Legal

Privacy Policy

Effective date: June 23, 2026  ·  Last updated: September 1, 2026

Who we are

Trama is a macOS application that lets you create automations using plain language. It is developed and operated by Ernandes Cavalheiro ("we", "us", "our"). You can reach us at support@usetrama.com.

What data we collect

Account information. When you sign in via GitHub or Google, we receive your email address, display name, and avatar URL from your OAuth provider. We store this to identify your account and personalise your experience.

Automations and execution logs. The automations you create are stored on-device in your Mac's Application Support folder. Execution logs (timestamp, success/failure, duration, and anonymised input/output snippets) can optionally be synced to our servers so you can view history across sessions.

Usage data. We track your daily run count server-side to enforce plan limits. We do not collect analytics or use third-party trackers on the app or this site.

Billing data. If you subscribe, payment is processed by Stripe. We store your Stripe customer ID. We never see or store your full card number.

Diagnostics and error reports. Trama shares diagnostic data with us so failures get found and fixed. This is on by default; you can turn it off at any time under Settings → Diagnostics, and with it off nothing described in this paragraph leaves your Mac. While it is on:

Problem reports. When you use Report a problem in the app, we receive what you wrote, your app and macOS version, and, if you attach one, the failed run — redacted and truncated the same way. Because you are asking us for help, a problem report is sent even when diagnostics sharing is off.

How your content is processed

Trama's core feature is using AI to build and run your automations. This means the content you describe — and, when an automation runs, the clipboard text or other inputs it processes — may be sent to an AI provider.

We do not use your content to train AI models. We store the text of what your automations process in two cases only — when you have execution log syncing enabled, and when a run fails while diagnostics sharing is on — and in both we keep a short, secret-redacted snippet rather than the full content.

Google user data

If you connect a Google account, Trama requests only the scopes needed by the automation steps you use:

Google user data is used only to execute the automations you configured. It is never used for advertising, never sold, and never used to train AI models. Message text and other Google content are processed in memory for the duration of the run and are not stored on our servers — the only exception is the short execution-log snippets described above, and only if you have log syncing enabled.

When an automation processes Google content with AI, that content is sent to the AI provider described above — Anthropic by default, or your own provider under BYOK — solely to complete the request you configured. Those providers do not use API content to train their models.

Trama's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

You can revoke Trama's access at any time by disconnecting the integration inside the app, or from your Google Account permissions page.

Third parties we use

We do not sell your personal data to any third party.

Credentials and tokens

Kept on your Mac. Your own AI provider API keys (BYOK) and your Trama session token are stored in the macOS Keychain, which is encrypted and protected by your Mac's security architecture. BYOK keys are never transmitted to our servers.

Kept on our servers. When you connect an integration such as Google, Slack, or Notion, the OAuth access and refresh tokens that provider issues are stored server-side in Cloudflare Workers KV, isolated per user account. They need to live there so scheduled automations and triggers can run while the app is closed. Disconnecting an integration in Trama deletes those tokens immediately, and deleting your account removes all of them.

Data retention

Your account data and synced logs are retained while your account is active. If you delete your account, all server-side data associated with your account is permanently deleted within 30 days. On-device data (automations, local logs, cached files) is removed when you uninstall the app.

Your rights

Depending on where you live — including under the LGPD (Brazil), the GDPR (EEA/UK), and comparable laws — you may have the right to access, correct, or delete your personal data; restrict or object to processing; and data portability. To exercise any of these rights, email us at support@usetrama.com and we will respond within 30 days.

Children

Trama is not directed at children under 13. We do not knowingly collect personal data from anyone under 13. If you believe a child has provided us with personal data, please contact us and we will delete it.

Changes to this policy

We may update this policy from time to time. We will update the "Last updated" date above and, for material changes, notify you via email or an in-app notice. Continued use of Trama after changes take effect constitutes acceptance.

Contact

Questions or concerns about this policy? Email us at support@usetrama.com.