Clem Desk · Privacy
Privacy Policy
What the website and private Discord operator process, where it goes, and how long it stays.
Effective: 24 August 2026
01Scope
This Privacy Policy explains how Clementine Pujiati handles information through clemnomadlife.com and Clem Desk, a private Discord application. Clem Desk ignores direct messages and is restricted to an allowlisted Discord account and approved server channels.
02Information processed
- Website usage data, such as page URLs, referrer information, device or browser information, approximate network location, and timestamps collected through hosting logs and PostHog page-view analytics.
- The email address you submit if you join the mail club, along with the date you joined, which form you joined from, and the consent wording shown to you at the time.
- Discord metadata needed to operate Clem Desk, including Discord user, server, channel, thread, message, and approval identifiers and timestamps.
- Text you deliberately submit to Clem Desk, task titles, classifications, statuses, decisions, summaries, and audit metadata.
- Operational information such as provider errors, commands executed by approved workflows, relevant file paths, and verification results.
03How information is used
- To display and improve the website.
- To authenticate the owner and enforce Discord channel and workspace boundaries.
- To answer requests, classify and track tasks, create task threads, preserve approved decisions, and generate requested exports.
- To secure, troubleshoot, audit, back up, and maintain the services.
04AI providers and other processors
Discord processes messages and account metadata under its own privacy terms. Clem Desk may send submitted text to the currently configured model provider when a response requires inference. The initial low-sensitivity provider is Z.AI/BigModel. Sensitive writing memories and confidential freelance material are not intended to be sent to an unapproved free model.
PostHog processes website page-view analytics. The website hosting provider may process technical request logs. Email sent to clemnomad@proton.me is processed by the email provider. We do not sell personal information or use Discord task content for advertising.
05Mail club
Joining the mail club is entirely optional and stores only the email address you type in. It is used for one purpose: sending you the occasional letter you asked for. It is never sold, rented, shared with advertisers, or used to build a profile of you.
Subscriber records are held in the same Sanity content dataset that runs this website. Every letter carries a working unsubscribe link, and unsubscribing marks the record inactive immediately. You can also email clemnomad@proton.me to be removed or deleted outright, and your address is kept only until you unsubscribe or ask for its deletion.
06Storage and security
Credentials are stored in environment variables or an appropriate secret store, not in the task database. Sensitive task fields are protected with application-level encryption, and local storage should also use full-disk encryption. Access is limited through Discord user and channel allowlists, restricted tools, explicit repository paths, and approval gates.
No system can guarantee absolute security. If a credential is accidentally disclosed, it should be revoked and replaced immediately.
07Retention
- Original Discord task-message content: up to 90 days.
- Temporary attachments, when attachment support is enabled: up to 30 days.
- Completed task records and summaries: up to one year.
- Audit metadata: up to one year without unnecessary sensitive message bodies.
- Approved project decisions: until manually deleted.
- Writing drafts, approved writing, and raw writing memories: until manually deleted. Raw-memory deletion must be available through an easy deletion command.
08Workspace separation and exports
Zentio, Personal Work, and Writing data are kept in separate logical workspaces. Project facts, memories, files, and decisions are workspace-specific. Manual Markdown and JSON exports may be produced per workspace. Sensitive fields are excluded by default unless the owner explicitly requests a complete private export.
09Your choices
You may request access to, correction of, export of, or deletion of information controlled through these services, including your mail club subscription. Some technical logs or backup copies may remain for a limited period where necessary for security, integrity, or legal compliance. You can limit website analytics through browser privacy controls and blocking tools.
10Policy updates
This Policy may change as Clem Desk adds providers, integrations, or data types. Material changes will be reflected on this page with a revised effective date.