Skip to main content
Platform Review
PricingSign in
← All platforms
Workflow & Automation · conifer.build

Conifer

Graded against 809 verified platforms, from its own policy text. Automated assessment against a published rubric — not legal advice.

Overall riskLOWReviewed 2026-07-20
Creator: low · GRC: low · Counsel: low
Benchmark

No lens is bandable yet — banding requires fully verified documents with on-criteria findings. The gap is shown honestly, never estimated.

Exhibit A · Privacy Policy · verbatim

Yours. Your key is stored encrypted and used only to call your provider for your request. Traffic passes through Conifer's gateway (2.5% fee) and your prompt goes to your provider under your agreement with them — HIPAA or no-training terms you hold with that provider govern that leg. Conifer keeps no conversation content from these calls unless the cloud

highest-risk verified finding on prompt ownership — tap for the citation
17 verified findings5 policy surfaces1/1 core docs verified

Partially verified: Privacy Policy assessed. Everything below comes only from what was read in full.

Risk triage

Lower concern: subprocessors data sharing

Start here. These are the highest-risk verified clauses AIRIN found in the platform's own policy text.

0
high
0
medium
1
low
1/1
docs
Trains on your data?
Not yet assessed
no verified finding covers this surface yet
Who owns outputs?
Not yet assessed
no verified finding covers this surface yet
Commercial use?
Not yet assessed
no verified finding covers this surface yet
Every rating:verbatim-citedsnapshot-datedchange-loggedHow we keep ratings honest →

How to read this page: Overall risk rates what Conifer's own policy terms mean for your prompts, outputs, and data. The benchmark bands below grade those same verified terms relative to peers — a platform in a risky-by-default category can rate HIGH risk and still grade STRONG against its peer set. Both trace to the cited findings.

Partially verifiedWorkflow & Automation

Partially verified — Privacy Policy — Verified (read in full, 17 findings). Findings below are from fully-read, verified documents only; remaining core documents are pending capture.

Why partial?

Terms not yet captured

AIRIN has not yet captured a gate-verified Terms of Service document for this platform.

Document status
  • Privacy Policy
    Verified - read in full - 17 citationsLast captured 2026-07-20
Tier conditions

Only citation-backed plan differences are shown here; absent cells mean AIRIN has not verified a tier-specific claim.

plan language
Privacy & data use

This segment discloses what routing signals consist of (numbers, categories, one-way hash of the message — not the text itself) and states that the text of user input and model output is never sent in routing signals; it also describes cloud chat content as on by default with consent versioning, disclosing what that setting governs.

"Each routed question sends numbers and categories describing the decision (request shape, timings, which side answered, what you did next), plus an irreversible fingerprint (one-way hash) of your message and system prompt, which cannot reco..."
📍 Privacy Policy › “The whole story one table”Jump to exact text →
plan language
Privacy & data use

This segment states that local inference stays on-device with no analytics, error reporting, telemetry, or background ping, and that a local query touches the network zero times unless specific sharing settings are on; it obligates the service to keep local data local by default and discloses user-controlled exceptions.

" Conifer routes each query to the cheapest model that can do the job, and the cheapest lane is the free one on your own hardware. So by default, everyday queries run locally: the model, the prompt, and the generated tokens stay on your mach..."
📍 Privacy Policy › “Local inference stays local”Jump to exact text →
plan language
Privacy & data use

This segment defines the scope of the document by explaining how data flows work by default — local queries stay on-device, cloud queries only occur when permitted — establishing the foundational definitions for data handling practices described throughout the policy.

" Conifer is the front door to all inference: a router sends each query to the cheapest model that can do the job, starting with the free ones on your own hardware. By default everyday queries run locally, so the model, the prompt, and the t..."
📍 Privacy Policy › “Local by default. The cloud only when you allow it.”Jump to exact text →
plan language
Privacy & data use

This segment discloses that by default Conifer shares conversation data, anonymized routing signals, and usage data (including prompt text during a demo period after best-effort on-device redaction), and states that sensitive-looking turns are excluded on-device from content-sharing channels, describing the operative scope and limits of data collection.

