Privacy Policy
Last updated: 11 September 2026
This Privacy Policy explains how Ichorvalen Inc. ("we", "us") handles information in connection with Litura, the desktop application and this website.
The app is local-first
Your documents, voice profiles, generated passes, and review history are stored on your own device. Litura's document analysis, AI assessment, Humanize, Deep Repair, Textual Harmony, and Final Review run locally on your machine. The normal desktop revision workflow does not send document content to Ichorvalen or a hosted AI service. Trial tracking and licence validation after activation are also local.
Desktop network activity
When automatic updates are enabled, the installed app checks Litura's download service for an update and may download it. Opening Models fetches a signed model catalog; Litura downloads a model only after you choose to install it. These requests expose ordinary connection data, such as your IP address, to the hosting provider, but do not include document text. Checkout, account recovery, policy, and support actions open your browser or email application. Litura does not upload support bundles automatically.
Optional microphone and speech input
If you choose a speech-input feature, Litura accesses the microphone only while you are recording. Audio is held temporarily in memory and transcribed by a local speech model on your computer; it is not sent to Ichorvalen or a hosted speech service. The temporary recording is cleared after transcription or when the speech session is discarded. Imported audio is read only from the file you select.
Licence activation
Adding or recovering a licence makes a request to activate that installation. While Litura is online, it may also check whether the installation is still active so that a computer removed through your account releases its access. These requests send the signed licence token, a random installation identifier, a generic device label, and the broad platform. It does not send your computer name, operating-system account, hardware fingerprint, documents, prompts, or generated text. We store a one-way hash of the random identifier, the generic label, platform, seat number, and activation timestamps so you can manage up to three active computers from your account. After activation, the signed certificate is checked locally and that installation can be used offline indefinitely. A status check that cannot reach the service does not disable an activated installation.
Optional agent integration
Litura's MCP integration is a local process connected to an external agent client through standard input and output, not a Litura-hosted network server. The client can receive source text, current text, alternatives, findings, and reference-derived measurements that you or the agent explicitly supplies or opens in that Litura session. It cannot browse arbitrary files through Litura: file tools require an exact text or Markdown path inside an explicitly allowed folder. The external client may transmit or retain received content under its own provider's terms and privacy policy.
Information the website collects
- Account details: the email address you enter, so we can send a short-lived sign-in code and show licences purchased with that address. Litura does not collect or store an account password.
- Order & licence records: the email associated with a purchase and the licences issued to it, so we can deliver your key and provide support.
- Activation records: a one-way hash of a random installation identifier, a generic device label, broad platform, seat number, and activation timestamps, so we can enforce and display the three-computer limit.
- Download statistics: when a Microsoft Store handoff or macOS package download starts, we record its version, source, approximate country, broad device platform, and time. We do not store your raw IP address or use an analytics cookie for this measurement.
- Optional marketing email: if you expressly subscribe, we retain your email address, consent record, and confirmation status. You can unsubscribe from every marketing message.
- Essential cookies: a secure sign-in session cookie used to keep your account open. We do not use advertising or tracking cookies.
Payments
Purchases are processed by our Merchant of Record, Paddle (Paddle.com Market Limited). Paddle collects and processes your payment information under its own Privacy Policy. We do not receive or store your full payment card details.
We use a transactional email provider to deliver sign-in codes, your licence file, and purchase-related messages. Marketing email is separate and is only sent after you request it and confirm your address. Every marketing message includes a way to unsubscribe.
Data retention & your rights
We keep account and order records for as long as needed to provide the service and meet legal/tax obligations. You may request access to, correction of, or deletion of your account data by emailing hello@lituraai.com.
Third parties
- Paddle, payments / Merchant of Record.
- Resend, transactional sign-in and licence email delivery.
- Cloudflare, bot protection, account database, and account API hosting.
- Distribution providers, Microsoft Store delivery, macOS packages, application updates, and model delivery.
- Our website hosting provider, used solely to operate the service.
Contact
Privacy questions can be sent to hello@lituraai.com.