Privacy Policy
Last updated: April 2026
Information We Collect
When you use FuseCMD, we may collect the following types of information:
- Account information: When you sign up using Google OAuth or email/password authentication, we collect your name, email address, and profile picture.
- Usage data: We collect information about how you interact with FuseCMD, including conversations, tool executions, and connected integrations.
- Third-party integration data: When you connect apps through Composio OAuth, we receive OAuth tokens that allow FuseCMD to act on your behalf. We do not store your third-party passwords.
- Technical data: We collect standard log data such as IP addresses, browser type, device information, and referring URLs.
How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve FuseCMD and its features.
- Authenticate your identity and manage your account.
- Execute tasks on your behalf through connected third-party integrations.
- Run code and tool invocations securely in remote sandboxed environments.
- Communicate with you about service updates, security notices, and support.
- Monitor for abuse, fraud, and violations of our Terms of Service.
Third-Party Services
FuseCMD connects to over 1,000 third-party applications through Composio OAuth. When you authorize a third-party integration, we receive an OAuth token scoped to the permissions you grant. We do not access more data than necessary to fulfill your requested tasks.
We also use the following third-party services:
- Google OAuth: For user authentication and sign-in.
- Composio: For managing OAuth connections to third-party apps and providing tool execution capabilities.
- Cloud infrastructure providers: For hosting, data storage, and sandboxed code execution.
Each third-party service is governed by its own privacy policy. We encourage you to review their policies before connecting your accounts.
Data Security
We take the security of your data seriously. Key measures include:
- All code execution happens in remote sandboxed environments that are isolated and ephemeral.
- OAuth credentials are encrypted and managed server-side. Your agent never has access to raw API keys or passwords.
- All data is transmitted over encrypted connections (TLS).
- We implement access controls and audit logging for internal systems.
Data Retention
We retain your account data and conversation history for as long as your account is active. You may request deletion of your data at any time by contacting us. When you delete your account, we will remove your personal data within 30 days, except where retention is required by law.
Sandbox execution environments are ephemeral and are destroyed after each task completes.
Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access and receive a copy of your personal data.
- Correct inaccurate or incomplete data.
- Request deletion of your data.
- Object to or restrict the processing of your data.
- Withdraw consent for data processing at any time.
- Disconnect any third-party integration and revoke its OAuth token.
To exercise any of these rights, contact us at support@fusecmd.com.
Children's Privacy
FuseCMD is not intended for use by individuals under the age of 13. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child under 13, we will take steps to delete that information promptly.
Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by updating the "Last updated" date at the top of this page and, where appropriate, through in-app notifications or email. Your continued use of FuseCMD after changes take effect constitutes acceptance of the revised policy.
Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us at support@fusecmd.com.