Updated October 5, 2026 · Effective when published
Privacy Policy
Ashes2Echoes, LLC operates ashes2echoes.com. This policy explains information handling for this website, its access and inquiry forms, the FORGE browser interface, and the owner-operated Ashes2Echoes Launch Publisher application. A product description, demonstration, or historical project name does not mean that a service or integration is currently available.
Information collected and why
- Website delivery: Hosting and infrastructure providers receive connection information such as IP address, requested URL, browser information, and request time to deliver pages, troubleshoot errors, and protect their services.
- Access requests and project inquiries: The request form sends your name, email, and a reason that begins with the role you select to the Ashes2Echoes estate server, a Supabase Edge Function. The server stores the request for review by the Principal and records that a request arrived. The form sends no email. An entry the form refuses in the browser is not sent. These details support request review, abuse handling, and access-related communications.
- Retired forms: The older intake form and the access-code gate have been retired and no longer send data.
- Estate console sign-in: Members sign in to the estate console at app.ashes2echoes.com through Supabase Auth. A new member enters a one-time approval code when creating a login. The browser keeps the member’s own session token in session storage for that tab. Do not share a browser session containing access credentials.
- Communications: If you email us, we receive the message, contact details, and attachments you choose to provide. We use them to address your request and maintain relevant correspondence.
FORGE and browser storage
FORGE’s local coaching and pattern-screening controls process text in your browser. Saved prompt cards use browser local storage, which can remain on your device until cleared; the interface also reads a local history store. Clearing site storage removes these local records and may reset other preferences or access state.
The server-evaluation control is disabled because its backend is not bound, so FORGE sends no prompt text to a server. Use public or synthetic text rather than confidential, regulated, or third-party personal data.
Ashes2Echoes Launch Publisher and LinkedIn
This is an owner-controlled publishing integration being configured for Ashes2Echoes communications, not a public LinkedIn sign-in service for website visitors. Visiting this website does not connect your LinkedIn account or authorize a post. App registration and a linked Company Page do not replace a personal LinkedIn profile.
- Authorization: If the account owner enables the integration, LinkedIn’s OAuth flow grants only the permissions approved on its consent screen. Intended uses are identifying the authorized member and publishing specifically approved text or media on that member’s behalf.
- Data involved: Depending on the granted permissions, the integration may process a LinkedIn member identifier, basic profile information, OAuth credentials, approved post text and media, and publishing responses such as post identifiers, timestamps, or errors. A permission to publish does not by itself authorize reading private messages or an address book.
- Use and disclosure: These data support account connection, authorized publication, troubleshooting, and publication records. Approved posts and media are sent to LinkedIn and become visible to the selected audience under LinkedIn’s controls. Credentials must not be placed in website source, public repositories, or public tracker data.
- Control: The account owner can revoke the application’s access in LinkedIn account settings and contact us to request deletion of information held by Ashes2Echoes. Revoking access does not automatically remove posts already published; posts must be managed separately on LinkedIn. LinkedIn’s own retention and disclosure practices also apply.
See LinkedIn’s Privacy Policy. No automated publishing, private-message collection, advertising profiling, or model-training use of LinkedIn account data is described or authorized by this policy.
Providers and linked services
The website is deployed through Vercel. The request form and the estate console use Supabase, which hosts the estate database, sign-in and server functions. Some pages load fonts from Google, which receives the browser requests needed to deliver them. Older showcase pages also load external status feeds automatically; visiting them initiates requests to those feed hosts without a separate opt-in control. Email providers handle correspondence and access-related messages. These providers have their own policies and infrastructure retention practices.
The site links to external services, including GitHub, LinkedIn, and the separately hosted AI Release Monitor. Information sent to those services is governed by their applicable notices. External links do not imply that we operate those platforms or can delete their independent records.
If you choose a separately offered checkout or paid service, review its displayed price, terms, and processor notice before proceeding. Merely browsing this website or requesting access does not authorize a payment or subscription.
We do not sell personal information. We may disclose information where needed to respond to lawful requests, protect rights, investigate abuse, or deliver a service you request. Any optional AI service should identify applicable processing before sensitive information is submitted; historical provider names are not a list of currently active processors.
Cookies, storage, and tracking
The reviewed public pages use browser storage for access state and local FORGE records, rather than a website-wide advertising tracker. Hosting, third-party resources, linked services, and authenticated or checkout services may have their own logs, cookies, or storage. This is not a claim that every third-party service is cookie-free.
You can clear cookies and site storage or restrict third-party requests through your browser. Doing so can affect access, saved work, fonts, or other functionality.
Retention, deletion, and security
We retain information as needed for the request or service, related correspondence, security and abuse handling, and applicable legal obligations. Retention differs between browser storage, workflow records, email, hosting logs, and provider-controlled records; this policy does not promise a single automatic deletion period across those systems.
Contact us to request deletion or an explanation of information associated with your request. We may need proportionate identity verification and may retain information where legally required or necessary to resolve a dispute or protect against abuse. Deletion of our records does not necessarily remove provider backups, third-party records, or public posts.
No website or integration can guarantee absolute security. Do not submit secrets or unnecessary personal data. Descriptions of research protocols, quality gates, or evidence ledgers are not certifications of security controls or guarantees that an attack will be prevented.
Your choices and rights
Depending on your location and applicable law, you may have rights to access, correct, delete, or obtain a copy of personal information, or to object to or restrict particular processing. Where processing relies on consent, you can withdraw it without affecting prior lawful processing. You may also have a right to complain to your local data-protection authority.
Use the contact address above to make a request. Avoid sending identity documents unless we explain why limited verification is necessary and provide an appropriate method. You can choose not to submit a form or enable an optional integration.
Children, international processing, and changes
The services are intended for adults, not children under 18. If you believe a child has submitted personal information, contact us so we can investigate and address it.
Ashes2Echoes is based in the United States, and service providers may process information in other countries. Applicable protections and rights depend on the service and jurisdiction; this notice does not assert an unverified transfer certification.
We will post revisions on this page with an updated date. Material changes to enabled processing may require additional notice or consent before that processing begins. This policy describes information handling, not a guarantee that a planned application or service is live.