Privacy Policy
Last updated: September 28, 2026
Who is responsible
Delino, a sole-proprietor business based in the Republic of Korea, is responsible for the personal information described in this policy. For privacy questions or requests, contact support@delino.io.
This policy covers the Delino public website and DevBase. Service-related processing described below applies when the relevant feature is enabled and you use it. Payments are not open yet. AutoMCP is under development; these DevBase purchase options do not enable AutoMCP processing.
Information we process and why
Do not include credentials or unnecessary personal information in support messages. Raw card details are collected by Paddle and its payment partners, not stored by Delino. Application logs are designed to exclude secrets and unrestricted customer payloads.
How information is shared
Workspace members can access information according to their assigned roles. Data sent to a webhook destination you configure is delivered to that destination as part of your instructions.
We use service providers for specific functions: Cloudflare for the public website and network delivery; Railway and PlanetScale for application hosting and databases; AWS for configured artifact storage and encryption services; Logto for authentication; and Grafana for operational telemetry. These providers receive the information needed for the enabled functions they operate. Payment information handled by Paddle is also subject to Paddle's Privacy Notice.
We may disclose relevant information when legally required, to protect users and the service, or to investigate fraud and security incidents. We do not sell personal information or use it for cross-context behavioral advertising.
International processing
Our services use global infrastructure. Information may be processed outside the Republic of Korea, including in the United States, depending on the service provider and function. Such processing is subject to applicable data-protection requirements. Contact us for information about a particular processing activity or to raise a cross-border processing concern.
Retention and deletion
The initial DevBase retention settings are:
Cleanup is asynchronous; these settings are not a promise of deletion at an exact second. Active work and records needed for unresolved operations may be retained until they can be safely completed or reconciled. Account and workspace information is retained while needed to provide the service. Payment, accounting, security, and support records may need longer retention for legal obligations, fraud prevention, or unresolved disputes. Provider backups may follow separate retention schedules and are not immediately purged by an application deletion.
When information is no longer required for its purpose or a legal obligation, we delete it or make it no longer identify an individual. Contact support to request account closure or deletion; we will explain any applicable exception.
Cookies and browser storage
The public website does not include Delino advertising trackers or a checkout form. Hosting security features may use technical cookies. When the console is enabled, authentication and request-protection cookies support sign-in and secure sessions. Browser preferences, such as a theme choice, may also be stored locally. Blocking necessary cookies may prevent sign-in from working.
Your rights and choices
Depending on the law that applies to you, you may request access, correction, deletion, restriction, an objection to processing, or a copy of your information. Where processing relies on consent, you may withdraw it, without affecting processing already lawfully completed. Where applicable, we process information to provide the service you request, meet legal obligations, protect legitimate security and operational interests, or act with your consent.
Send requests to support@delino.io. We may need to verify your identity and authority for a workspace before acting. We respond within the time required by applicable law. You may also complain to the privacy regulator competent for your location, including Korea's Personal Information Protection Commission where applicable.
Updates
We update this policy as our services and data practices change. The date at the top identifies the current version. We provide additional notice or obtain consent when required by applicable law.