§ Legal
Privacy Policy
Last updated 16 August 2026
SofaCode is an independent product of BOT-HOLDINGS, LLC ("we", "us"), operated under the CODEDATDA.CASA studio name. This policy covers the SofaCode mobile and watch apps, the desktop daemon, the VS Code extension, and this website. The short version: SofaCode is built so that your code, voice, and sessions never route through a server we control — most of this policy is about how little there is to tell.
1. The architecture is the policy
The SofaCode app connects directly to a daemon running on your own computer, over your own local network or your own VPN / mesh network. Your prompts, dictated audio, code, files, terminal output, and chat transcripts travel only between your devices. We operate no relay, no sync service, and no analytics backend. We do not receive, store, or see any of that content — ever.
2. Data we do receive
- Website forms. If you submit the early-access, contact, or bug-report form, we receive the email address and details you enter, including a debug log only if you choose to attach one. Used solely to reply to you and improve the product; never sold; no mailing list beyond what you asked for.
- Update checks. The daemon and the app may check our download server for a newer version. That request reveals what any web download does — an IP address and the version you're on — and none of your session content.
3. Purchases
Subscriptions are purchased through Google Play or the Apple App Store and are handled entirely by those stores. We never see your card number or billing details. The app stores your subscription state on your device to unlock features; the store's own privacy policy governs the transaction (Google, Apple). There are no SofaCode accounts — nothing to sign up for, nothing for us to hold.
SofaNode hardware orders are different — shipping a physical thing needs an address. When you buy a SofaNode, PayPal handles the payment (we never see your card either way; PayPal's privacy statement governs it) and gives us your name, email address and shipping address, which we keep in an order record on our own server, off the public docroot. We use them to ship your order, answer questions about it, send the order and tracking emails, and deliver the subscription code that comes with the device — and for nothing else. They are never sold or shared beyond the carrier that delivers the parcel. Ask for deletion once the return window has passed and the record is removed.
4. Device permissions
- Microphone — push-to-talk dictation. Audio streams directly to your own daemon and into your assistant; it is not recorded by us and never touches our servers.
- Camera — scanning the pairing QR code. Processed on-device only.
- Local network — discovering and talking to your daemon. That's the product.
- Notifications — approval prompts and session alerts, generated locally.
5. Data on your device
Settings, pairing tokens, saved prompts, and optional debug logs live on your device (and your own computer for the daemon's side). Uninstalling the app deletes its data. Debug logs are recorded only when you switch them on and leave the device only if you attach one to a bug report.
6. Children
SofaCode is a developer tool, is not directed at children under 13, and we do not knowingly collect personal information from children.
7. Retention & deletion
The personal data we hold is email you've sent us and, if you bought a SofaNode, the order record described in section 3. Ask for deletion any time at [email protected] and it will be removed (order records once the return window has passed).
8. Changes
If this policy changes, the new version is posted at this URL with an updated date. Material changes will be noted in the app's release notes.
9. Contact
Privacy questions: [email protected]. See also our Terms of Use.