" The three questions that decide whether you can use Conifer professionally, answered up front. The desktop app answers the same three from live state in Settings → Privacy & data. Does anything from my local chats leave my machine? By def..."
📍 Privacy Policy › “Three questions answered first”Jump to exact text →
plan language
Privacy & data use

This segment sets out the procedure for opt-in sharing: each setting is individually controllable, on by default, versioned by consent, and changing one does not affect others; it also specifies that all uploads are logged in an egress log and describes routing signals as numbers/categories plus a one-way hash that cannot reconstruct text.

" Everything in this section is on by default and can be turned off individually in the app's settings, one consent at a time; no setting here implies another, and turning one off never turns off the rest. Each grant is versioned: you agree ..."
📍 Privacy Policy › “Routing signals and chat content”Jump to exact text →
plan language
Subprocessors & data sharing

This segment discloses that billing for paid cloud models flows through the payment processor which holds card details that Conifer never sees; that Conifer receives only a customer reference and amounts charged; that this billing data is kept next to the user's account for expenditure reporting; and that this data is not sold — describing the subprocessor relationship and the restriction on onward sale.

" Conifer gives you one bill across every model you used, local and cloud. Local inference on your own hardware is the free tier: it costs nothing to run and adds nothing to the bill. When you use paid cloud models, billing runs through the ..."
📍 Privacy Policy › “Billing”Jump to exact text →
Conflicting provisions (2)
  • Clause A states that by default, prompts and tokens stay on your machine, while Clause B states that by default, conversation data and prompt text leave your machine.

    " Conifer is the front door to all inference: a router sends each query to the cheapest model that can do the job, starting with the free ones on your own hardware. By default everyday queries run locally, so the model, the prompt, and the tokens stay on your machine. The router may send a query to a cloud model when local is not good enough, and only if you allowed the cloud at all. This page covers exactly what can cross the wire, when, and to whom."
    " The three questions that decide whether you can use Conifer professionally, answered up front. The desktop app answers the same three from live state in Settings → Privacy & data. Does anything from my local chats leave my machine? By default, yes: Conifer shares conversation data and anonymized routing signals to improve routing, and usage data (including prompt text during the demo, captured only after best-effort on-device redaction — pattern redaction cannot catch everything). Turns that look sensitive are excluded on-device from every content channel: chat-content sharing and the usage prompt channel both apply the same sensitivity check before anything is stored or sent. Turn the sharing settings off in the app — or flip its Local-only switch — and the answer becomes no: local chats stay on your machine, enforced at every send path, and the app's egress ledger shows what actually left. Can I control what stays local? Yes. Prompts that look sensitive stay local by default (keep-sensitive-local); any chat can be pinned On-device; and the Local-only switch sets the whole app offline — chats, voice, sharing uploads, and scheduled workflow cloud steps make no cloud calls, checked at each send path (your signed-in session itself stays alive). When the router escalates a query, that one prompt and its context go to the provider for that single query — disclosed in the run, never silent. I brought my own API keys — whose terms apply? "
    Within one document
  • Clause A states that user chats and prompts stay on the machine by default, whereas Clause B explicitly states that conversation data and prompt text are shared by default.

