Privacy Policy

Last updated: September 2026
This is a plain-language starting point, not a substitute for legal advice. It describes what Gydmation actually does with data, based on its real architecture. If you're relying on this for compliance purposes (GDPR, CCPA, India's DPDP Act, or otherwise), have it reviewed by a qualified lawyer for your specific situation and jurisdiction.

The short version

Gydmation is self-hosted software. It runs in a Docker container on your own machine. Your prompts, generated workflows, and n8n credentials are stored locally, on your computer — not on our servers. We only see information related to your account (email, encrypted password) and, if you're on a paid plan, your billing status.

What we collect

Account information

When you sign up, we store your email address and an encrypted password hash. This lives inside your own local installation, not on a remote database we control.

Billing information (Pro plan only)

If you upgrade to Pro, your subscription is processed by Razorpay, our payment provider. We receive and store your license key, subscription status, and remaining credit balance on our central server — this is necessary to verify your entitlement and meter usage. We do not receive or store your card details; Razorpay handles that directly under its own privacy policy.

What we do not collect

  • The workflows you generate
  • Your prompts or conversation history
  • Your n8n instance URL or API credentials
  • Any BYOK (bring-your-own-key) API keys you add for other AI providers

All of the above stay in your local Docker volume, encrypted where applicable, and are never transmitted to us.

Third-party AI providers

When you generate a workflow, your prompt is sent to whichever AI model is processing that request, so it can be understood and turned into a workflow. Depending on your plan and model choice, this may be:

  • Anthropic (Claude Sonnet 5, Claude Opus 5) — used for Pro-tier generations
  • Groq — used for free-tier and BYOK generations
  • OpenAI-compatible providers (e.g. GPT-5.6 Terra), or any other provider you've explicitly added your own API key for — used for BYOK generations, on any plan

On Pro, these requests are routed through our proxy so your own API keys are never required — but your prompt content still reaches the underlying model provider to generate a response. Each provider processes that data under its own terms and privacy policy; we don't control how they handle it beyond the request itself, and we don't send them your account email, payment details, or n8n credentials.

On the Free plan with your own API key, your prompt goes directly from your machine to the provider you configured — we're not in that path at all.

How we use what we do collect

  • To authenticate you and keep your account secure
  • To verify your Pro subscription status and enforce usage limits
  • To process payments via Razorpay
  • To respond if you contact us for support

We do not sell your data, and we do not use it for advertising — Gydmation doesn't run ads.

Data retention and deletion

Your local data (workflows, history, settings) persists in your Docker volume until you delete it yourself — we have no access to it and no way to delete it remotely. Account and billing records on our server are kept while your account is active. If you delete your account, we remove your usage history, credit balance, and stored license data associated with it.

Your choices

  • Use your own API key instead of Pro, if you'd rather your prompts never pass through our infrastructure at all
  • Delete your account at any time by emailing support@hacroo.com, which removes your billing and usage records with us
  • Uninstall Gydmation and delete its Docker volume to remove all local data immediately

Contact

Questions about this policy: support@hacroo.com