Please read the full privacy policy. It is important to us that you understand how we handle your data and privacy. We are committed to protecting your privacy and ensuring that your personal information is handled in a safe and secure manner.
Who is CloudStack?
For purposes of this Privacy Policy, “CloudStack” means CloudStack, LLC, the company developing and providing Msty Studio, Msty Go, Msty Nexus, msty.ai, nexus.msty.ai, msty.studio, msty.app, and related websites and services.
Summary
We prioritize your privacy by giving you complete control over your data. Here’s how we handle your privacy based on your interactions with Msty products and websites.
- Msty Studio, Msty Go, and Msty Nexus are designed to keep product data local to your device or the systems you choose to connect.
- We very proudly DO NOT collect product analytics, usage telemetry, or crash-reporting telemetry that reports back to Msty. There is no tracking of your usage of Msty Studio, Msty Go, or Msty Nexus by Msty.
- Msty Studio, Msty Go, and Msty Nexus connect to the internet only when needed for features you choose to use, such as browsing, downloading models, cloud-based models, updates, notifications, sync, licensing, third-party tools, or provider connections.
Msty Go Desktop and Mobile
Msty Go has a product-specific privacy policy for the desktop app and mobile controller, including mobile remote control, local AI, cloud sync, notifications, and optional cloud AI features. Review the Msty Go Privacy Policy.
Privacy of Customer Personal Information
CloudStack is dedicated to safeguarding the privacy and security of personal information obtained through the use of Msty Studio, Msty Go, and Msty Nexus.
This policy outlines the types of customer personal information we collect, how it is used, and measures taken to ensure appropriate handling of such information.
Limited Collection of Personal Information
Msty Studio, Msty Go, and Msty Nexus
CloudStack does not receive or store content saved locally while using Msty Studio, Msty Go, or Msty Nexus.
We do not include usage analytics or crash-reporting telemetry in our products that sends product activity, prompts, model usage, workspace activity, crash details, or session content to Msty. This is an intentional privacy choice: product usage should remain private unless you choose to share information with us, for example through support, feedback, sales forms, or third-party services you connect.
Msty Websites
Whenever interacting with us online, certain types of information are collected automatically. Such as with many sites, we use cookies alongside standard web practices when you visit our web properties. However, we do not collect any analytics data from Msty Studio, Msty Go, or Msty Nexus.
Cookies are identifiers transferred via browsers, enabling recognition of returning users among other functionality like staying logged into accounts.
Browser settings often offer options regarding cookie acceptance procedures; users should explore their specific browser’s help section if needed concerning cookie management practices along with similar technologies utilized during visits, including JavaScript measuring tools that capture session metrics such as response times/interactions within pages visited, etc.
What Data We Collect (Websites only)
We may use privacy-focused analytics tools such as One Dollar Stats to help us understand website traffic and improve our services. These tools are chosen for their privacy-focused approach and are more transparent and minimal than mainstream solutions like Google Analytics.
Through privacy-focused analytics, we may collect anonymized data such as:
- Pages visited
- Referring websites
- Browser type and device
- Geographical region (approximate)
- Visit duration and actions taken (e.g., button clicks)
We do not collect your name, IP address, email, or any personal identifier through analytics.
For contact, newsletter, and product-availability forms, we use CloudStack systems and may use Resend or another configured form provider, CRM, or email service to handle submissions. These forms may collect the following data:
- Name
- Email address
- Message content
- Product interest or signup type
- Name of institution, organization, or company (if provided)
- Any additional information you choose to provide in the message
- Source page URL, page path, page title, referrer, user agent, submission timestamp, and spam-prevention signals
How We Use Collected Data
We collect minimal, anonymized data through privacy-focused analytics tools to better understand how visitors interact with our websites. This data helps us:
- Analyze traffic sources to understand where our visitors are coming from (e.g. search engines, social media, referrals).
- Identify visitation trends such as to track popular pages, time spent on site, and general engagement patterns over time.
- Optimize conversions to evaluate how visitors move through the site to improve signup flows, calls-to-action, and content relevance.
- Improve site experience in order to detect broken links or underperforming pages and make data-driven enhancements.
- Measure marketing effectiveness by assessing the impact of campaigns or content in attracting relevant audiences.
This data is aggregated and anonymized. We do not collect any personal identifiers (such as names, IP addresses, or emails).
Privacy Rule
Msty Studio, Msty Go, and Msty Nexus are designed with privacy by default. CloudStack does not collect, process, or store any Protected Health Information (PHI) or personally identifiable information (PII) from user sessions on our servers. Session data generated through Msty products is stored locally on the user’s device or in the user-controlled systems and third-party services the user chooses to connect. CloudStack does not have any mechanism to access or transmit local session data. The only customer information retained by CloudStack is limited and includes the following, managed through our payment processors, LemonSqueezy and Stripe:
- Customer account details for licensing purposes
- Payment metadata (excluding full payment or credit card information)
- License keys and associated active devices
CloudStack does not store or have visibility into any proprietary, PII, patient data (HIPAA/PHI), nor any other data that may be deemed sensitive. Any sensitive data is stored:
- Locally by the user on their device, or
- On third-party platforms integrated by the user, such as cloud-based model providers or external tools
Users are responsible for ensuring that third-party services they choose to integrate with Msty Studio, Msty Go, or Msty Nexus are accordingly compliant per their security requirements and meet their organizational privacy standards.
Data Privacy and Security Rules
CloudStack does not collect or transmit data from product sessions, including product telemetry, usage logs, crash reports, prompts, model responses, workspace content, or session content. As a result, CloudStack does not store or have access to any Personal Identifying Information (PII), Protected Health Information (PHI), nor any other similar sensitive data from your product sessions — neither at rest nor in transit. Key security assurances include:
-
No central data retention: Msty Studio, Msty Go, and Msty Nexus are architected to ensure that session data remains local to the user’s device or in user-controlled connected systems
-
Restricted internal access: No CloudStack employee, contractor, or consultant has access to customer session data
-
Secure external integrations: When users integrate Msty Studio, Msty Go, or Msty Nexus with external services (e.g., cloud-based AI models such as OpenAI, xAI, etc.), all data transmissions occur over industry-standard encrypted channels (HTTPS/TLS).
-
User-responsible integrations: If a customer integrates Msty Studio, Msty Go, or Msty Nexus with a third-party tool or service that does not meet security best practices, CloudStack is not responsible for any resulting vulnerabilities or data exposure. Responsibility for such integrations lies solely with the customer or their designated administrator.
HIPAA Breach Notification Rule
In the unlikely event that a security incident occurs within CloudStack systems that leads to unauthorized access of PHI (e.g., due to a core application vulnerability), CloudStack will comply with the HIPAA Breach Notification Rule, which includes: Prompt notification to affected individuals.
-
Notification to the U.S. Department of Health and Human Services (HHS).
-
Documentation of the incident and responsive actions taken.
-
However, because CloudStack does not oversee or monitor third-party services that customers may choose to integrate, breaches occurring within those third-party platforms fall outside of CloudStack’s responsibility. Users are advised to conduct independent security reviews of any services they connect to Msty Studio, Msty Go, or Msty Nexus.
Contact Us
Feel free to reach out via electronic mail at [email protected]