Data Processing Disclosure
1. Overview
This page explains, in plain language, what data Haruno processes, where it travels, how long it is retained, and the controls you have. Haruno is a desktop assistant with managed model access: your files and workspaces stay on your machine, and only content the assistant actively works with is sent through Inferara's hosted API to third-party AI model providers, solely to carry out the features you request. This page supplements our Privacy Policy.
2. What Leaves Your Device
Only content that enters the assistant's working context is transmitted: your prompts and conversation, excerpts of files you open or attach, content from accounts you connect when a requested feature needs it, and the results of tools and commands the assistant runs for you. Haruno does not bulk-upload your disk, your workspaces, or your connected accounts in the background.
3. Where It Goes
Content the assistant works with travels over encrypted connections from the desktop app to Inferara's hosted API — a managed gateway that brokers model access — and from there to third-party AI model providers, solely to carry out the request. Haruno does not use user data to train, fine-tune, develop, or improve generalized AI or machine-learning models, and does not transfer user data for those purposes.
4. Retention on Inferara Systems
Inferara's hosted API does not store the content of requests or responses. What it keeps is operational: the address a request came from, for up to 30 days; the text of an upstream error, for up to 30 days; aggregate usage metrics labelled by the account's access key, for up to 30 days; routing and usage records — timestamps, model, duration, and usage volumes — for up to 365 days; and billing records for longer, as accounting requires.
5. Third-Party Model Providers
Requests are fulfilled by third-party AI model providers through managed model access. Content transmitted to a provider is handled subject to that provider's own terms. Inferara transmits only the content needed to carry out your request.
6. What Stays on Your Device
Your workspaces, files, and the assistant's derived working data remain on your machine, isolated per workspace. Connector credentials, including OAuth tokens, are stored in your device's secure credential storage. You choose which folders and files the assistant can see.
7. Protections
Haruno offers sandboxed execution, which runs the assistant's tools in an isolated environment. In sandboxed sessions, all network access from that environment is mediated by the app against an explicit allowlist of hosts: anything else requires your per-host approval, and unattended runs deny access outside the allowlist outright. You manage the allowed host list in the app's security settings.
8. Connectors and Connected Accounts
Connectors are opt-in: Haruno accesses a connected account only after you authorize it, and only to provide features you request. You can disconnect a connector or revoke its authorization at any time, after which Haruno stops accessing and processing that account's data. Where a connector is designated read-only, the assistant never writes back to the connected system — it prepares drafts for you to review. Haruno processes connected-account data as an independent controller to provide the features you request; it does not process that data on behalf of the platform that hosts your account.
9. Your Controls
You decide what Haruno can reach: enable, disable, or disconnect each connector; revoke authorizations; choose the workspaces and files the assistant works with; manage the allowed network host list; and enable sandboxed execution. You can stop using the service and uninstall the app at any time, delete your account and personal data yourself from the dashboard or ask us to, and request disclosure or correction of your personal information. The privacy policy describes the deletion process.
10. Contact
We will update this page when our data-handling practices change. Contact for data processing inquiries: info@inferara.com