Privacy Policy
Effective August 14, 2026
Information used
IdeaRivet, formerly known as ForgeAI Studio, processes account information, project content, build activity, and deployment metadata to provide the service.
Customer reviews and approvals
Project owners may create expiring, revocable links to verified deployed previews. Feedback stores the message, feedback category, and only a coarse device class and browser family. An approval or change request additionally stores the reviewer's self-provided name, decision, optional note, exact deployment evidence, and receipt fingerprint. The name is not independently identity-verified and the receipt is a product delivery record, not an electronic-signature service. IdeaRivet does not store the reviewer's IP address or raw browser user-agent with review records.
Handoff preparation
Owners may store customer name, non-secret delivery notes, checklist status, and the selected approval receipt. Handoff exports exclude project source, passwords, tokens, API keys, and secret values and do not transfer account or asset ownership.
Vercel authorization
Vercel access tokens are encrypted before server-side storage. They are never exposed to the browser after authorization and are used only for actions requested by the signed-in user.
Advertising measurement
When a visitor chooses Allow measurement, IdeaRivet may send coarse page and funnel events, a unique deduplication ID, the IdeaRivet page URL, and technical request data such as IP address and browser user-agent to Meta and/or TikTok for campaign measurement. IdeaRivet does not send project source, prompts, customer feedback, secrets, payment details, or raw account email through this integration. The choice is stored in the browser and can be changed by clearing IdeaRivet site data.
Sharing and retention
IdeaRivet does not sell personal information. Data is shared with service providers only as needed to operate authentication, AI generation, billing, storage, review, and deployment. Users may disconnect Vercel or revoke a customer review link at any time.
Security
IdeaRivet uses authenticated sessions, encrypted credentials, row-level database controls, hashed review tokens, deployment-bound receipt fingerprints, and scoped provider permissions.