    " ┌─ your machine │ the local model · your prompts · the tokens │ your files · your keys · your chats └─ stays here by default. cloud lane ──▸── only a query you allowed, only when local is not enough. "
    " The three questions that decide whether you can use Conifer professionally, answered up front. The desktop app answers the same three from live state in Settings → Privacy & data. Does anything from my local chats leave my machine? By default, yes: Conifer shares conversation data and anonymized routing signals to improve routing, and usage data (including prompt text during the demo, captured only after best-effort on-device redaction — pattern redaction cannot catch everything). Turns that look sensitive are excluded on-device from every content channel: chat-content sharing and the usage prompt channel both apply the same sensitivity check before anything is stored or sent. Turn the sharing settings off in the app — or flip its Local-only switch — and the answer becomes no: local chats stay on your machine, enforced at every send path, and the app's egress ledger shows what actually left. Can I control what stays local? Yes. Prompts that look sensitive stay local by default (keep-sensitive-local); any chat can be pinned On-device; and the Local-only switch sets the whole app offline — chats, voice, sharing uploads, and scheduled workflow cloud steps make no cloud calls, checked at each send path (your signed-in session itself stays alive). When the router escalates a query, that one prompt and its context go to the provider for that single query — disclosed in the run, never silent. I brought my own API keys — whose terms apply? "
    Within one document

Evidence appendix

Showing priority citations first. The full appendix is available for audit trails; not every citation is a severe risk.

High - 0
Medium - 0
Tier-specific - 0
Total citations - 17
Severity
Surface
Document
Tier
Subprocessors & data sharing
High
" Conifer gives you one bill across every model you used, local and cloud. Local inference on your own hardware is the free tier: it costs nothing to run and adds nothing to the bill. When you use paid cloud models, billing runs through the payment processor. The payment processor holds your card details; Conifer never sees them. We receive a customer reference and the amounts charged, which we keep next to your account so we can show you what you spent and on which models. We do not sell this data."
Privacy Policy › “Billing”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment discloses that billing for paid cloud models flows through the payment processor which holds card details that Conifer never sees; that Conifer receives only a customer reference and amounts charged; that this billing data is kept next to the user's account for expenditure reporting; and that this data is not sold — describing the subprocessor relationship and the restriction on onward sale.

AI-generated interpretation, not legal advice.

Prompt / input ownership
High
"Yours. Your key is stored encrypted and used only to call your provider for your request. Traffic passes through Conifer's gateway (2.5% fee) and your prompt goes to your provider under your agreement with them — HIPAA or no-training terms you hold with that provider govern that leg. Conifer keeps no conversation content from these calls unless the cloud chat content setting is on. "
Privacy Policy › “Three questions answered first”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment states that the user's API key is stored encrypted and used only to call their chosen provider, that traffic passes through Conifer's gateway, that the prompt goes to the provider under the user's own agreement with that provider, and that Conifer keeps no conversation content from those calls unless the cloud chat content setting is enabled — disclaiming Conifer's retention and asserting user control over prompt data in the cloud lane.

AI-generated interpretation, not legal advice.

