Theme
FeaturesHow It WorksPricingBlogSign In to Dashboard →Download Mac App
Privacy & Data Protection

Privacy Policy.

We believe your developer workstation is sacred. Silo is engineered from the ground up on a strict local-first, zero-telemetry foundation.

Last Revised: October 9, 2026 • Effective Date: Immediately upon usage

The 30-Second Privacy Summary

100% Local File Scanning: All APFS traversals, duplicate hashing, Docker virtual disk metrics, and cache analysis execute locally via Darwin APIs.
Zero Code or File Uploads: We never upload, transmit, or inspect your source code, repositories, file contents, or personal documents.
No Tracking SDKs: We do not embed Google Analytics, Firebase, Mixpanel, Facebook Pixel, or telemetry trackers in our desktop app or website.
Minimal Account Data: We only store your email to deliver your cryptographic license key, invoice, and customer portal access.

1. Introduction & Scope

This Privacy Policy explains how Silo ("we," "our," or "us"), operated by our development team, collects, uses, and protects information when you:

  • Visit our website;
  • Purchase, activate, or manage a license key through our licensing service;
  • Download and use the Silo desktop application for macOS; or
  • Communicate with our team for customer support or feedback.

By accessing our website or downloading our software, you agree to the practices described in this Privacy Policy. If you do not agree, please do not use our website or application.

2. Information We Never Collect (Strict Zero-Telemetry Guarantee)

Unlike many system optimizers, Silo is engineered strictly for privacy-conscious developers. We explicitly guarantee that:

  • No File Contents or Directory Trees: We do not upload or read the contents of your files, folders, documents, photos, or codebases.
  • No Git Repositories or Code Secrets: Our Git Safety Engine runs entirely on-device using local libgit2 and Git CLI status checks. No commit messages, branch names, SSH keys, or access tokens leave your machine.
  • No Process or Port Snooping: Port inspections and running process lists are retrieved locally through Darwin libproc and are never transmitted to any remote servers.
  • No In-App Analytics or Behavioral Profiling: We do not log which buttons you click, how frequently you clean caches, or which developer tools you run.

3. Information We Collect and Why

We only collect the absolute minimum information necessary to conduct legitimate commerce, issue cryptographic software licenses, and provide technical support:

A. When You Purchase a License

  • Billing Email Address: Used to deliver your digital license key, purchase confirmation, invoice, and reset link for the Customer Portal.
  • Name (Optional): Displayed on your license receipt and customer profile.
  • Payment & Transaction Details: Handled securely by our merchant of record (Paddle) and authorized payment processors (Stripe, Razorpay, Cashfree). We never receive or store your complete credit card number or bank details.
  • IP Address & Geolocation (At Checkout): Used exclusively by payment gateways for fraud prevention, VAT compliance, and localized currency calculation.

B. When You Activate the Desktop App

  • Cryptographic License Key: Verified offline via public Ed25519 asymmetric cryptography, or synchronized via our lightweight API.
  • Anonymized Machine Identifier (Hardware Hash): A one-way, irreversible SHA-256 hash of your Mac's system serial number, used exclusively to enforce seat allowances (e.g., 1 Mac for Pro/Lifetime, 2 Macs for Founder Edition). This hash cannot be reverse-engineered to identify you or your machine.
  • macOS Version & Architecture: E.g., "macOS 15.0 Apple Silicon (arm64)", used solely to serve compatible app updates and resolve crash reports.

C. When You Contact Us or Submit Feedback

  • Email & Message: Provided voluntarily when submitting bug reports, feature requests, or refund inquiries.
  • Diagnostic Logs (Opt-in Only): If you choose to attach diagnostic files in the Help & Feedback window, the app sanitizes all personal paths (replacing /Users/yourname with /Users/[USER]) before transmission.

