# Security and Privacy

## Overview

Memside uses privacy-conscious defaults:

- saved data belongs to the account;
- AI sharing is intentional;
- external connections, exports, and deletions remain controlled.

Memside does not send saved content to an AI provider unless a connected tool
or provider is used.

## Saved data

Memside stores the Memories, notes, tasks, attachments, and other information
that is intentionally saved.

That information remains private to the account unless it is exported or used
through a connected service.

## Connected AI providers

Memside supports externally managed AI providers and connected AI tools.

When the in-app assistant, MCP, or API is used, only the information involved
in that request is sent to the chosen provider or tool. Memside does not
automatically send the entire Memory collection.

## Safe connection habits

- Connect only trusted tools and servers.
- Review requests that create, update, export, or delete information.
- Keep API keys out of URLs, public files, screenshots, and shared messages.
- Revoke keys and disconnect OAuth connections when they are no longer needed.
- Review the terms and privacy policy of each external AI provider.

## API keys and AI Permissions

API keys are shown in full only when they are created. They can be revoked from
Settings.

AI deletion is controlled separately. When **AI delete permission** is off,
connected AI tools cannot request deletion. When it is on, each deletion still
requires confirmation.

## Account access

Memside uses sign-in and authenticated sessions. Sign out after using a shared
computer.

Revoke any API key or connection that should no longer remain active.

Memside and Memside Library use the same account identity with separate
application sessions. Coordinated sign-out clears both product sessions. Public
Library browsing does not expose private Memories, drafts, imports, personal
lists, or account notifications.

## Library content

Published Templates and creator pages are public. Private drafts and personal
Library activity require authentication.

Catalog review reduces risk but does not guarantee that every published
instruction is appropriate for every workflow. Template files should be read
before download, import, or use. License information remains attached to the
published Template.

Authenticated downloads create privacy-bounded activity records used for
account metrics and catalog ranking. Public creator metrics do not reveal
downloader identities.

## Encryption

Memside uses encryption in transit and applies encryption at rest to protected
user-authored content and other sensitive information where appropriate.

Operational and security information may still be processed to provide,
protect, troubleshoot, and maintain the service.

Passwords, recovery codes, payment details, and access keys should not be saved
in Memories.

## Export and deletion

Memories can be exported as CSV or Markdown from **Settings > Import &
Export**.

Individual Memories can be deleted. The full account can be permanently removed
from **Settings > Delete Account**. Account deletion also removes owned Library
Templates and account-linked Library data. Independent private imports already
created by other accounts are not changed.

## Policies

Open **Settings > Legal** for the current Privacy Policy and Terms.

## Next steps

- [Sensitivity levels](/product/memories/#sensitivity-levels)
- [Settings](/product/settings/)
- [Memside Library](/library/)
- [Troubleshooting](/help/troubleshooting/)
