Cloak
Privacy policy
Effective September 4, 2026
What Cloak collects
When you continue with Google, Cloak receives your verified email address, Google account identifier, and basic profile name. Cloak also stores information you choose to add to your vault, along with exposure, removal, verification, and monitoring records created for your account.
How it is used
Your information is used to create and secure your account, compare potential online exposures, support removal workflows, preserve proof, and monitor verified removals. Cloak does not sell your personal information.
Protection and sharing
Sensitive profile fields are encrypted at rest. Session identifiers are stored as cryptographic hashes and sent through secure cookies. Information is shared only with service providers needed to operate Cloak, with a site when you direct a removal workflow, or when required by law.
Optional GLM assistance
GLM is not required for Cloak’s core workflow. Cloak provides a server-managed Z.ai connection, so customers do not enter an API key. When you press a helper action, Cloak sends the text for that action, its selected task, and safety instructions to Z.ai. Vault data and full provider records are not attached automatically. Z.ai processes submitted text under its own terms and privacy practices.
Cloak does not save AI prompts or responses as conversation history and does not use suggestions as removal evidence. GLM cannot submit requests, change listing status, or verify removal. Closing or not using the helper prevents new requests but cannot recall information already sent to Z.ai. Cloak’s server API key is never included in account exports, backups, or browser responses.
Your choices
You may sign out at any time. Account export, backup, history deletion, evidence deletion, and complete deletion controls are available in Data settings.
Contact
Questions about this policy can be sent to saz3labs@gmail.com.