4. Legal Bases for Processing (GDPR Article 6)

For users residing in the European Economic Area (EEA), United Kingdom, and Switzerland, we process your personal data under the following legal bases:

  • Contractual Necessity: To generate and deliver your digital software license, process your purchase, and enable software activation.
  • Legitimate Interests: To protect our intellectual property from fraudulent key distribution, ensure software stability, and respond to your customer support inquiries.
  • Legal Obligations: To comply with applicable accounting, tax, and consumer protection laws (e.g., VAT reporting and 14-day refund compliance).
  • Consent: When you voluntarily submit diagnostic feedback or participate in product surveys.

5. Third-Party Service Providers (Subprocessors)

We do not sell, rent, or monetize your personal information. We partner only with trusted service providers who adhere to strict data protection standards:

  • Payment Gateways & Merchant of Record: Paddle.com Inc. (Merchant of Record), Stripe, Inc., Razorpay Software Private Limited, Cashfree Payments India Private Limited. These providers process payment card data in accordance with PCI-DSS Level 1 compliance.
  • Transactional Email: Resend, Inc. — used exclusively to deliver digital license keys, password resets, and support ticket confirmations.
  • Cloud Infrastructure & Hosting: Vercel Inc. and AWS (US East / EU regions) — host our web services and API endpoints under encrypted TLS 1.3 connections.

6. Data Retention Policy

We retain personal data only for as long as necessary to fulfill the purposes for which it was collected:

  • License & Account Data: Retained for the active lifetime of your license to enable key retrieval, device re-activations, and customer portal access.
  • Transactional & Invoice Records: Retained for 7 years to comply with statutory taxation, accounting, and anti-fraud regulations.
  • Support & Feedback Tickets: Retained for 12 months following ticket resolution, after which they are automatically anonymized or purged.

7. Your Data Rights (GDPR, UK DPA, & CCPA / CPRA)

Depending on your jurisdiction, you have robust rights concerning your personal information:

  • Right of Access (Article 15): You may request a complete copy of the personal data we hold about you.
  • Right to Rectification (Article 16): You may correct inaccurate or incomplete contact information via your Customer Portal.
  • Right to Erasure ("Right to be Forgotten", Article 17): You may request deletion of your account and personal data, subject to statutory tax retention requirements.
  • Right to Restriction of Processing (Article 18): You may request restriction of data processing while a dispute is resolved.
  • Right to Data Portability (Article 20): You may request an export of your data in a structured, machine-readable format.
  • California Residents (CCPA/CPRA): We do not sell your personal data or share your personal data for cross-context behavioral advertising. You have the right to know what personal information is collected, request deletion, and not receive discriminatory treatment for exercising these rights.

To exercise any of these rights, email us at sparoconnect@gmail.com. We acknowledge and fulfill all verified requests within 30 days without charge.

8. Cookies and Web Storage

Our website uses minimal, strictly necessary cookies and browser localStorage to remember your theme preference (Light vs. Dark mode) and preserve authenticated sessions when logging into the Customer Portal. We do not use third-party advertising or cross-site tracking cookies.

9. Security Measures

We implement comprehensive technical and organizational safeguards:

  • All web and API traffic is encrypted in transit using Transport Layer Security (TLS 1.3).
  • Licenses are validated using Ed25519 digital signatures, preventing tampering or unauthorized modification.
  • Database access is restricted using strict role-based access control and principle of least privilege.
  • Customer passwords are protected using industry-standard salted hashing algorithms (Argon2 / bcrypt).

10. Children's Privacy

Our software and website are intended for developers, system administrators, and general computer users aged 16 and older. We do not knowingly collect personal information from children under 16. If we become aware that a child under 16 has provided personal data, we will promptly delete it.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect product enhancements, legal updates, or operational changes. We will notify you of any material changes by updating the "Last Revised" date at the top of this page and, where appropriate, sending an email notice to registered license holders.

12. Contact Information & Data Inquiries

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Silo Software
Data Protection & Privacy Office
Customer Portal: Access Customer Portal
Response Commitment: Verified responses within 24 to 48 hours.
Silo Support Desk

Help & Feedback

Send a message to our engineering team. We typically respond within 12 hours.

Direct email support: sparoconnect@gmail.com