Privacy & data use
High
"Each routed question sends numbers and categories describing the decision (request shape, timings, which side answered, what you did next), plus an irreversible fingerprint (one-way hash) of your message and system prompt, which cannot reconstruct the text. The text of what you typed and what a model wrote is never sent. Tied to your account; shown in the app's egress count. Cloud chat content (on by default, consent-versioned) On by default; turn it off anytime. The cloud lane necessarily transmits your prompt to serve the request (see Cloud-lane inference above); this consent governs whether we may retain it: encrypted per-account, erasable on withdrawal in one step. Retention limits and audit guarantees: section 03 below. Local chat content (on by default, separate) On by default and asked separately; turn it off anytime. Local conversations never leave your machine unless you allow sharing them for model improvement; sensitive-looking conversations are excluded on-device, and a conversation that ever looked sensitive never uploads its history. Your own API keys (BYOK) Your provider, under YOUR agreement with them. Your key is stored encrypted and used only to call your provider for your request; traffic passes through Conifer's gateway (2.5% fee). HIPAA or no-training terms you hold with that provider govern the provider leg. Conifer keeps no conversation content from these calls unless the cloud chat content consent is on. "
Privacy Policy › “The whole story one table”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment discloses what routing signals consist of (numbers, categories, one-way hash of the message — not the text itself) and states that the text of user input and model output is never sent in routing signals; it also describes cloud chat content as on by default with consent versioning, disclosing what that setting governs.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Conifer routes each query to the cheapest model that can do the job, and the cheapest lane is the free one on your own hardware. So by default, everyday queries run locally: the model, the prompt, and the generated tokens stay on your machine. The engine does not phone home. It has no analytics, no error reporting, no model-usage telemetry, and no background ping. A local query touches the network zero times, unless one of the sharing settings is on (the usage-data setting above, or section 03). Those settings are on by default and each can be turned off in the app — the app's Local-only switch turns every one of them off at the wire in a single step. The only other outbound calls the engine makes are ones you start: downloading the weights for a model you asked to install, and checking for updates when you ask it to. Neither call carries your prompts or your data."
Privacy Policy › “Local inference stays local”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment states that local inference stays on-device with no analytics, error reporting, telemetry, or background ping, and that a local query touches the network zero times unless specific sharing settings are on; it obligates the service to keep local data local by default and discloses user-controlled exceptions.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Everything that does or does not cross the wire, in one glance: the local lane where it does not, and the cloud lane and account system where it can. The sections below say the same thing in full. Local inference Stays on your machine. The default lane for everyday queries: the model, the prompt, and the generated tokens run on your hardware and are not sent anywhere. The engine has no analytics, no error reports, no usage telemetry, and no phone-home. Cloud-lane inference The model provider you chose, and only if you allowed the cloud at all. The prompt and context for that one query cross the wire only when the router escalates a query local could not handle well. Disclosed in the run, never silent. Never happens in privacy-first mode. Usage data (on by default) On by default; turn it off anytime in the app's settings. While on, the app sends anonymized usage notes and, during the demo phase, the text of your prompts. Your device strips text that looks like keys, tokens, passwords, emails, or card numbers first; that redaction is best-effort, so assume anything you type may be included. This pipeline carries no model outputs and none of your files, and it is keyed to a random anonymous id, not your account. It is separate from the account-tied routing signals below, and the two are not joined. Every upload shows in the app's egress count. Routing signals (on by default) On by default; turn it off anytime. "
Privacy Policy › “The whole story one table”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment defines the two lanes of data handling — local inference (data stays on device, no telemetry) and cloud-lane inference (prompt and context cross to the chosen provider only for that query) — establishing the operative scope of each lane's data practices.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Conifer is the front door to all inference: a router sends each query to the cheapest model that can do the job, starting with the free ones on your own hardware. By default everyday queries run locally, so the model, the prompt, and the tokens stay on your machine. The router may send a query to a cloud model when local is not good enough, and only if you allowed the cloud at all. This page covers exactly what can cross the wire, when, and to whom."
Privacy Policy › “Local by default. The cloud only when you allow it.”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment defines the scope of the document by explaining how data flows work by default — local queries stay on-device, cloud queries only occur when permitted — establishing the foundational definitions for data handling practices described throughout the policy.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" ┌─ your machine │ the local model · your prompts · the tokens │ your files · your keys · your chats └─ stays here by default. cloud lane ──▸── only a query you allowed, only when local is not enough. "
Privacy Policy › “Local by default. The cloud only when you allow it.”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment is a visual diagram defining what data categories remain on the user's machine by default versus what may cross to the cloud lane, setting the definitional framework for subsequent data-use provisions.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" The three questions that decide whether you can use Conifer professionally, answered up front. The desktop app answers the same three from live state in Settings → Privacy & data. Does anything from my local chats leave my machine? By default, yes: Conifer shares conversation data and anonymized routing signals to improve routing, and usage data (including prompt text during the demo, captured only after best-effort on-device redaction — pattern redaction cannot catch everything). Turns that look sensitive are excluded on-device from every content channel: chat-content sharing and the usage prompt channel both apply the same sensitivity check before anything is stored or sent. Turn the sharing settings off in the app — or flip its Local-only switch — and the answer becomes no: local chats stay on your machine, enforced at every send path, and the app's egress ledger shows what actually left. Can I control what stays local? Yes. Prompts that look sensitive stay local by default (keep-sensitive-local); any chat can be pinned On-device; and the Local-only switch sets the whole app offline — chats, voice, sharing uploads, and scheduled workflow cloud steps make no cloud calls, checked at each send path (your signed-in session itself stays alive). When the router escalates a query, that one prompt and its context go to the provider for that single query — disclosed in the run, never silent. I brought my own API keys — whose terms apply? "
