OpenCorp

Legal

Privacy Policy

Last updated: June 30, 2026

1

What OpenCorp is

OpenCorp is an autonomous research agent for early-stage builders. You give it a product URL or description, and it runs market research, identifies likely users, and produces a report of competitors and relevant conversations. This policy explains what we collect when you use that service.

2

Information you give us

When you create an account, we collect the information you provide through Supabase Auth:

  • Email and password if you sign up with email.
  • Google profile (name, email, avatar URL) if you sign in with Google OAuth.

When you run a research session, we collect the product URL or description and any text you submit, plus everything the agent produces: the product analysis, the competitor list, the Hacker News threads it surfaces, and the search queries it used.

3

Information collected automatically

  • Auth cookies issued by Supabase to keep you signed in.
  • Server logs (request paths, status codes, timestamps) for reliability and security.
  • Vercel Analytics — aggregated page views and performance metrics. No personally identifiable information is collected by Vercel on this site.
  • Umami (optional, only if configured for this deployment) — a privacy-friendly analytics tool that does not set tracking cookies.
  • Mastra observability — agent run traces, token usage, and model cost data stored in DuckDB on our infrastructure. Used to monitor reliability and catch failures; not used to profile individual users.
4

How we use your information

We use the data above to:

  • Authenticate you and keep your account secure.
  • Run the research pipeline and return the report to your dashboard.
  • Send you operational emails (sign-in confirmations, security alerts). We don’t send marketing email.
  • Diagnose outages, prevent abuse, and improve the product.

We do not sell your data. We do not share it with advertisers.

5

AI processing

To generate a report, OpenCorp sends the following to our model provider (OpenRouter, model deepseek/deepseek-v4-flash):

  • The product URL or description you submitted, and the text scraped from that URL server-side.
  • The product analysis your agent has already produced.

OpenRouter processes the request and returns the result. We additionally use Algolia to search Hacker News for related discussions. OpenRouter and Algolia act as processors for the queries we send them.

6

Public share links

Any research session can be shared via a public URL of the form /share/<id>. The link itself is the only access control — anyone with the link can view the full report. Don’t share a link if you don’t want the report public. If you delete the underlying session, existing share links stop working.

7

Storage and retention

Research sessions and account data are stored in Supabase (managed Postgres). We retain your account data for as long as your account is active. If you would like your data deleted, email krishavrajsingh@gmail.com and we will remove it within 30 days.

8

Your rights

You can:

  • Access the data we hold about you.
  • Request correction or deletion of your data.
  • Export your research sessions.
  • Close your account at any time.

To exercise any of these, email krishavrajsingh@gmail.com.

9

Third parties we use

  • Supabase — auth and database hosting.
  • Vercel — application hosting and analytics.
  • OpenRouter — LLM inference.
  • Algolia — Hacker News search (via the public HN/Algolia index).
  • Umami — privacy analytics (optional).
10

Changes to this policy

If we make material changes, we’ll update the date at the top of this page. Continued use of OpenCorp after a change indicates acceptance of the updated policy.

11

Contact

Questions, concerns, or data requests: krishavrajsingh@gmail.com.