Privacy Policy
Version 2026-09-30.2
This policy explains what Orbit Mind, made by CyBrainX (“we”), collects, why, where it is kept and for how long, and the rights you have under Brazil’s General Data Protection Law (LGPD) and similar laws.
Reports and sharing safety
When you report a shared map, we keep the affected map and author identifiers, sharing token, map title and revision, reason, optional explanation and submission time. We do not reveal the reporter's identity to the author. Authorised support staff can review reports and the current map; the map may have changed since the report was submitted.
For signed-in readers, blocks belong to the account and follow it across devices. Guests use a random identifier stored in their browser or device secure storage; we keep only a hash on the server. It is used for reports, block lists and abuse limits, not advertising. Clearing browser data or changing devices can reset guest blocks. Manage or remove blocks from the shared-map screen or settings.
Resolved reports and their explanations are normally removed after 90 days. Active suspension decisions are retained while sharing remains suspended so they can be reviewed or appealed. Outstanding reports are retained until reviewed. Do not include unnecessary personal information in a report. These data are used to protect the service and handle complaints, and are not sent to an AI moderation provider.
What we collect, and why
- Your account: your name and verified email address from the provider you sign in with, the provider’s id for your account, and when you agreed to these terms. We use them to sign you in and keep your maps yours.
- Email and password: if you choose this method, Firebase Authentication (Google) verifies your password and sends confirmation and recovery links. Orbit Mind does not store your readable password. We retain an encrypted Firebase refresh credential for your Orbit Mind session and periodically check that it remains valid. Pending registration records expire after 30 days and are removed by a bounded scheduled cleanup. Sessions using Firebase credentials are revalidated within five minutes; revoked credentials cannot renew them. Account deletion also removes the Firebase identity. Temporary attempt counters contain hashed keys, not readable email addresses.
- Maps you sync: the content of the maps you open while signed in, up to 50 earlier versions of each so you can restore them, and files you attach. We use them only to keep your maps in step between your devices.
- Share links: which maps you share and when you stop.
- AI drafts: what you ask for is sent to our AI provider to produce the draft. Only the completed draft is kept privately in your account for up to 24 hours so you can recover a lost response without a new charge. They are unavailable after that deadline and removed by the scheduled cleanup. Usage metadata (length, model and cost) remains to enforce limits. The original request is not saved separately. Account deletion removes these results.
- Product emails: only if you turn them on. You can turn them off at any time.
- Operations: when something fails we record the kind of failure and when it happened — never who you are or what you were writing.
- Usage counts on the web: only if you allow them in the banner, and without identifying you.
We do not sell your data. The Android app can show clearly labelled, non-personalized Google AdMob native ads alongside curated map-building guidance while AI is working. Ads are disabled for confirmed paid subscribers, users under 18, and users who have not stated their age group. An ad never grants AI credits or delays the result. Your maps, attachments, AI requests and account details are not supplied to the advertising SDK.
Before advertising starts, the app requests applicable privacy choices through Google's consent platform. You can review advertising choices and your age group in Settings → Privacy and data. Your age-group choice is kept on your device, without your date of birth. The advertising SDK may process IP-derived approximate location, device or other identifiers, ad interactions and diagnostics to deliver ads, measure their performance and prevent fraud. Non-personalized advertising does not mean that no data is processed.
Who else processes it
- Cloudflare hosts the service, the database and the file storage.
- Google confirms who you are when you sign in with Google. Firebase Authentication manages email/password credentials and verification and recovery emails.
- OpenRouter and the model provider it routes to receive the text of an AI request in order to answer it.
- Google AdMob processes advertising data when advertising is enabled in the Android app. See Google's Privacy Policy.
- Linkup receives search queries when an AI request uses web sources. Our service uses the country inferred from the request's IP address to select the appropriate processing region.
These providers may process data outside Brazil, under safeguards required by the LGPD.
How long we keep it
- Your account and synced maps: while your account exists.
- A deleted map: 30 days in the trash, then it is removed for good.
- Earlier versions of a map: the latest 50.
- Sign-in sessions: until they expire or you sign out.
- Failure records: 30 days.
Your rights
You can ask us to confirm what we hold about you, to correct it, to give you a copy, to delete it, and to withdraw any consent you gave. Maps can be exported from the app at any time. Write to oberdan@cybrainx.com and we will answer within the time the law sets.
Cookies
On this website, we use cookies to keep you signed in and to protect sign-in from forgery; we do not display AdMob ads here. Advertising in the Android app uses SDK storage and identifiers according to the applicable privacy choices described above.
Security and children
Data travels encrypted and access to it is restricted. Orbit Mind is not directed at children under 13.
Changes and contact
If this policy changes in a way that matters, we will ask you to agree again. Questions or requests: oberdan@cybrainx.com.