Understand what is processed to create a plan, what saving retains, and how operational records differ from plan content.
The ingestion audit record captures operational details such as the input method, jurisdiction, language, timing and outcome. Saved plans are held separately and can contain source-derived information.
These fields describe the ingestion audit record only. Saved plans, temporary processing and provider records have different purposes and contents.
Each session receives a randomly generated identifier so the application can retrieve its temporary working details.
A session identifier does not itself contain your name. Signing in or saving can associate records with your account; this identifier alone does not establish anonymity across the services involved.
The application uses the text during extraction and holds the resulting proposals in a temporary session. Saving retains derived details, which can include quotations, and may retain the source URL.
The application uses an in-memory upload store with a 60-minute expiry checked on access and by a periodic cleanup process. This limit describes that store; it is not a guarantee about every downstream service or all derived information.
Saving requires sign-in. The plan retains extracted proposals, the proposed role match, comparison results and plan details. It can also retain a source URL or filename. Quotations within proposals may reproduce parts of the original description.
Checks reject certain raw-content fields when a plan is saved. They do not remove every sensitive detail from permitted fields. Review the material you provide and the resulting plan before saving or sharing it.
If you enable change notifications for a saved plan, the digest is sent to your account email address and can include saved-plan titles. Use the unsubscribe link to stop these notifications.
For pasted text and uploads, confirm that you are authorised to provide the material for processing. A publicly accessible URL does not, by itself, establish permission to reuse its content.
Saved plans and change-notice subscriptions cascade on user deletion (ON DELETE CASCADE). If you delete your account, every row referencing your user_id in saved_transform_plans and transform_plan_subscriptions is deleted with the account.
The database retains ingestion audit records when an account is deleted and removes their user-account link. This removes that association; it does not establish that every related record in other systems has been deleted. Contact support about deletion requests.
The plan panel displays prepared answers using structured plan context. It is separate from the extraction model, which receives the parsed description to produce the proposals.
Transform My Role includes application checks that redact selected content fields and URL-like strings from its logs. These checks do not establish the retention practices of every hosting, security or model provider. Do not treat this page as a guarantee that confidential information cannot be retained.