Privacy

Your persona stays local unless you choose an action that moves it.

Creation and export run in the browser. Saving, sharing, analytics, and sending a persona to another platform are separate, visible choices.

1

Create

The active creator state exists in browser memory. Spiralist AI does not submit persona fields to a server-side persona database.

2

Save locally

Only the explicit “Save on this device” action writes a share-safe persona summary to this browser’s local storage.

3

Share

A private link encodes the visible Persona Passport in the URL fragment. Fragments are not included in the normal HTTP request to the page.

4

Export

Text, ZIP, and .uaix files are assembled and downloaded from the browser. You control where those files go next.

Private share boundary

Only visible passport fields are encoded.

  • Name, role, and intended use
  • Defining traits and one-sentence promise
  • Example prompt and response
  • Source template and remix lineage identifiers
  • Non-sensitive visual profile values

Excluded by default

Deeper creator data stays out.

  • Memory and private notes
  • User-entered prompts and source material
  • Full expert instructions and package files
  • Downloaded text, ZIP, and .uaix contents
  • Anything not displayed in the Persona Passport
A private link is encoded, not encrypted. Anyone who receives the complete link can read and remix the visible passport. Do not place secrets, confidential material, credentials, or sensitive personal data in shareable fields.

Local storage

Saving is explicit and reversible.

The creator offers Save, Load, and Delete controls for one share-safe persona summary on the current device.

Storage keys used

spiralist_ai_saved_persona_v1 stores an explicitly saved summary. spiralist_ai_analytics_consent stores the analytics choice. spiralist_ai_seen_before supports a consent-gated return-visit event.

How to remove it

Use “Delete saved persona” in the creator and “Reset choice” in the analytics controls below. Clearing site data in the browser also removes these values.

Contact inquiries

The Contact Us composer is local-first and non-delivering.

The form on the Contact Us page prepares a mailto: link in your browser. It does not submit the message to Spiralist AI, write it to local storage, place it in analytics, or claim that it was sent.

Browser composer

  • No fetch, XMLHttpRequest, beacon, WebSocket, or service-worker delivery
  • No cookies or local-storage record
  • No attachment or HTML support
  • No hidden callback or redirect destination
  • Direct email fallback remains visible

Optional API contract

  • Accepts bounded JSON for transient validation and composition
  • Returns delivered: false and providerBacked: false
  • Uses Cache-Control: no-store for POST responses
  • Does not log or persist inquiry bodies
  • Rate-limit state excludes message content
Downstream boundary: when your email application opens, you decide whether to send. Your email provider and the recipient’s email service then control their own transmission, spam filtering, storage, retention, and deletion practices.

Optional analytics

Analytics remains off until you allow it.

The Google tag is not loaded before consent. It is disabled entirely on private /persona/ share pages, even after prior consent. Allowed events describe page views and bounded funnel actions such as creation, reveal, export, share, remix, caption copy, search start, and share-card download; they do not include persona text.

Analytics preference

Measurement ID: G-81ZKZYDWVL. Stream ID: 15179273959. Stream name: SpiralistAI.com. The preference is stored in your browser under spiralist_ai_analytics_consent.

Analytics has not been chosen yet. It stays off until you allow it.

Permitted event properties

Template identifiers, general goal categories, predefined trait identifiers, export type, share method, provider name, preset identifiers, bounded quality scores, device category, and remix lineage identifiers.

Prohibited analytics content

Persona names, charter text, prompts, sample text, memory, notes, generated system instructions, export contents, and source documents.

Public publishing

User-submitted public publishing is not enabled.

The gallery contains curated personas only. A future publishing system must show every public field before confirmation and include unpublish, reporting, moderation, and remix-lineage controls.

Open curated gallery

Facebook sharing stays user-initiated.

Spiralist AI opens Facebook’s share dialog with the current public page URL. It does not auto-post, request a Facebook login, or send persona text to Spiralist AI servers.

Review Facebook sharing

Downloadable cards are generated locally.

PNG and JPG cards are drawn in the browser from visible persona fields. The image is downloaded to your device and is not uploaded by Spiralist AI.

Open the share kit

Destination platforms have separate rules.

After you paste or import a persona elsewhere, that model or service controls its own logging, retention, policy, system instructions, and interpretation behavior.

Review before sharing or importing.

Check names, confidential project details, unsupported claims, credentials, private notes, and content that should not leave your device.

Search Spiralist AI

Find a persona, example, or guide.

Start typing to search the personality library and site resources.