Privacy Policy

Last updated September 4, 2026

GYSM.IO ("GYSM," "we," "us") is an AI app builder: you describe the app you want in plain English and GYSM generates a real, working product with authentication, a database, and Stripe payments already wired in. This policy explains what data we collect when you use gysm.io, why we collect it, how AI is involved, and how you can control it.

Information we collect

When you create an account and use the builder, we collect:

  • Account information — your name, email address, and authentication details, handled for us by our auth provider, Clerk.
  • Build content — the prompts you type and the app code, previews, and project data GYSM generates for you, stored in our database so you can come back and keep editing.
  • Payment information — if you buy credits or a subscription, billing is handled entirely by Stripe. GYSM never sees or stores your full card number.
  • Usage data — credits used, build history, and basic product-usage events, so the builder works reliably and we can improve it.
  • Standard web logs — IP address, browser type, and similar technical data collected automatically by our hosting provider for security and reliability, the same as almost any website you visit.
  • Published-build view data — if you publish a build, each page load of that build's public link logs the referring page (where the visit came from) and a timestamp, so you can see traffic on your own dashboard. This is server-side log data, not a tracking cookie set on the visitor's device.

AI models we use

When you submit a prompt, GYSM sends it (and relevant build context) to one or more third-party AI models to generate your app — currently OpenAI (GPT), Google (Gemini), and Anthropic (Claude), depending on the model tier you select. Each provider processes that request under its own commercial API terms, which — unlike their free consumer products — contractually exclude using API inputs/outputs to train their models. We don't control those providers' infrastructure and encourage you to review their own privacy terms if you want the full picture. GYSM.IO is the "provider" of the resulting AI system for the purposes of applicable AI regulation (such as the EU AI Act), since we determine how these models are integrated into and used within the product.

Cookies and analytics

GYSM.IO uses Vercel Analytics, PostHog, and Google Analytics 4 for product analytics — aggregated usage data (which pages get visited, which features get used) that helps us see what's working. Vercel Analytics is cookieless and doesn't build a cross-site profile of you; PostHog and Google Analytics do set analytics cookies (and, if you don't turn analytics on, they simply never load — both are optional and off by default). We also use a small amount of browser local storage that's strictly necessary for the product to work (for example, remembering a prompt you typed before signing in, or your progress through the App Store submission checklist) — this isn't used for tracking and doesn't require consent under ePrivacy rules. On your first visit we ask for an explicit, opt-in choice before any of Vercel Analytics, PostHog, or Google Analytics runs; you can change that choice anytime via "Cookie preferences" in the site footer.

BuildGuild and public sharing

If you choose to publish a build to BuildGuild, our public showcase, that app and the details you add (title, description, screenshots) become visible to other users and visitors. Anything you don't want public should stay unpublished.

How we use your information

We use the data above to operate the builder, generate and store your apps, process payments, keep the service secure, respond to support requests, and improve GYSM.IO over time. We do not sell your personal data to advertisers or data brokers.

Who we share it with

We share data only with the service providers that power GYSM.IO, each acting under their own privacy and security commitments: Clerk (authentication), our database and hosting providers (storing and serving your builds), Stripe (payment processing), OpenAI, Google, and Anthropic (processing prompts to generate your app), and Vercel Analytics, PostHog, and Google Analytics (product analytics, only if you've opted in). We don't share your data with third parties for their own marketing purposes.

International data transfers

GYSM.IO and the providers listed above operate infrastructure in the United States and elsewhere. If you're accessing GYSM.IO from the EEA, UK, or Switzerland, your data may be transferred to and processed in countries outside those regions; our providers rely on recognized transfer mechanisms (such as the EU-U.S. Data Privacy Framework or Standard Contractual Clauses) to do so.

Your rights

Depending on where you live, you may have the right to access, correct, delete, or export your personal data, and to object to or restrict certain processing. EU/UK/EEA residents can exercise rights under the GDPR, including lodging a complaint with your local data protection authority. California residents have equivalent rights under the CCPA/CPRA, including the right to know what we collect and to delete it — we don't sell or share personal information for cross-context behavioral advertising, so there's no "opt out of sale" toggle needed. To exercise any of these rights, email support@gysm.io; we'll verify your request and respond within the time required by applicable law.

Your choices

You can edit or delete individual builds from your dashboard at any time, unpublish anything you've shared to BuildGuild, manage cookie/analytics preferences from the site footer, and request full account and data deletion by emailing us. We'll process deletion requests within a reasonable time.

Children

GYSM.IO is not directed at children under 13, and we do not knowingly collect personal information from them.

Changes to this policy

If this policy changes, we'll update the date at the top of this page. Continued use of GYSM.IO after a change means you accept the revised policy.

Contact

Questions about this policy or your data can be sent to support@gysm.io.