Privacy Policy

Orren · Conquermental LLC · Last updated August 29, 2026

Draft pending legal review. This policy describes what the software actually does today. It has not yet been reviewed by counsel and should not be relied on as a final statement of terms.

Orren is a Mac app with a cloud service behind it. Your work is stored on your own Mac, and a copy of your records is also held on Orren's servers so that Orren can answer questions about your business. This policy says exactly what travels, where it goes, what we do with it, and how you get it back or get rid of it. It is written by Conquermental LLC ("Orren", "we"), the company that makes Orren.

Who this policy covers

What stays on your Mac

What is sent to Orren's servers

So that Orren can answer questions about your whole business rather than about whatever happens to be on screen, the app synchronises a copy of your records to Orren's own infrastructure:

Where it is held

Each customer's records are isolated at the database level by row-level security, so one customer's queries cannot reach another's rows. Our full list of providers, and what each one holds, is kept at Subprocessors.

AI features

Orren calls AI providers on your behalf, using Orren's own accounts. When you ask Orren a question, the question and the context assembled to answer it are sent to a model on Google Vertex AI under Orren's agreement with Google. Google's terms for Vertex AI do not permit it to use customer content to train its models. Orren does not use your content to train models either; see Corrections you choose to share.

AI output can be wrong. Orren shows where an answer came from where it can, and nothing an AI writes is sent to another person unless you built an automation that sends it (see Automations in the Acceptable Use Policy).

Corrections you choose to share

There is a switch in Settings, Help improve Orren, and it is off by default. When it is on, and only then, the corrections you make (a call filed as the wrong kind, a capture judged wrongly, a dictation you reworded) are queued and sent to Orren with names and numbers removed, so the pattern of the correction can be used to make Orren better at the same task. Settings shows exactly what was last sent. Turn the switch off and nothing further leaves; your corrections still teach your own copy.

Google user data

If you connect a YouTube channel, Orren asks Google for read-only access using these scopes:

If you connect Google Calendar, Orren asks for access to read your calendars and, only when you ask it to, to write a booking to them.

Orren's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

You can revoke Orren's access at any time at myaccount.google.com/permissions, or by disconnecting inside the app. Revoking stops any further access immediately; records already synchronised are removed under Keeping and deleting.

Platforms you connect

When you connect Instagram or another platform, data moves between Orren and that platform using the access you granted. What each platform does with it is governed by that platform's own terms, not by ours.

Instagram

Connecting Instagram authorises Orren to read and send messages, read and reply to comments, and read your account and media insights, for the Instagram professional account you connect and no other.

Orren does not post to your account, and does not request permission to.

Notion

If you connect Notion, Orren reads the pages you share with it and copies them to your Mac as reference material. The connection is read-only. The Notion token is held on Orren's servers so the sync can run without your Mac being open; disconnecting deletes it.

Calendly

If you connect Calendly, Orren reads your bookings and the invitees on them with the token you pasted, which stays in your Mac's Keychain. Orren does not write to Calendly.

Stripe, as a source of your revenue

Separately from paying for Orren, you may connect your own Stripe account so that Orren can match payments to leads. Orren reads payment events (amount, date, the customer email Stripe holds) through a connection you authorise, and holds the Stripe account reference on its servers. Orren never moves money and cannot charge your customers.

Other AI tools you connect to Orren

Orren can act as a source of knowledge for another AI assistant you use, through its MCP endpoint. That connection is authorised by your licence and reads your records the same way the app does. What the other assistant does with what it reads is governed by that assistant's provider, not by us. You can stop it at any time by removing the connection in that tool.

When someone opens a tracked link

A tracked link is a short address Orren mints for one recipient. When the person you sent it to opens it, Orren's server records that the link was opened, and then sends them straight on to the destination.

What is recorded: which link and which recipient it was minted for, the time, the device class (mobile, desktop, tablet), the browser and operating system family, the site the click came from, and an approximate location — country, region and city.

What is not recorded, at all:

The location is worked out inside Orren's own servers using a database bundled with them (DB-IP Lite, CC BY 4.0). Nothing about the visitor is sent to that company or to any other third party. The result is approximate, is a city at best, and is never a street address.

Orren does not record automated fetches as opens. A link is checked by the messaging platform itself moments after it is sent; those are recorded separately and excluded from every count.

Diagnostics and crash reports

To know whether Orren works, the app sends its author a small operational report on launch and about once an hour: the app version and macOS version, a machine identifier, counters (how many launches, how many questions answered, how many failed), and error codes with the name of the subsystem that raised them. If the app crashes or hangs, the crash report macOS wrote is sent on the next launch. None of this contains what you typed, said, or stored. Settings shows the last report sent.

If you file feedback or a support ticket from inside the app, it carries what you wrote, the screenshots and recordings you chose to attach, the last few things you did (as verbs, such as "opened a board"), and the same diagnostics. That report goes to Orren so we can fix the problem, and is kept until it is resolved.

Sign-in and licence

Your Orren account is your email address. Signing in sends a six-digit code to that address; the session that results is kept in your Mac's Keychain. Your licence is checked against Orren's servers when the app launches and periodically after. We keep your email, your licence status, and the machine identifiers of the Macs you have activated.

Keeping and deleting

Your rights

Depending on where you live, you may have the right to access, correct, export, restrict, or delete personal information we hold about you, and to object to certain processing. You can exercise all of them by writing to the address below; we answer within 30 days. We do not sell personal information and do not share it for cross-context behavioural advertising. If you are in the European Economic Area or the United Kingdom, our processing of your account data rests on the contract between us; our processing of the people in your records is done on your instructions as a processor, under the Data Processing Addendum. If you are unsatisfied with our answer, you may complain to your local data protection authority.

Where data travels

Orren's servers are in the United States. If you use Orren from elsewhere, your data is transferred to and processed in the United States. For customers in the EEA, the UK and Switzerland we rely on the standard contractual clauses incorporated in the Data Processing Addendum.

Children

Orren is a business tool and is not directed at anyone under 18. We do not knowingly collect information from children.

Security

Data travels over TLS. Customer records are separated by database-level row-level security. Connector tokens are held in the database and are never returned to the app or shown in any interface. Access to production systems is limited to the people who run Orren. The app is signed and notarised by Apple. More is in our Security Policy, including how to report a vulnerability.

The website

Our website may use a privacy-respecting analytics tool to count visits and see which pages people read. It does not identify you and does not follow you to other sites. If we add cookies that require consent, the site will ask first.

What we do not do

Changes

When this policy changes, the date at the top changes, and the app asks you to accept the new version before you continue. The version you accepted, and when, is recorded on your Mac.

Contact

Privacy questions, export requests and deletion requests: josh@conquermental.com. Conquermental LLC, [COMPANY ADDRESS].