MAINFRAME

KINGDOM LABS LLC

Privacy Policy

Last updated: September 10, 2026

Mainframe is a control plane for coding agents: an app that lets you see and direct the AI coding-agent sessions running on your own computers, and coordinate a small team's tasks, calendar and notes. It is operated by Kingdom Labs LLC ("Kingdom Labs", "we", "us"). Mainframe is invite-only — an administrator of a team creates your account.

This policy explains what information Mainframe handles, why, who else sees it, and how to delete it. The short version: Mainframe collects only what it needs to do the job you ask of it, shows no ads, sells nothing, and lets you delete your account from inside the app.

1. Information we collect

Account information. Your email address, a display name, and a password. Passwords are stored only as a salted bcrypt hash — we cannot read them. Signing in creates a session token, kept in your device's secure storage (iOS Keychain or Android Keystore) or your browser's local storage on the web.

Team information. Your role on the team, the responsibilities an administrator records for you, and invitations (the name and email address an administrator enters when inviting someone).

Your machines. When you pair a computer that runs the Mainframe agent, we store its name, operating system, agent version and online status, together with the commands you send it. Pairing is by a code you type in; the machine's own credential never leaves the machine.

Agent sessions. The status of coding-agent sessions on your paired machines, and — when you open one — its conversation (your prompts, the agent's replies and its tool activity) relayed to your app. Live session feeds pass through our servers' memory and are not written to our database. Conversations with Calcite (the built-in assistant), and the tasks, calendar events, goals, notes and memories you create in Mainframe, are stored in our database.

Voice. If you use voice features, audio from your microphone is streamed to our voice service while you speak. It is transcribed by Deepgram, interpreted by language models from Groq and Anthropic, and spoken back using ElevenLabs. Audio is processed in real time and is not retained by us after processing; the resulting transcript becomes part of your conversation history.

Photos and camera. Only the images you choose to attach. They are sent to the agent session you attach them to and kept with that session on your machine. Mainframe never reads your photo library on its own.

Push notifications. A push token for your device, routed through Expo's push service. A notification can include a session title and a short excerpt — for example, the question an agent is waiting for you to answer. You can turn notifications off in your device settings at any time.

Integrations you connect. Optionally, a GitHub access token you provide so Mainframe can read your team's shared "Brain" repository. It is encrypted at rest (AES-256-GCM) and used only for that purpose; you can unlink it in Settings at any time, which deletes it.

Technical information. Our servers keep standard request logs — IP address, timestamp, request path and app version — for security and debugging. They are retained for a short period and are not linked to your activity for any other purpose.

2. What we do not do

3. How we use information

4. Who we share it with

Service providers that process data on our instructions, each receiving only what its function needs:

Your team. Administrators of your team can see your name, email, role and the work assigned to you. People who share a machine or a Brain with you can see the sessions and data of that shared resource — that is what sharing it means.

Legal. We disclose information if required by law, or to protect the rights and safety of our users and the public.

5. Retention and deletion

We keep your information while your account is active. Live session feeds are never stored. Voice audio is discarded after processing.

Delete account — in the app, open Settings › Sign-in › Delete account and confirm with your password. Your account is closed immediately and every session is signed out. Your data is kept for 30 days, during which signing back in restores it; after that it is permanently deleted — conversations, tasks, notes, memories, tokens and linked integrations included. Records of work you completed for your team keep your name so the team's history stays accurate. You can also ask us to delete your account by email.

6. Security

All traffic is encrypted in transit (TLS). Passwords are hashed, integration credentials are encrypted at rest, and session tokens live in your device's secure storage. Access to production systems is limited to the people who operate them.

7. Children

Mainframe is not directed to children under 13, and we do not knowingly collect information from them. If you believe a child has an account, contact us and we will remove it.

8. Where your data is processed

Mainframe is operated from the United States and your information is processed there. If you use it from elsewhere, you consent to that transfer.

9. Your choices

10. Changes to this policy

When we change this policy we update the date at the top. If a change is material we tell you in the app before it takes effect.

11. Contact

Kingdom Labs LLC
hey@jesusfam.com