Last updated: July 29, 2026
Octarca is a local-first data workspace. This policy explains what information we handle to provide the desktop app, web account, and AI-assisted data workflows.
We may process account information, onboarding context, product settings, usage events, uploaded files, generated outputs, and AI conversation content needed to provide Octarca.
We use information to authenticate users, maintain workspaces, provide AI features, sync account context, support billing, improve reliability, and respond to support requests.
Google Drive access is optional. Octarca uses the non-sensitive drive.file scope and opens Google Picker so you explicitly choose each Google Sheet, CSV, or Excel file shared with Octarca. Octarca can access file metadata and content only for files you select to import or refresh; it cannot browse the rest of your Drive.
Google Drive data is used only to display the in-app file browser and import the file you select into a local Octarca Project. Octarca does not create, edit, rename, move, share, delete, upload, back up, or continuously synchronize content in Google Drive.
Imported files are stored in your local Project. Google OAuth credentials are encrypted and stored on your device and are not shared with AI model providers.
If you explicitly ask an AI feature to analyze an imported file, the content needed to answer that request may be transmitted through Octarca's model service to the model provider you selected. This transfer occurs only to provide the user-requested feature. Model providers may retain prompts or input content under their applicable service terms, but Octarca does not use or permit Google user data to be used to train generalized or foundation AI/ML models.
Octarca does not sell Google user data or use it for advertising, credit, lending, or data-broker purposes. Google user data is disclosed only to service providers needed to deliver a user-requested feature, protect the service, or comply with law.
Octarca's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
A locally imported copy remains until you delete the file or Project. Temporary Drive downloads are removed after import or during application cleanup. Encrypted OAuth credentials remain on your device until you disconnect Google Drive or revoke access in your Google Account. Content sent to a model provider is subject to that provider's applicable retention terms.
Octarca uses least-privilege, read-only Drive access and encrypts stored OAuth credentials. You can disconnect Google Drive, revoke access in your Google Account, delete local project data, or contact us about access, correction, or deletion requests. Some operational records may be retained when required for security, billing, or legal compliance.