ends or you request deletion.
Waitlist data: retained until the waitlist closes or you request removal.
Chat history: all messages are retained in Firestore until account deletion. Free-tier users are limited by monthly message quota, not by history duration.
You can delete your account in the Cepho mobile app (Profile → Delete account) or by emailing support@cepho.cloud.
Cepho is a professional coding tool and is not directed at children. We do not knowingly collect personal data from anyone under 13 (or under the digital-consent age in their country, which may be up to 16 in parts of the EU). If you believe a child has provided us data, contact support@cepho.cloud and we will delete it.
You have the right to access, rectify, erase, port, restrict processing of, and object to processing of your personal data. To exercise any right, contact support@cepho.cloud. Response within 30 days.
You may also lodge a complaint with Datatilsynet (the Danish data protection authority) at datatilsynet.dk.
Data controller: Cepho · support@cepho.cloud · danny@cepho.cloud
Related: Terms of Service