Last updated: 12 September 2026
Account information: When you sign up, we collect your name and email address via Clerk (our authentication provider).
Builder and usage data: We store shortcut descriptions, conversation messages, generated plans, selected actions, and generation results so you can build and reopen shortcuts. Descriptions may also be hashed for cache lookup. We collect request timestamps, error and model-usage information, and basic analytics. For free access, we use a browser identifier and keep daily and per-minute request counters to enforce limits.
Payment data: Credit purchases are processed by Stripe. We do not store your card details. Stripe handles all payment information securely.
Where UK data-protection law applies, we generally process this information to perform our contract with you, comply with legal obligations, or pursue our legitimate interests in operating, securing, and improving Turin. We rely on consent where consent is required.
To generate shortcuts, we send your text description, relevant conversation context, current shortcut plan, and technical instructions to OpenRouter. OpenRouter routes each request to an underlying model provider. For free requests, that provider may be selected dynamically and can vary between requests. We do not intentionally add your name, email, payment details, or Turin account identifier to the model prompt, but anything you type may be processed by OpenRouter and the selected provider.
OpenRouter states that prompt and response content is not retained by default unless relevant logging or data-use settings are enabled. OpenRouter retains request metadata, and underlying providers have their own logging, retention, and training practices. Please avoid including passwords, financial or health information, private contact details, or other sensitive information in builder conversations. See OpenRouter's data collection and provider logging documentation.
Generated shortcut plans and successful generation patterns may be stored and used as examples to improve results for all users. We do not intentionally attach your account identity to these examples, but a plan can reflect information included in your prompt.
Account data, builder conversations, and private shortcut sessions are retained while your account is active so you can reopen and edit them. Guest drafts stay in your browser until you sign in and save them. Usage counters, generation metadata, and error logs are retained as reasonably necessary to operate limits, secure and troubleshoot Turin, and resolve disputes. Transaction records may be kept where required for tax, accounting, fraud-prevention, or legal purposes.
You may request deletion of your account and all associated personal data at any time by emailing us at hello@getturin.com.
We use the following third-party services:
Some providers may process information outside the United Kingdom. Where required, we take steps to rely on an applicable adequacy regulation, contractual safeguard, or other lawful transfer mechanism. We never sell personal data or share it with advertisers.
We use essential cookies for authentication via Clerk and a first-party guest identifier to enforce anonymous preview limits. We use privacy-friendly analytics via Vercel to understand general site usage.
Turin is not intended for use by children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal information, we will take steps to delete such information.
You have the right to:
If UK data-protection law applies, you may complain to the UK Information Commissioner's Office at ico.org.uk.
For privacy-related questions, contact us at hello@getturin.com.