RemoteSkill

Privacy policy

RemoteSkill is a private, personal library for Agent Skills. This policy describes what the service stores, why, and how to remove it. Use of your data is limited to what is described here.

What we store

  • Account information. When you sign in with Google, GitHub, or email, our authentication provider (Clerk) gives us your name, email address, and a stable account identifier. We use these to identify your catalog and nothing else.
  • Skill content. The files of every skill you import or upload are stored so they can be served back to you and your agents. Skills are private to your account; there are no public pages or share links.
  • GitHub connection. If you install our read-only GitHub App, we store the installation reference so we can read the repositories you granted, and only those, to import and refresh skills. We never write to your repositories.
  • API keys and connections. API keys you create are stored as salted hashes. MCP connections use OAuth tokens issued by our authentication provider.

How it is used

Stored data exists to run the product: serving your skills to your agents, showing your catalog, and syncing from sources you connected. We do not sell data, share it with advertisers, or use skill content for anything beyond serving it to you.

Where it lives

Data is processed by our infrastructure providers: Clerk (authentication), Convex (database), Cloudflare (DNS, storage of binary assets), Vercel (hosting), and GitHub (when you connect it). Each processes data only as needed to provide their service.

Deletion

Deleting a skill removes its hosted content. Deleting your account removes your catalog, stored files, API keys, and GitHub installation references. You can export any skill as a ZIP at any time before deleting it.

Contact

Questions about this policy can be sent to the operator at leeornahum@gmail.com.