Privacy Policy
Last updated July 22, 2026
Walle is a product of Winsen Labs ("Winsen Labs", "we", "us"). This policy explains what data Walle handles, what we store, what we deliberately do not store, and the choices you have. Questions any time: hello@winsen.ai.
The headline: your tool credentials never touch our servers
When you connect a tool (Gmail, Notion, Linear, HubSpot, and others), the OAuth grant or API key is captured and stored by our integration infrastructure partner, Composio, in their secured credential vault. Winsen Labs stores only a reference (an opaque connected-account identifier). We cannot read your passwords or tokens, and they are never written to our database. You can revoke a connection at any time from your connections page, or directly at the provider (for example, your Google account's security settings); revoking makes the stored credential unusable.
What we do store
- Account data: your email address and name, used to sign you in and identify you across Slack and the web app.
- Slack workspace data: your workspace name and identifiers, and the bot token issued when Walle is added to your workspace (encrypted at the application layer). Walle processes the Slack messages it is mentioned in, or sent by DM, in order to respond.
- Conversations and memory: your conversations with Walle and the durable memories derived from them (facts, preferences, events, relationships you share). Memory is the point of Walle: it is what makes the agent useful over time. Memories are scoped to you and never shared across users or workspaces.
- Artifacts: documents, reports, and pages Walle creates for you. Private by default; you control sharing (private with invited emails, or link).
- Usage events: a metered record of actions Walle performs (which tool, when, on whose behalf), used for usage limits and billing.
- Analytics: with your consent (the cookie banner), we use PostHog for product analytics and session recordings of the web app. Nothing is captured before you accept, and declining keeps analytics off.
What we do not do
- We do not store third-party passwords, OAuth tokens, or API keys.
- We do not sell your data, ever.
- We do not use your data to train models. Model providers used by our agent runtime process content transiently to generate responses.
- We do not read your connected tools in the background. Tools run when you ask Walle to do something, or on schedules you explicitly create; outward-facing actions require your explicit approval.
Subprocessors
We rely on a small set of infrastructure providers to run Walle:
- Composio: integration credentials and tool execution.
- Supabase: primary database (PostgreSQL).
- Cloudflare: hosting and object storage.
- Together AI: model inference for the agent runtime.
- Slack: the messaging surface Walle lives in.
- Resend: transactional email (sign-in codes, notifications).
- Trigger.dev: background job processing.
- PostHog: consent-gated product analytics.
Your rights
You can access, export, or delete your data at any time by writing to hello@winsen.ai. Deletion removes your account, conversations, memories, artifacts, and usage records from our systems, and disconnecting a tool deletes its credential at the integration layer. If you are in a jurisdiction with specific data-protection rights (such as the GDPR or CCPA), we honor access, rectification, erasure, and portability requests under those frameworks.
Retention
We keep your data while your account is active. When you delete your account, associated data is removed from production systems promptly and from backups on their rotation schedule.
Changes
If this policy changes materially, we will notify you by email or in the product before the change takes effect.