Privacy Policy › “Three questions answered first”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment discloses that by default Conifer shares conversation data, anonymized routing signals, and usage data (including prompt text during a demo period after best-effort on-device redaction), and states that sensitive-looking turns are excluded on-device from content-sharing channels, describing the operative scope and limits of data collection.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" The router may escalate a query to a cloud model when a local model is not good enough for it, and only if you allowed the cloud at all. When that happens, the prompt and the context for that one query go to the model provider you chose. We say so in the run; it is never silent. Once a query is on the cloud lane, the provider you chose handles it under their own terms, including whatever logging and retention their policy describes. Read the policy of the provider you route to. Conifer passes the query through; it does not keep its own copy unless you separately said yes to cloud chat content retention (section 03), and outside that consent the content is dropped after a short operational window. Privacy-first mode pins every query to a local model. Nothing crosses the wire in that mode: the cloud lane is not reached, no matter what the router would otherwise have chosen."
Privacy Policy › “Cloud-lane routing”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment discloses that cloud routing only occurs when the user has allowed it, that the prompt and context go to the chosen provider under that provider's own terms (including their logging and retention), that cloud routing is never silent, and that Conifer does not retain its own copy unless cloud chat content consent is given — directing users to read the provider's policy for the cloud leg of the query.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Everything in this section is on by default and can be turned off individually in the app's settings, one consent at a time; no setting here implies another, and turning one off never turns off the rest. Each grant is versioned: you agree under a stated version of the consent terms, and if the terms change, sharing pauses until you re-confirm under the new ones. Every upload any of these settings causes is counted in the app's egress log. routing signals Numbers and categories describing each routing decision (request shape, timings, which side answered, what you did next), plus an irreversible fingerprint (a one-way hash) of your message and of the system prompt. A fingerprint cannot reconstruct the text; we use it only to spot duplicates and join records. The text of what you typed and what a model wrote is never sent. Tied to your account. cloud chat content A retention consent, not a new transmission: the cloud lane already carries your prompt to serve the request (section 02). With this consent we may keep that request and the model's answer, encrypted with a per-account key, to improve routing and models. Without it, cloud content is dropped after a short operational window. Withdrawal is one step and erases what was kept by destroying your account's encryption key. local chat content Asked separately, and never implied by anything else. Local conversations stay on your machine unless you allow sharing them, encrypted per-account, to improve the models everyone runs locally. "
Privacy Policy › “Routing signals and chat content”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment sets out the procedure for opt-in sharing: each setting is individually controllable, on by default, versioned by consent, and changing one does not affect others; it also specifies that all uploads are logged in an egress log and describes routing signals as numbers/categories plus a one-way hash that cannot reconstruct text.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" One account, one interface across the models you use. Signing in involves the account system, which holds: email The address you signed in with. Used to identify your account and contact you about it. No browsing profile is built from it. created_at Timestamp of first sign-in. last_sign_in Timestamp of the most recent sign-in. An account is optional for local-only use where it can be: running a local model does not require signing in. The account exists so that consolidated billing and cloud routing can be tied to you when you use them."
Privacy Policy › “Account and sign-in”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment defines what data the account system holds (email, created_at timestamp, last_sign_in timestamp), states that no browsing profile is built, that an account is optional for local-only use, and explains the purpose of the account for billing and cloud routing — establishing the scope of account data collection.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" The marketplace, where you pick and enable models, and the cloud routing lane are the two places a query can leave your machine. Choosing a model in the marketplace involves your account. Sending a query to a chosen cloud model involves that provider, as described in section 02. The local tier and privacy-first mode are the places a query does not leave your machine. If you never allow the cloud, or you pin to privacy-first mode, the router keeps every query on your hardware."
Privacy Policy › “The marketplace and routing”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment defines the two points where a query can leave the user's machine (marketplace and cloud routing lane) versus where it does not (local tier and privacy-first mode), and states that pinning to privacy-first mode or never allowing cloud keeps every query on the user's hardware — clarifying the operative scope of each mode.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" The website is hosted by a static-site host that keeps standard request logs (IP, user agent, requested URL, response status) for abuse handling. If first-party site analytics are enabled they are aggregate only, used to understand traffic, not to profile individuals. The website is separate from the engine: nothing you do on the site reaches your local models."
Privacy Policy › “What the website logs”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment discloses that the website host retains standard server request logs (IP, user agent, URL, response status) for abuse handling, that any first-party analytics are aggregate only and not used for individual profiling, and that website activity does not reach local models — defining the scope and purpose of website-level data collection.

