Back to Maestro

Privacy Policy

Effective: April 26, 2026

Our Privacy Commitment

At Tedigo Maestro, privacy is fundamental to how we build trust. This document explains our data practices in plain language, focusing on transparency and your control over your information.

1. Who We Are

Tedigo Maestro is an AI-powered project orchestration platform that helps teams manage development workflows with voice commands and autonomous agents. This privacy policy applies to the Maestro application and related services.

Contact Information

Data Protection: privacy@tedigo.net

General Support: support@tedigo.net

2. Data We Collect

Account Information

  • Email address and name (for account creation)
  • Password (securely hashed, never stored in plain text)
  • Organization membership and role

Project & Workspace Data

  • Spaces, projects, and tasks you create
  • Notes and documentation
  • Expert/agent configurations
  • Device authorizations

AI Interaction Data

  • Voice commands and transcriptions
  • AI conversation history
  • Task execution logs

Technical Data

  • IP address (for security purposes)
  • Browser and device information
  • Usage analytics (if you consent to cookies)

3. How We Use Your Data

Provide the Service

Process your requests, manage projects, and deliver AI-powered features

Improve Our Platform

Analyze usage patterns to enhance features and user experience

Ensure Security

Detect and prevent fraud, abuse, and unauthorized access

Communicate with You

Send service notifications and respond to support requests

4. Data Sharing

We Never Sell Your Data

Your personal information is never sold to third parties. We only share data with service providers necessary to deliver our platform.

Hetzner Online GmbH (infrastructure)

Hosts our application servers, database, and SeaweedFS object storage. Region: Ashburn, Virginia, USA. EU residency (Falkenstein DE / Helsinki FI) is available on request for EU customers.

Anthropic, PBC (AI execution)

Claude API powers Maestro's code-execution agents and assistant features. API data is not used for model training.

OpenAI, L.L.C. (embeddings)

Generates embeddings (text-embedding-3-large) for semantic search across your projects, tasks, and notes. API data is not used for model training.

Stripe, Inc. (payments)

Subscription billing. PCI-DSS Level 1 — Tedigo never sees card data.

Self-hosted email

Transactional email (verification, password reset, notifications) is sent from Tedigo's self-hosted mail server on Hetzner. No third-party email vendor is involved.

5. Cookies

Essential Cookies

Required for the site to function. Includes authentication tokens and your cookie consent preference. These cannot be disabled.

Analytics Cookies

Help us understand how you use Maestro. Only enabled if you click "Accept All" on the cookie banner. You can change this preference at any time.

6. Your Rights

Under GDPR and similar regulations, you have the right to:

Access

Request a copy of all your personal data

Rectification

Correct any inaccurate information

Erasure

Request deletion of your data

Portability

Export your data in a machine-readable format

Objection

Opt out of certain data processing

Restriction

Limit how we use your data

To exercise any of these rights, contact us at privacy@tedigo.net. We will respond within 30 days.

7. Data Retention

Data TypeRetention Period
Account dataUntil account deletion + 90 days
Project & task dataUntil manually deleted
AI interaction logs90 days
Security logs90 days
Financial records7 years (legal requirement)

8. Security

We protect your data with industry-standard security measures:

  • TLS 1.3 encryption for all data in transit
  • Encrypted storage for sensitive data at rest
  • Regular security audits and penetration testing
  • Multi-factor authentication support
  • Automatic session expiration
  • 24/7 infrastructure monitoring

9. International Transfers

Our primary infrastructure is hosted in the United States (Hetzner, Ashburn VA). EU residency is available on request for EU customers (Hetzner Falkenstein/Helsinki). Cross-border transfers of personal data — for example to AI subprocessors based in the US — rely on Standard Contractual Clauses and, where available, the EU-US Data Privacy Framework certification of the receiving party.

10. Changes to This Policy

We may update this privacy policy from time to time. Material changes will be communicated via email at least 30 days before they take effect. The effective date at the top of this page indicates when the policy was last updated.

11. Contact Us

Privacy Inquiries

For data protection questions:

privacy@tedigo.net

General Support

For account and service questions:

support@tedigo.net

Supervisory Authority: You have the right to lodge a complaint with your local data protection authority if you believe we have not adequately addressed your privacy concerns.