Privacy Policy
How MBD Mind collects, uses, retains, and protects information when you use our desktop app and web portal.
Last updated:
Overview
MBD Mind ("we," "us," or "our") provides a desktop application and web portal for individual engineers working with MATLAB and Simulink. This Privacy Policy explains what information we collect, how we use it, and the choices you have.
By using the Service, you agree to the practices described here and in our Terms of Service.
Information we collect
Account and profile data
When you register or sign in, we collect information such as your email address, display name, and account preferences (for example update channel and model defaults).
Usage and billing data
When you are signed in, we collect usage signals needed to operate the Service, including token counts, model provider usage, Hozaifa credit consumption, subscription status, and optional product behavior events when you enable telemetry sync.
Usage telemetry does not include full agent message bodies.
Agent session data
Agent conversations are stored locally on your device by default. When you are signed in and online, we may sync session metadata (for example titles, timestamps, token totals, and tool usage) to your cloud account.
Message content may also sync to your cloud account when you are signed in and online. Session and activity data on the desktop can be purged automatically based on your local retention preference in desktop Settings.
Credentials and configuration
Cloud LLM API keys and related provider credentials you configure are stored locally on your device using OS-backed secure storage. We do not receive your BYOK API keys unless you explicitly use a hosted inference path we operate.
Authentication tokens for your MBD Mind account are stored locally to keep you signed in on the desktop app.
MATLAB and Simulink integration
When you enable MATLAB or Simulink MCP integration, commands and model operations run against your local MATLAB installation. That processing stays on your machine unless you separately send prompts or outputs to a cloud LLM provider.
Contact and support
If you submit a contact form or email us, we collect the information you provide (such as name, company, email, and message content).
Technical data
We may collect device and application diagnostics (for example app version, operating system, download events, and error reports) to maintain reliability and security.
How we use information
We use collected information to:
- provide, secure, and improve the Service;
- authenticate users and administer accounts;
- meter usage, manage subscriptions, and process payments;
- respond to support requests;
- send service-related communications (for example sign-in codes and password reset emails); and
- comply with legal obligations.
We do not sell your personal information.
Data retention
| Data type | Default retention |
|---|---|
| Cloud-synced agent messages | Purged after 90 days by default (contact us to adjust retention for your account) |
| Cloud usage telemetry and activity logs | Purged on the same schedule as synced agent messages when retention applies |
| Desktop-local agent sessions and activity | Retained on your machine; default local retention 30 days (configurable in desktop Settings → AI Providers; 0 = keep forever) |
| Account data | Retained while your account is active and as needed thereafter for legal, billing, or security purposes |
| Contact form submissions | Retained as needed to respond and for reasonable business records |
To delete local desktop data, use Settings → Security → Clear all local data in the desktop app. To request cloud account deletion, contact info@mbdmind.com.
Third-party services
Depending on how you configure the Service, data may be processed by:
- Cloud LLM providers — receive prompts and related context only when you configure API keys or use hosted cloud models;
- MathWorks MATLAB / Simulink — local execution on your machine under your MathWorks licenses;
- Google OAuth — for sign-in when enabled;
- Stripe — for subscription and payment processing (we do not store full payment card numbers);
- Resend — for transactional email (for example sign-in and password reset);
- Object storage providers (for example S3 or R2) — for large message attachments when configured.
Each third party processes data under its own terms and privacy policy.
Your choices
You can:
- use local Ollama models to keep inference on your machine;
- disable optional usage telemetry sync in desktop Settings → Account;
- adjust desktop chat retention in Settings → AI Providers;
- limit cloud provider usage by staying on the Free tier or not configuring BYOK keys;
- sign out and revoke active sessions from the web dashboard;
- clear all local app data from desktop Settings → Security; and
- contact us to request access, correction, or deletion where applicable law provides those rights.
Security
We use administrative, technical, and organizational measures designed to protect information, including encrypted transport (HTTPS), access controls on cloud infrastructure, and OS-backed credential storage on the desktop. No method of transmission or storage is completely secure; we cannot guarantee absolute security.
International transfers
If you access the Service from outside the country where we operate, your information may be processed in other jurisdictions with different data protection laws.
Children's privacy
The Service is not directed to children under 18, and we do not knowingly collect personal information from children.
Changes to this policy
We may update this Privacy Policy from time to time. We will post the revised policy on this page and update the "Last updated" date. Material changes may be communicated by email or in-product notice where appropriate.
Contact
Privacy questions or requests:
Email: info@mbdmind.com
Web: mbdmind.com/contact