Privacy policy
Last updated 29 August 2026. Sideboard is a local Mac app plus a Slack relay at relay.sideboard.cloud.
What this covers
This policy describes data handled by the Sideboard desktop/CLI on your computer and by the hosted Slack relay. It is written for people who install the Sideboard Slack app. The marketing site at www.sideboard.cloud does not require an account.
What we collect
- On your Mac. Slack workspace tokens, team and user ids, device name, thread/worktree metadata, and chat you have with agents. Optional tokens for GitHub, Linear, AbleTime, Vercel, Supabase, PostHog, and Sentry also live in the encrypted vault on disk — not in the renderer or in git. Slack workspaces are stored as
slack-workspaces.json. - Through the Slack relay. Slack OAuth codes and the resulting bot/user tokens (held in memory for about five minutes so the desktop can fetch them), then Slack message text, channel ids, user ids, and team ids needed to route DMs and @mentions to your Mac. The relay does not receive git repos, secrets, or VPN-only traffic.
- We do not require a Sideboard cloud account. We do not sell Slack data. We do not use Slack data to train Sideboard models — Sideboard does not host a model.
How it is used
Slack message text is delivered to the Sideboard orchestrator on your Mac so you can drive agents from Slack and so review-ping replies can show up in chat. Agents you installed (Claude Code, Codex, OpenCode, Cursor, and others) may send that prompt text to the model provider you configured. Those providers have their own policies. Sideboard does not retain a product-side copy of Slack messages after they are handed to your Mac.
OAuth exists so Listen can prove which Slack user owns this Mac and so the bot can post replies. The client secret stays on the relay, not in the Mac app.
Where it lives and how long
- Your Mac — until you disconnect the Slack workspace in Settings, uninstall Sideboard, or delete the local data directory.
- Relay (Fly, region sjc) — in-memory sessions while your desktop is connected; OAuth pending results expire after about five minutes. Message text is not stored as a Sideboard database.
- Slack — messages remain in your workspace under Slack’s own retention. Uninstalling the Sideboard app does not delete Slack history.
Access, transfer, and deletion
You can disconnect a workspace in Sideboard → Settings → Remote → Slack, and remove the app from your Slack workspace (Apps → Sideboard → Remove). That drops tokens on the Mac and stops Listen for that team.
To request access, export, or deletion of data Sideboard still holds (for example a leftover vault file, or a question about relay logs), email support@sideboard.cloud. That address is enough; you do not need another account. We will respond within two business days. For GDPR/CCPA-style deletion requests, say so in the email and include the Slack team id if you have it.
Contact
Privacy and data requests: support@sideboard.cloud. Also see Support and how the Slack app works.