Privacy Policy

Last updated: October 2026

1. Information We Collect

When you use Spark (spark.entire.vc), we collect:

  • Account information: Name, email address, and avatar provided through our authentication provider (Entire VC SSO via Casdoor).
  • Usage data: Tools you download, rate, comment on, and add to favorites.
  • Search evaluation data: When search relevance evaluation is enabled, we process search queries of up to 200 characters together with public information about search results to evaluate relevance in the background.
  • Technical data: IP address, browser type, and device information for analytics and security.

1a. MCP Server and Outcome Reports

MCP server (spark.entire.vc/mcp). When an AI client calls Spark's MCP tools, we receive the tool name and its arguments (for example, search queries and asset slugs), the client name reported by the MCP client, IP address, and your Spark account if you connect with an API key. Calls without a key are processed anonymously.

Outcome reports. The report_outcome tool lets a client report whether an asset worked. The text fields of a report (task, note, what changed, where it failed, expected, got) are published on the asset's public page and shown to the asset's author; reports made without an API key are labelled "Anonymous, unverified". Do not include personal data, client data, secrets or private URLs in reports. Reports are kept as long as the asset is listed. You can ask us to remove a report at privacy@entire.vc.

Analytics. We record MCP tool calls in our product analytics (PostHog) to measure usage and find errors.

2. How We Use Your Information

  • To provide and maintain the Spark marketplace service
  • To process your tool downloads and purchases
  • To manage your subscription and entitlements
  • To display your public profile and published tools
  • To improve our service and user experience

3. Data Sharing

We do not sell your personal data. We share data only with:

  • Entire VC ecosystem services: Authentication, billing, and wallet services necessary to operate the marketplace.
  • Payment processors: Stripe, for subscription and top-up payment processing.
  • Search relevance provider: When search relevance evaluation is enabled, we send normalized search query text and public result fields (title, short description, type, tags, and listed tasks) to typesafe.ai to evaluate relevance. This background evaluation does not change the results shown to you. Queries that match our filters for email addresses, long numbers, or known credential patterns are excluded, but these filters cannot detect all personal information. Please do not include personal data or secrets in search queries.

4. Data Retention

We retain your account data as long as your account is active. You can request deletion of your data by contacting us.

For search relevance evaluation, Spark stores normalized query text and evaluation measurements. Records older than 30 days are deleted during successful evaluation runs. If evaluation is paused or no evaluations succeed, records remain until the next successful run. This cleanup applies to Spark's records.

5. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion of your data
  • Export your data

6. Cookies

We use essential cookies for authentication (session tokens) and preferences (theme, language). No third-party tracking cookies are used.

7. Contact

For privacy inquiries, contact us at privacy@entire.vc.

8. Changes

We may update this policy. Significant changes will be communicated through the service.