1. Scope and operator
ThinkDeepWide is operated by PENGQIAN LU in Sydney, Australia. This policy covers thinkdeepwide.com, the ThinkDeepWide desktop application, and its account and authorization services, including services made available to testers. For privacy matters, contact support@thinkdeepwide.com.
Public downloads and purchasing are not open yet. Payment processing that has not yet been enabled is described separately below.
2. Visiting the website
Cloudflare serves our pages, images, and video. It receives your IP address, requested URL, request time, and necessary information sent by your browser to deliver content, protect the network, and diagnose problems.
This website has no advertising, third-party visitor analytics, or marketing tracking scripts. We store your language preference locally in your browser, without using it to identify or track visitors. Clear this website’s browser data to remove that preference.
The interactive walkthrough uses fixed, public examples and makes no AI requests. The main video and author photo are hosted on this website. Following the YouTube backup or X profile link takes you to a third-party site governed by its own privacy policy.
3. Accounts, trials, and device authorization
Our account and authorization services process email addresses, account creation times, login verification and session records, device names and operating systems, installation identifiers and public keys, device bindings and last-seen records, and trial or subscription entitlement status. We use these to authenticate users, issue access, manage the two-device limit, and provide support.
To recognize a computer’s trial eligibility, the client hashes a device identifier and the server applies a further keyed transformation before storage. This identifier can still link activity to the same device; it is not fully anonymous. The server stores verification values for login codes and session credentials. Security rate limits use keyed representations of email or IP identifiers. Service infrastructure may still receive raw IP addresses and other network information.
Amazon Web Services SES sends login codes, currently from its Singapore region. The provider receives the email address and message content needed for delivery. Requesting a login code does not subscribe you to marketing emails.
4. Conversations, projects, and model accounts
ThinkDeepWide’s account and authorization service does not receive your chat contents, project files, or model-provider credentials. Conversations and project data reside on your computer or a remote host you configure.
Using a model, web search, or other tools may send relevant questions, context, selected files, or tool inputs to your chosen model providers and services. Their data retention and use depend on the service, account plan, and settings you select. This policy does not replace their policies.
If you send a support email, screenshot, or error report, we process what you submit to help resolve the issue. Send only necessary information, without login codes, access tokens, or unrelated confidential project data.
5. Providers and international processing
We use Cloudflare for website and account infrastructure and AWS SES for login email delivery. Their global infrastructure or personnel may process data outside your country; we do not promise storage only in your country or region. We process or disclose data as needed to deliver and secure services, respond to your requests, or meet legal obligations. We do not sell your personal information.
Payments are not enabled. When Lemon Squeezy checkout is enabled, it will act as merchant of record and process payment and order information. We will receive order identifiers, purchase emails, and subscription status needed for access and support, without storing full payment-card details ourselves. We will update this policy before enabling checkout.
Provider information: Cloudflare Privacy Policy, AWS Privacy Notice, and Lemon Squeezy Privacy Policy.
6. Retention and security
Expired login challenges, sessions, rate-limit records, and replay-prevention records are deleted by scheduled cleanup, rather than necessarily at the moment of expiry. Account, device-binding, entitlement, and support records are retained as needed to operate the service, resolve disputes, or meet legal obligations. There is currently no single automatic deletion period for all such records.
Transformed machine identifiers and trial start and end records are retained long-term to prevent repeat trials through reinstalling or switching accounts; these records are not automatically purged. Account deletion or device unbinding does not automatically reset trial eligibility. We assess and explain any retention when handling a deletion request, based on necessity and applicable law.
We use measures including encrypted transmission, access controls, and stored credential verification values. No system can guarantee absolute security. You are also responsible for protecting your computer, remote hosts, and exported files.
7. Choices, requests, and complaints
Contact support@thinkdeepwide.com to request access, correction, or deletion of personal information we hold, or to raise a privacy question or complaint. We may reasonably verify your identity. If information must be retained for security, disputes, or legal obligations, we will explain why. Where applicable law provides rights to restrict or object to processing, withdraw consent, or obtain portable data, you can use the same contact.
Clearing the website’s language preference affects only browser data. Signing out or unbinding a device does not delete your account. Deleting account-service information does not automatically delete content on your own computer, remote hosts, or with third-party providers. You may also complain to a privacy regulator with jurisdiction.
8. Policy changes
We will update this page and its effective date when our data practices change. For material changes, we will use a website notice or available account contact details, and seek consent separately where required by law.