AI-generated interpretation, not legal advice.

Privacy & data use
High
" Conifer is not intended for children under 13 and does not knowingly collect data from them. If you learn that a child has signed up, write to the address above and the account will be deleted."
Privacy Policy › “Children”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

Establishes a procedure whereby a user who discovers a child has signed up must notify the company at the address provided, triggering account deletion as the remedial action.

AI-generated interpretation, not legal advice.

Moderation & enforcement
High
" For regulated teams, Conifer supports fleet governance: spend caps, and a routing policy that can be set to local-only so no query on those machines is allowed to reach a cloud provider. The policy is attestable and enforced client-side, on the device, so a machine can report exactly which routing posture it is under. Under a local-only fleet policy, the cloud lane is closed for every user on those machines, and inference stays on the endpoint."
Privacy Policy › “Enterprise governance”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment describes enterprise fleet governance features — spend caps and routing policies that can be set to local-only — stating that the local-only policy closes the cloud lane for all users on those machines and is enforced client-side, allowing regulated teams to attest and enforce a local-only routing posture.

AI-generated interpretation, not legal advice.

Subprocessors & data sharing
High
" Account and sign-in The account system. Your email and the timestamps of sign-in, so you have one account across devices. Optional for local-only use where it can be. No passwords stored, no browsing profile. Billing The payment processor, for consolidated billing across the models you used. It holds your card details; Conifer never sees them. We receive a customer reference and the amounts, not the card. Model downloads The weights host, started by you, only for the models you ask to install. Update check The release host, only when you check for updates. The website Standard web-server request logs from the host for abuse handling. First-party site analytics if enabled, aggregate only. No selling of data. "
Privacy Policy › “The whole story one table”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment identifies the categories of third parties that receive data — account system (email, timestamps), payment processor (billing amounts only, not card details), model-download host, update-check host, and website server — disclosing the scope and purpose of each subprocessor relationship.

AI-generated interpretation, not legal advice.

Audit rights / DPA / residency
High
" Write to [email protected] from the address tied to your account and ask for a copy, a correction, or a deletion of the account and billing records held for you. We will do it within 30 days and confirm when it is done. EU and UK residents have the rights enumerated under GDPR; California residents have the rights enumerated under CCPA. Both reduce, in practice, to the email above. Local data on your own machine is yours to delete directly; the engine keeps no copy of it anywhere else."
Privacy Policy › “Your rights”Jump to exact text →
Source: Privacy Policy- Snapshot 2026-07-20- View source
Permalink to this finding →
Automated analysis

This segment grants users the right to request a copy, correction, or deletion of account and billing records by emailing the designated address, obliges the service to fulfill such requests within 30 days and confirm completion, references rights for specific resident categories, and notes that local data on the user's machine is the user's to delete directly with no copy retained by the service.

