Workspace & request privacy · 25 September 2026

Your data.
Your choices.

This notice covers the AI workspace, supported connections and request forms in this early-access product.

Your AI workspace

The workspace contains the profile, industry, tasks, budget, tool names, plan names, invoice totals, billing periods, seat counts, renewal dates and optional usage and usefulness information you enter. These are self-reported records, not automatically obtained from AI providers. The manual workspace does not access your prompts, conversations or bank accounts. The separate Connections page supports ElevenLabs personal subscription data and OpenAI / Anthropic organization API reports as described below.

What saving does

Unsaved records remain in the current page and can be lost when you leave or reload. Selecting Save stores your profile and records in the site database, associated with the identifier of your signed-in ChatGPT account. The workspace interface and API return records only for that account. Site operators and hosting infrastructure can process stored records to run the service; the database is not end-to-end encrypted. Demonstration records are separate and are not saved as your records. Your interface language is stored in your browser.

Monthly wallet history

Each successful wallet save records the latest entries for the current UTC calendar month. Saving again in that month replaces that month’s record; earlier saved months are preserved. The record includes the tool and plan, recorded amount, billing period, seats, renewal date, tasks, source and optional usage assessments you saved. We show up to twelve calendar months. Older monthly records are removed on a later successful save, so inactive accounts may retain older records until saving or deletion. Missing months are not reconstructed. This is a history of your recorded subscription budget, not verified payments or realized savings. Connected provider reports remain separate.

Renewal reminders

Saving your workspace also stores your optional reminder settings: the number of days before renewal, a local reminder time and whether to show reminders in the wallet. In-wallet notices are calculated from recorded renewal dates while the page is open. Calendar export creates a file on your device; importing it shares the included tool names, plan names, payment amounts and dates with your chosen calendar service. Calendar dates are not synchronized automatically. TWB email reminders and background push notifications are not active.

CSV import and export

A CSV import is parsed in your browser. The original file is not uploaded. Imported records are sent to the site database only when you save them or explicitly share a summary. Export downloads the displayed records to your device. In this preview, prices and invoices use USD; there is no automatic currency conversion.

Sharing a summary or requesting access

The early-access form stores your email, organization type, selected interest, preferred TWB payment period (when chosen), request reference and submission time. A shared AI review additionally stores the profile and records shown in the sharing flow. Sharing is a separate action from saving your private workspace. Legacy service requests can also include a company website and target exchange. The site owner can view submitted requests and explicitly shared summaries in the request inbox. We use these details to review and respond to your request; submitting a form does not subscribe you to a marketing newsletter.

Contact and product feedback

The Contact form stores your email, selected topic, message, reference, submission time and email-notification status in our private feedback inbox. The site owner can read these messages to respond and consider improvements. When email notifications are configured, Resend processes your email and message to deliver a notification to hello@thewhitebox.net. Submitting feedback does not subscribe you to marketing. Please do not include passwords, API keys, payment details or sensitive personal information.

Deletion and retention

The Delete saved workspace action removes your current saved profile, records and monthly wallet history from the active workspace database. It does not delete a review summary you separately shared, an early-access request, or operational backups and logs retained by hosting infrastructure. No automatic deletion schedule is currently configured for request or feedback records. To ask for correction or deletion of a request or shared summary, email hello@thewhitebox.net or contact Sani Parizheva through her LinkedIn profile and include the request reference if available. Do not send API keys in messages.

ElevenLabs connection pilot

With your explicit consent on the Connections page, TWB sends your API key to the official ElevenLabs subscription endpoint, encrypts the key using AES-GCM with an account-bound context, and stores the encrypted value in the site database. The decryption secret is stored separately in hosting configuration. The operator and application infrastructure can decrypt the key to provide the service; this is not end-to-end encryption. Use the minimum User read permissions and revoke the key at ElevenLabs when no longer needed. Keys are not returned to the browser after saving.

We retain selected subscription metadata: plan, status, character usage and limit, currency, billing period, next invoice amount and date, allowance reset and synchronization time. These snapshots are associated with your signed-in account. Refresh occurs when requested or when you return after an hour; there is no background schedule. Historical records older than 366 days are removed on a successful refresh, so inactive accounts may retain older records until refresh or deletion. Disconnect and delete removes the stored key and provider snapshots from the active database. Hosting backups may persist separately. This action is separate from deleting the manual workspace.

OpenAI and Anthropic organization API connections

With your permission, TWB calls the provider’s official organization usage and cost endpoints using a dedicated organization admin API key. Standard project keys do not provide these reports. These connections do not access personal ChatGPT or Claude subscriptions, conversations, projects, prompts, payment methods or the content of model responses. OpenAI costs cover the organization, while the token breakdown covers completions; Anthropic reports cover the Console organization and Messages API. Reports are limited to USD and may be delayed or revised by the provider.

Admin keys may grant broader permissions than TWB uses. TWB only makes report-reading requests and does not run models or change subscriptions. Keys are encrypted with AES-GCM and bound to your TWB identity and provider. They are never returned by the connection API. Application infrastructure can decrypt them to synchronize reports. We store monthly reported costs, input/output/cached tokens, model identifiers, day coverage and synchronization timestamps. We fetch the current month through yesterday and two prior months; older saved months are removed when older than twelve months at a later successful synchronization. Inactive accounts can retain older records until synchronization or deletion. There is no scheduled background sync.

Each account can connect up to two providers, with one organization per API provider. Replacing a key replaces that provider’s saved history to avoid mixing organizations. Disconnect removes its encrypted key and reports from the active database; revoke the key separately in the provider console. Deleting your manual workspace does not disconnect these integrations. Exports contain reports, never keys. Provider and hosting infrastructure may retain operational logs and backups under their own policies.

Optional browser-time extension

The downloadable desktop Chrome pilot is not published in the Chrome Web Store. Tracking is disabled until you enable it. It measures approximate foreground activity on twelve supported AI domains, excluding detected idle or unfocused periods. It does not collect prompts, conversation content, page titles, full page paths, cookies or payments. Aggregate tool identifiers, UTC dates and seconds are stored in your browser profile. Records older than 366 days are removed when activity is recorded. TWB can request and display these aggregates on the Connections page, but this pilot does not upload them to the server. Pause collection or delete local history in the extension popup. Avoid shared browser profiles.

Paid plans and other providers

Paid TWB subscriptions and personal billing connections for ChatGPT, Claude, Kimi and Grok are not active. Source links take you to third-party providers with their own terms and privacy notices. Only enter a provider API key in the designated secure connection form, never in a request form. The hosting service processes sign-in and technical information needed to operate the site.