Last updated 2026-09-01
We collect the minimum data needed to run your vault. This policy explains what we hold and why.
Account details, the ciphertext you upload and the metadata required to serve and bill it. We never collect your master key or any plaintext.
To run your vault, deliver archival and keep the service secure. We never use your data to train anything.
You control retention. Ciphertext is held for your archival window, then deleted on your instruction.
You may request access, correction or deletion of your data at any time by emailing privacy@gilt.vault.