AI-generated interpretation, not legal advice.

Clause detail — protections, your obligations, and coverage

Every clause below is a verbatim quote from Conifer's own published policy, read in full and linked to its exact location. Protections and user obligations are reported separately from risk because they are different kinds of clause — an obligation on you is not a risk to your data. Informational only, not legal advice.

✅ Protections found

0 verified clauses

Clauses in Conifer's policies that work in your favour — commitments the platform made to you.

No protective clause has been verified in Conifer's published policies yet. That means we did not find one in the documents we read — not that the platform offers nothing.

📋 Rules you must follow

0 verified clauses

What Conifer requires of YOU. These are your obligations, not risks to your data or IP, so they are cited here and excluded from this platform's risk rating.

No user-conduct rule has been verified in Conifer's published policies yet.

What the policies actually cover

0 topics

None of Conifer's verified clauses has been assigned a topic yet. The clause-trust review has not reached this platform's findings.

Clause intelligence

Canonical clauses and stance patterns extracted from the same gate-verified citations shown on this page.

18
clauses
1
patterns
1
stances
privacy sharing · 1
privacy sharingHIGHPrivacy Policy › “Billing”

The clause permits sale of personal data or information.

Conifer gives you one bill across every model you used, local and cloud. Local inference on your own hardware is the free tier: it costs nothing to run and adds nothing to the bill. When you use paid cloud models, billing runs through the payment processor. The payment processor holds your card details; Conifer never sees them. We receive a customer reference and the amounts charged, which we keep next to your acc...
Open source citation

Tier matrix

Plan-level conditions detected from citation-backed clauses. Empty tiers mean AIRIN has not captured decisive tier language yet.

TierSurfaceVerdictRiskCitations
Freesubprocessors data sharingworsensHIGH1

Policy evolution

Open full timeline

Before/after stance changes across captured policy versions. When no material delta exists yet, AIRIN shows the latest citation-backed stance events instead.

Jul 20, 2026data sharingHIGH

Latest stance: sale or sell on subprocessors data sharing

Conifer gives you one bill across every model you used, local and cloud. Local inference on your own hardware is the free tier: it costs nothing to run and adds nothing to the bill. When you use paid cloud models, billing runs through the payment processor. The payment processor holds your card details; Conifer never sees them. We receive a customer reference and the amounts charged, which we keep next to your account so we can show you what you spent and on which models. We do not sell this data.
Open timeline citation

Capture recency

  • Privacy Policy:Last captured 2026-07-20· verified 2026-07-20verified once — not yet re-verified

Dates state when our pipeline captured and verified each document — not when the vendor last changed it. Documents are re-scanned on a recurring cadence; a document verified once says so until a re-scan confirms it again.

18 findings first captured First scan: July 2026.

Claim this profile

Compare and stack are saved in your browser. Open compare · View your stack. A correction triggers an automated re-read of Conifer's policies — no human edits the data.

Need this for procurement or legal diligence?

Free shows today's risk. A Stack Audit gives you a citable, verbatim-sourced PDF across your whole AI stack — and flags the moment a vendor's terms change.

Know where the missing document lives?

We haven't yet verified Conifer's Terms of Service. Point us at the official page and our pipeline will attempt to capture and read it in full. Submissions are candidates only — nothing is published until it passes the same verification gates as every other document on this site.

Every finding above is a verbatim quote from Conifer's own published policy, captured to an immutable snapshot and read in full through a two-gate verification pipeline. Confidence labels and any analysis are AI-generated and informational only — not legal advice.

📢 POLICY UPDATES ALERT

AIRIN Brief

Built for compliance officers, legal counsel, and SaaS founders. Subscribe to the email digest — one short brief when a tracked vendor materially changes its terms, training policy, or risk rating. Prefer in-app? Watch platforms in your alerts inbox instead.