Skip to content
Security

How we handle your data

A plain account of what we store, how we protect it, and what controls you have. No marketing language, just the specifics.

API keys stay on our servers

Your game sessions use OpenAI and ElevenLabs on your behalf. The API keys for those services never leave our servers and are never sent to your browser. You interact with our API, and we call theirs.

Encryption in transit

All traffic between your browser and our servers runs over HTTPS with TLS 1.2 or higher. Connections to third-party APIs are encrypted in the same way. Data is not sent in plain text at any step.

Account security

Passwords are hashed with a strong one-way function before storage. We never store plain-text passwords. You can reset your password by email at any time. We recommend a unique, strong password and a password manager.

Export your data

Adventurer and Guild subscribers can export their campaigns at any time from account settings. The export includes the campaign summary, party state, quest log, and a transcript of the session beats. Free plan holders can request an export by emailing us.

Delete your account

You can close your account from account settings. Closing your account removes your personal information and campaign data from our active systems within 30 days. Encrypted backups are rotated out within 90 days.

We do not sell your data

We do not sell, rent, or trade your personal information or campaign data to third parties. We do not use your story content to train AI models for any purpose other than running your session. Your campaign is yours.

Data storage

What we keep and why

Account information

  • Name and email address, to identify your account and send you updates you asked for.
  • Hashed password, to verify sign-in without knowing the original.
  • Plan and billing status, to gate features correctly.

Campaign data

  • The campaign record: party, inventory, location, quests, and rolling summary.
  • The session beat log, used to render your campaign history.
  • Content settings (tone and intensity) for each campaign.

Usage data

  • Session counts and feature usage, to enforce plan limits and improve the product.
  • Server logs retained for up to 30 days, used for security and debugging.
  • No behavioral advertising profiles. We do not track you across third-party sites.

Responsible disclosure

If you discover a security vulnerability in Lorekeeper, please report it to us directly. We take security reports seriously and will acknowledge your report within 48 hours.

Please do not publish or share details of a vulnerability before we have had a chance to investigate and address it. We will work with you on a reasonable disclosure timeline.

We do not currently offer a bug bounty program, but we do acknowledge and thank researchers who report issues responsibly.

Quick reference

Security contactprivacy@lorekeeper.tech
Response timeWithin 48 hours
Data deletion30 days (active), 90 days (backups)
Password storageHashed, never plain-text
Traffic encryptionTLS 1.2 or higher, always