SteelSpine AI is local-first by design. We collect the minimum data required to operate the service.
SteelSpine AI is a product of Felps Enterprises Inc., a Canadian corporation registered federally and extra-provincially in Ontario, Canada. Our registered office is in Hamilton, Ontario, Canada. You can reach us at hello@steelspine.ai.
For the purposes of GDPR (EU/UK), we are the data controller for personal data we collect from customers and visitors. For Canadian PIPEDA purposes, we are the organization handling your personal information.
This is the core privacy property of the product. Compliance officers and security teams choose SteelSpine specifically because the audit trail does not leave their environment.
When you sign up for a paid subscription or trial, we collect:
Payments are processed by Lemon Squeezy, our Merchant of Record. Lemon Squeezy collects and processes your payment details (credit card, billing address, etc.) under their own privacy policy. We receive only a tokenized customer reference, subscription status, and billing-event metadata — never your full card details.
See Lemon Squeezy's privacy policy at lemonsqueezy.com/privacy.
The SteelSpine binary validates your license key on startup against Lemon Squeezy's license API. This validation transmits:
License validation does not transmit any of your captured run data, agent code, prompts, or outputs.
SteelSpine has no telemetry by default. If you opt in to crash reporting (off by default), the crash report includes the stack trace, the SteelSpine version, and your operating system — never your captured run data.
The steelspine.ai website is hosted on Cloudflare Pages. Cloudflare may log anonymized request metadata (IP address, user-agent, page accessed) for security and abuse prevention. We do not run third-party advertising trackers or behavioral analytics on the website.
If you email hello@steelspine.ai, we retain the email contents and your email address to respond to your support request and improve the product.
We do not sell your personal data. We do not share it with third-party advertisers. We do not use your captured run data to train any model.
Account information and license records are held in our Lemon Squeezy account (Lemon Squeezy operates internationally; data may be stored in the United States). Cloudflare hosting data is held on Cloudflare's global infrastructure. Support emails are held in our Cloudflare Email Routing inbox.
Captured run data, by design, is stored only on your own infrastructure.
Depending on your jurisdiction, you have rights including:
To exercise any of these rights, email us at hello@steelspine.ai. We will respond within 30 days.
SteelSpine AI is a B2B developer / compliance tool and is not intended for use by individuals under the age of 16. We do not knowingly collect personal data from children.
We use industry-standard practices to secure account and billing data. Lemon Squeezy is PCI-DSS compliant for payment data. Cloudflare provides TLS encryption for all web traffic. Despite these measures, no system is completely secure; if we discover a security incident affecting your data we will notify you and the appropriate regulators within the timeframes required by law.
We will post any changes to this Privacy Policy on this page and update the "Last updated" date. For material changes, we will notify active customers by email at least 30 days before the change takes effect.
Felps Enterprises Inc.
Hamilton, Ontario, Canada
Email: hello@steelspine.ai