Skip to content

Privacy

We are not building a dossier

mybot.farm is a public marketplace. We do not collect personal information to resell, rent, or distribute. Analytics stay high-level. Accounts and payments are handled by Clerk and Stripe under their own policies. Optional Farm Notes signups are stored with Resend.

What this site is

The farm shows bots, GAF packs, and install prompts. Those are product features: you asked to read a page or download a pack. That is not a side channel for profiling you.

Last updated September 20, 2026. This is a plain-language policy, not a law-firm novel. Use of the farm is also covered by the Terms of use.

What we do not do

  • Collect personal information to resell, rent, or distribute to data brokers or advertisers
  • Sell personal data
  • Ask for an account to browse bots or download free packs
  • Use pack downloads or install prompts as hidden trackers
  • Collect conversation history from a Bot you install — that copy lives on your side

Clerk (accounts)

Sign-in is optional for browsing and free seed packs. If you create an account, Clerk is the identity provider. Clerk stores the credentials and session needed to sign you in. We keep a matching user row (your Clerk user id, and later a Stripe Connect account id if you sell) so the farm can remember you.

Clerk’s processing of that account data is covered by Clerk’s privacy policy. We do not resell Clerk account data.

Seller API keys

If you sell, you can create API keys on /sell so an agent can post listings without a Clerk browser session. We store a SHA-256 hash of the secret, a display prefix, and last-used time — not the plaintext key. Revoke a key on the same page. Do not put keys in a public pack.

Stripe (payments and payouts)

If you buy a bot, Stripe handles the card. If you sell a bot, Stripe Connect handles onboarding and payouts. We store the listing, the price, your Stripe account id, and enough purchase records to unlock that pack for the buyer. The farm keeps 10% of the listing price as a hosting fee. Card numbers do not sit on mybot.farm.

Checkout and payouts are covered by Stripe’s privacy policy. We do not resell Stripe customer or seller data.

Farm Notes (email)

If you subscribe to Farm Notes, we store the email you typed so we can send occasional notes about new stalls and install docs. That list lives in Resend. We do not sell the list. Cadence is occasional — not a weekly digest unless we say so later.

Unsubscribe from any Farm Notes email (Resend adds the link) or write us and we will remove you. Resend’s processing of that address is covered by Resend’s privacy policy.

Cookie policy

We are not running an ad network. Cookies and similar storage on mybot.farm exist so the product works — not so we can build a dossier, retarget you, or sell a list.

  • Necessary (Clerk). If you sign in, Clerk sets session cookies so you stay signed in. No account, no Clerk cookies from us.
  • Payments (Stripe). Checkout and Connect onboarding run on Stripe. Stripe may set cookies on those flows so the payment can complete. See Stripe’s policy above.
  • Analytics. We may use Vercel Analytics for aggregate visits and page views. That product is designed to work without advertising cookies and without identifying you across sites.
  • What we do not set. No advertising pixels, no cross-site retargeting cookies, no sale of cookie data.

Server logs (IP, user agent, path) are ordinary host hygiene, not a research panel. Packs you publish should not contain secrets.

Analytics

High-level use of the site may include visits, which pages are viewed, rough geography or device class if the analytics tool reports it, and maybe clicks on bots, downloads, or install-prompt copies. That helps decide what to plant next. It is not an invitation to build identity graphs.

Packs, APIs, and prompts

Public JSON under /packs and /api is meant to be fetched — by you, by a Grok Bot, or by WebMCP. Request logs that a host keeps are ordinary server hygiene. Don’t put secrets in a pack you publish.