Toolbase Privacy Policy
Last updated: Sep 17, 2025
Table of Contents
- Introduction
- Information We Collect
- How We Use Information
- Data Storage and Security
- Third-Party Services
- MCP Integration Data
- Analytics and Reporting
- Team and Collaboration Data
- Your Rights
- Data Retention
- Changes to This Policy
- Contact Information
Introduction
This privacy policy applies to:
- Toolbase, our web-based MCP (Model Context Protocol) integration platform and app store
Toolbase is a platform that allows individuals and teams to discover, configure, and manage MCP tools and integrations for AI platforms. We provide a curated marketplace of integrations and collaboration features to enhance AI workflows.
This privacy policy applies specifically to the Toolbase web platform. Other Toolbase products or services may have separate privacy policies.
Information We Collect
Account Information
We collect information you provide when creating and using your account:
- Email address and basic profile information
- Account preferences and settings
- Subscription and billing information
- Team membership and collaboration data
Integration Configurations
We store your MCP integration configurations and settings:
- Server configurations and connection details
- Integration preferences and customizations
- Usage analytics for tool calls and integrations
- Team shared configurations (for team plans)
Sensitive Data Storage
We use Infisical, a secure secrets management platform, to store:
- API keys and authentication tokens
- Environment variables and sensitive configuration data
- Encrypted credentials for third-party services
Authentication Data
We use Clerk for authentication and account management. Clerk may collect:
- Login credentials (email or OAuth authentication tokens)
- User session data and security logs
- Device and location information for security purposes
Your use of authentication services is subject to Clerk's Terms of Service and Privacy Policy.
Analytics and Usage Data
We collect analytics to improve the platform:
- Feature usage and interaction patterns
- Performance metrics and error reports
- Tool call analytics (what integrations are used)
- Website traffic and user behavior
MCP Tool Data
We may collect and store:
- Content or data processed by MCP tools for logging and debugging purposes
- Tool execution results and outputs
- Integration workflow data
How We Use Information
We use the information we collect to:
- Provide and maintain the Toolbase platform
- Process your integration configurations and tool executions
- Manage your account and subscription
- Facilitate team collaboration features
- Improve platform performance and user experience
- Provide customer support and troubleshooting
- Analyze usage patterns to enhance our services
- Ensure platform security and prevent abuse
- Comply with legal obligations
Data Storage and Security
Storage Infrastructure
- Configuration Data: Stored in Cloudflare Durable Objects and databases
- Sensitive Data: Encrypted and stored in Infisical for secure secrets management
- Geographic Distribution: Data is stored across Cloudflare's global infrastructure
- Authentication: Managed through Clerk's secure authentication platform
Security Measures
We implement industry-standard security practices:
- Encryption in transit and at rest for sensitive data
- Secure secrets management through Infisical
- Regular security assessments and monitoring
- Access controls and authentication through Clerk
- Infrastructure security through Cloudflare's global network
Third-Party Services
Authentication
- We use Clerk for authentication and user account management
- Clerk processes login credentials and account-related data
- Your use is subject to Clerk's Terms of Service and Privacy Policy
Secrets Management
- We use Infisical for secure storage of API keys and sensitive configuration data
- Infisical provides enterprise-grade encryption and access controls
- Your data is subject to Infisical's Terms of Service and Privacy Policy
Payment Processing
- Payments for Toolbase subscriptions are processed through third-party payment providers
- Your transactions are subject to their respective terms and privacy policies
Analytics
- We use PostHog and Fathom Analytics for product analytics and website traffic analysis
- These services help us understand user behavior and improve the platform
- Analytics data is collected in accordance with our privacy practices
- Your use is subject to PostHog's Terms and Fathom's Terms
Infrastructure
- We use Cloudflare Workers and Durable Objects for hosting and data storage
- Data is distributed across Cloudflare's global network
- Your use is subject to Cloudflare's Terms and Privacy Policy
MCP Integration Data
Toolbase facilitates connections to various MCP (Model Context Protocol) servers and tools:
What We Access
- Integration configurations and connection settings
- Tool call analytics and usage patterns
- Content or data processed by MCP tools for logging and debugging
- Integration workflow data and execution results
What We Don't Access
- Your personal files unless explicitly processed through connected tools
- Direct access to third-party service accounts (credentials are securely stored)
- AI platform conversations outside of tool interactions
Third-Party Integrations
- Each MCP integration may have its own privacy policy and terms
- You are responsible for understanding the privacy practices of connected services
- We facilitate connections but are not responsible for third-party data handling
- Integration data may be subject to the privacy policies of the respective services
Analytics and Reporting
We use analytics data to:
- Improve platform performance and user experience
- Understand feature usage and user needs
- Identify and resolve technical issues
- Make data-driven product decisions
- Provide usage reports to team administrators
Analytics data is aggregated and anonymized where possible. Personal information is handled according to this privacy policy.
Team and Collaboration Data
For users on team plans, we additionally collect and process:
- Team membership information and roles
- Shared integration configurations
- Collaboration activity and access logs
- Team billing and subscription data
- Inter-team communication related to integrations
Your Rights
You have the right to:
- Access your stored account information and configurations
- Update or correct your account and integration data
- Request deletion of your account and associated data
- Understand how your data is collected and used
- Opt out of certain analytics and tracking
- Request a copy of your integration configurations
- Control team data sharing (for team plan users)
Exercising Your Rights
To exercise these rights:
- Access most data through your account dashboard
- Contact us at hi@gettoolbase.ai for deletion requests or data access
- Manage analytics preferences through your account settings
- Team administrators can manage team data through team settings
Data Retention
We retain your data as follows:
- Account Data: Retained while your account is active
- Integration Configurations: Retained while your account is active
- Sensitive Credentials: Stored in Infisical and retained while integrations are active
- Analytics Data: Retained for up to 2 years for platform improvement
- Team Data: Retained while team membership is active
- Deleted Accounts: Data is deleted within 30 days of account deletion
- Legal Requirements: Some data may be retained longer if required by law
Changes to This Policy
We will notify users of material changes to this policy through:
- Email notifications to your registered email address
- In-platform notifications
- Updates posted on our website
Continued use of Toolbase after changes constitutes acceptance of the updated policy.
Contact Information
For questions about this privacy policy or your data:
- Email us at hi@gettoolbase.ai
- We will respond to privacy inquiries within 30 days
Toolbase is committed to protecting your privacy and handling your data responsibly. Contact us with any concerns about how we collect, use, or store your information.