Privacy Policy
Kotar is a SysML v2 modeling environment that runs in your browser. This policy covers kotar.app. It explains what we collect when you sign in and use Kotar, why, and what choices you have.
The short version
- Your models, scripts and files stay in your browser. They are not uploaded to us.
- To sign you in, we keep your name, email address and profile picture from your sign-in provider (Google today).
- We use one cookie, to keep you signed in. No analytics, no advertising, no tracking pixels.
- We don't sell or rent your personal information.
What we collect
| What | Why | How long |
|---|---|---|
| Name, email address and profile picture, from your sign-in provider | To create your account and identify you. We may use your email to contact you about Kotar. | Until you ask us to delete your account |
| Your account ID at that provider, and the sign-in tokens it issues (stored encrypted) | To link your Kotar account to your account at that provider | Until you delete your account |
| Session records: IP address and browser type | To keep you signed in and protect your account | Sessions expire after 24 hours |
| A counter keyed to your IP address | To limit sign-in attempts and prevent abuse | Short-lived |
We don't ask for or store passwords. Signing in is handled by your chosen provider.
What stays on your device
Everything you create in Kotar (models, diagrams, scripts, files, and Kotar’s local services and databases) runs and is stored in your browser. We have no copy of it. Clearing your browser’s site data for kotar.app deletes it, so back up anything you want to keep, for example by pushing it to a Git repository.
Git connections
If you clone from or push to GitHub or GitLab, those requests pass through our servers on their way to that service, because browsers can’t reach Git hosts directly. We pass them through without storing their contents. Your use of that service is governed by its own terms and privacy policy.
Cookies
We set one cookie, which keeps you signed in. It is strictly necessary, so we don’t ask for consent. We don’t use analytics or advertising cookies.
Third parties
- Cloudflare hosts kotar.app and our account database. The database is stored in the European Union.
- Google handles sign-in, under its own privacy policy. If we add other sign-in providers (such as GitHub or X), they will do the same for people who choose them, and we’ll list them here.
- Google Fonts: this site loads its fonts from Google’s servers, which receive your IP address when they do.
- YouTube: demo videos on our homepage load from YouTube (youtube-nocookie.com) only when you press play.
We share personal information only with these providers, as needed to run Kotar, or when the law requires it.
Your choices and rights
You can ask us to see, correct, export or delete your account information at any time. Write to info@planetaryutilities.com. Deleting your account removes your account, sign-in links and sessions from our database. Depending on where you live (for example in the EU, UK or California), you may have further rights under local law, and we’ll honour them.
Children
Kotar isn’t intended for children under 16, and we don’t knowingly collect their information.
Changes
If we change this policy, we’ll update the date above. If a change is significant, we’ll tell signed-in users.
Contact
Planetary Utilities Corporation · info@planetaryutilities.com