1. Who we are
Xymotrone provides managed headless browser infrastructure. This policy describes the data we handle when you create an account and run browser automation through the platform. It reflects how the product is actually built, not a generic template.
2. Data you give us
Account data (email address and authentication records), billing data handled by our payment processor, and the operational data you configure: tasks and their instructions, allowed domains, schedules, proxy endpoints, credential entries, model provider endpoints and API keys.
3. Data generated by using the service
Running a task produces run records: status, timings, step timelines, model latency and token metrics, error codes, diagnostics and optional screenshots of the pages your agent visited. This data exists so you can debug and audit your own runs.
4. How secrets are stored and used
Credential passwords, TOTP seeds, proxy passwords, CAPTCHA provider keys and cloud model API keys are encrypted with AES-256-GCM using a key derived by SHA-256 from a server-only master secret. Ciphertext is stored in dedicated secret tables that the browser can write to but never read. Values are decrypted only in server-side execution — to inject a login into a page, authenticate a proxy, or attach an API key to an outbound model request. Cloud model calls are proxied server-side so your provider key is never exposed to the browser.
5. Screenshots and session artefacts
Screenshots captured during a run are written to a private storage bucket that is not publicly listable. They are served to you through short-lived signed URLs generated for your authenticated session only.
6. Third parties we rely on
We use a managed cloud database and authentication provider, a payment processor for subscriptions, and — only when you configure them — your chosen proxy providers, CAPTCHA solving services and AI model providers. Requests to those services are made with the keys you supply, on your behalf, and are governed by their own policies.
7. What we do not do
We do not sell your data. We do not use the contents of your runs to train models. We do not read your stored credentials for any purpose other than executing the task you configured. Support staff cannot decrypt your secrets through the application UI.
8. Retention and deletion
Operational data stays until you delete it: deleting a task, credential, proxy or run removes the associated rows and the secrets attached to them. Deleting your account removes your account-scoped data. Billing records are kept as long as required for accounting and tax purposes.
9. Your choices
You can export or delete your tasks, credentials, proxies and runs from within the app at any time, change cookie preferences from the banner or the link below, and request a Data Processing Agreement before onboarding. For access or deletion requests beyond the in-app controls, contact us from your account.
10. Changes to this policy
We update this page when the way we handle data changes. Material changes are announced by email or in-app notice before they take effect.