Last updated: August 31, 2026
Privacy Policy
InControl is made by Alan Wizemann, LLC, a Delaware limited liability company. This policy describes what we collect, where it lives, who else touches it, and how to make it go away. It describes the product as it actually works today — not a wish list.
The short version
- We store your account, your projects, and your session — nothing else.
- Your project content is sent to AI models when you use an AI feature. We do not use your content to train models.
- There are no advertising trackers and no third-party analytics.
- We do not sell your data, and we do not share it for advertising.
- Delete your account and your data goes with it.
What we store
Account data
Your email address, your name, and — if you set a password — a hashed version of it. We never store the password itself. Authentication is handled by Better Auth running inside our own service, which supports both email-and-password sign-in (with email verification) and passwordless magic links. If you use magic links, we hold no password for you at all.
Project content
Everything you put into a plan: projects, phases, tasks and their dates and notes, budget and money figures, vendors and contacts, the activity log, and any documents you upload.
Session data
A session record (in our database) so you stay signed in, plus routine operational records — for example a per-account counter of AI calls used within the current rate-limit window, which exists so one account can't exhaust capacity for everyone.
Our servers also see the ordinary technical details every web request carries (IP address, browser user agent, timestamps). We don't build profiles from them; they're used for security, rate limiting, and debugging.
Where it runs
InControl runs entirely on Cloudflare's global network. Specifically:
- Cloudflare Workers — the application itself.
- Cloudflare D1 — the database holding your account, your project content, and your session records.
- Cloudflare R2 — object storage for documents you upload.
- Cloudflare KV — a key-value namespace bound to the service for short-lived operational data.
Cloudflare processes this data on our behalf as our infrastructure provider. Because its network is global, your data may be stored or processed outside your own country, including in the United States.
AI processing
When you use an AI feature — the planning pass that drafts your plan, the assistant chat, the risk check, or task research — the relevant parts of your project are included in the prompt sent to a language model.
- Models are run on Cloudflare Workers AI, reached through Cloudflare's AI Gateway, which we use for logging, metering, and a per-user usage cap. Requests carry your internal user ID for attribution — never your email address or name.
- Model calls are metered per account. Once you hit the cap for the current window, further AI calls are refused until it resets.
- We do not use your content to train models, and we do not sell, rent, or license it to anyone. Cloudflare's own handling of Workers AI inputs is governed by its terms and privacy documentation.
Web research
When you ask for research on a task, our servers — not your browser — fetch the pages involved. Two things happen:
- Search. The query the assistant forms is sent to Brave Search's API to find candidate pages. That query is derived from your project context, so treat a research request the way you'd treat typing something into a search engine.
- Page fetches. We request public web pages server-side and extract their text for the model to read. Requests come from Cloudflare's edge, not from your IP address, and are restricted to ordinary public web addresses.
Research only runs when you ask for it. It is never a background activity.
We send transactional email only — no marketing, no newsletters, no drip campaigns. That means:
- authentication mail: email verification, magic sign-in links, password resets;
- the daily digest of what's due on your projects, which you can turn off any time from the account menu in the app.
Email is delivered using Cloudflare's email sending service.
What we don't do
- No advertising trackers. No ad pixels, no remarketing tags, no social media trackers — on this marketing site or in the app.
- No third-party analytics. We have no Google Analytics, no product analytics SDK, and no session recording. The only traffic figures we see are Cloudflare's own aggregate request metrics for our services.
- No sale of data. Ever, to anyone, for any purpose.
Cookies
The app sets a session cookie so you stay signed in, plus the cookies Better Auth needs to complete a sign-in securely. That's all. There are no advertising or analytics cookies, which is why you've never seen a consent banner here. Clearing the session cookie signs you out.
Who else sees your data
We share data only with the service providers that make the product work, and only as much as they need:
| Provider | What it handles |
|---|---|
| Cloudflare | Hosting, database, document storage, sessions, AI model inference and gateway, transactional email delivery |
| Brave Search | Search queries, only when you request research |
We may also disclose data if we're legally required to, or where it's necessary to investigate abuse or protect people from harm. If we're ever acquired, your data may transfer with the business, and this policy — or one at least as protective — will continue to apply.
How long we keep it
Your account and project content are kept until you delete them. Delete a project and it's gone; delete your account and everything with it is gone. Operational records such as rate-limit counters expire on their own within minutes or hours.
Deleting your data
You can delete any project from inside the app, which removes it along with its phases, tasks, payments, and uploaded documents. To delete your whole account, email hello@getincontrol.com from your account address and ask us to — we'll do it and confirm. (A self-serve delete button is coming; until it lands, one email is all it takes.)
Deletion removes your data from our primary stores — the database, the document bucket, and your sessions. Being honest about the tail: copies can persist for a short period in database replicas, storage propagation, and routine backups before those age out on their normal schedule. Those copies aren't used for anything; they simply haven't caught up yet. Log entries that record that a request happened may also persist for a short retention period.
Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, to object to or restrict certain processing, and to complain to a data protection authority. We extend the practical parts of these rights to everyone regardless of location: email hello@getincontrol.com from your account address and we'll get you a copy of your data or delete it. We aim to respond within 30 days, and we won't charge you or treat you differently for asking.
Children
InControl isn't for children. We don't knowingly collect personal data from anyone under 13. If you believe a child has given us data, email us and we'll delete the account.
Changes to this policy
We'll update this page as the product changes. If a change is material — a new category of data, a new processor, a new purpose — we'll notify you by email or in the app before it takes effect. The "last updated" date at the top tells you when this version was published.
Contact
Alan Wizemann, LLC, a Delaware limited liability company, is the controller of your
personal data.
hello@getincontrol.com
See also our Terms of Service and Refund Policy.