Privacy Notice
Terms version: September 22, 2026 · US launch and billing update · Path release 1.16.1 · Terms identifier: path-2026-09-22-us-v2
Looks Labs LLC, doing business as Sistine, is responsible for the Path processing described here. Contact support@sistine.ai for privacy questions or requests. This Notice covers Sistine Path, its subscription, connection flow, market-data delivery and Path web pages. Other Sistine products have separate notices.
1. What stays on your Mac
Downloaded histories and your imported price files are stored in a local SQLite database. Watchlists, preferences and chart calculations remain on the Mac. Routine subscription checks and shared-data downloads do not upload your full watchlist, personal imported files or chart calculations. Choosing to email support or export a file can disclose the material you select.
The historical database is not itself an encrypted vault. Its protection depends on your Mac, FileVault, backups and any cloud-storage settings. Access credentials are stored in macOS Keychain. Uninstalling Path may leave its Application Support files, preferences, Keychain entries and backups. It does not cancel billing.
2. Payment and subscription information
Stripe collects your billing email, payment details and, when requested, name, billing address or tax information through its hosted checkout. For the US launch, Stripe also collects the US address where you use the subscription to confirm US availability. Nothing is shipped. Our app and subscription database do not collect or store full card numbers or card security codes. We receive and maintain payment-related identifiers, subscription status, paid-through dates, consent version and time, and relevant refund or dispute events.
Authorized support personnel can access billing contact and limited payment information in Stripe when needed to resolve a purchase, cancellation, tax, refund or dispute question. Stripe also processes information for fraud prevention and its own obligations under Stripe’s Privacy Policy. No separate Path email/password account is required, but device activation does not make a subscription anonymous.
3. Connecting your Mac and delivering data
The app generates a random device credential and keeps it in Keychain. The backend uses a hash of that credential to recognize the connected Mac. It is not derived from a hardware serial number or card fingerprint. A browser connection request contains that public hash, a random request reference and a ten-minute expiration, signed by our server. Only a verified, paid purchase can approve it. The original device credential is needed to use the connected subscription.
The service handles connection, verification and support events, subscription identifiers and signed access records. It also receives asset identifiers and data revisions requested during updates. Requests can reveal which histories your app holds or requests, even though the entire watchlist is not uploaded. Hosts process connection information such as IP addresses, timestamps, request paths, status codes and operational logs.
Server-side stock, index, crypto and commodity futures imports normally use our provider accounts and server network addresses. Logos are bundled in the app and do not require a provider request when displayed. If you choose a direct provider import, that provider receives your network address and selected instrument request under its own terms.
4. Website storage
The purchase browser stores a randomly generated purchase credential in local storage so it can resume checkout, verify payment, connect the Mac and open billing. This is sensitive access information even though it is not a card number. It is not placed in a URL. Clearing this storage can require purchase recovery through support.
A pending public connection request is kept in that tab’s session storage, validated against its short expiration, and cleared when connected or found expired. Connection fragments are removed from the address bar before the page displays the request. They are not sent as part of an ordinary HTTP page request.
Cloudflare delivers and protects the website and provides aggregate traffic/performance information. Its Web Analytics service is designed without advertising cookies or individual fingerprinting. Hosting and security processing still involve network data such as IP addresses. We do not configure advertising pixels, session replay or cross-site advertising profiles for Path. See Cloudflare’s Privacy Policy.
5. Purposes and service providers
We use information to supply the purchased service, verify payment and device access, deliver updates, prevent abuse, recover purchases, answer support, resolve disputes and meet legal obligations. We do not sell personal information, share it for cross-context behavioral advertising, or use local watchlists and imported files to train a general-purpose AI model.
- Stripe: checkout, payments, invoices, subscription management and payment disputes.
- Supabase and its infrastructure providers: subscription/device records, API operations and protected history storage/downloads. Our selected project region is in the Americas; that does not mean every provider processes all information only there. See Supabase’s Privacy Policy.
- Cloudflare: website and app-file delivery, security and website statistics.
- Email service providers: delivery and storage of messages to and from support@sistine.ai. Information you choose to include in a support email or attachment is processed to answer it. Stripe delivers payment-related email according to its settings and notice; Path does not automatically email an activation key.
- Market-data providers: including Marketstack, CoinGecko and Yahoo Finance for centrally scheduled daily imports and historical data. Central imports do not need customer payment or device credentials. Optional direct imports are described above.
- Apple: macOS security, Keychain and distribution checks operate under Apple’s applicable privacy information and your operating-system settings.
We may disclose relevant information to professional advisers, authorities or transaction counterparties when reasonably necessary for legal compliance, security, protection of rights or a business transfer subject to applicable safeguards. A provider may process some information independently under its own notice; using a provider does not give it unrestricted permission to use your information.
6. Retention
Local histories, watchlists and credentials remain until you remove them using app, Finder or operating-system controls; your backups can retain copies. The service retains purchase and device records while needed to supply or recover access. Billing, tax, consent, refund and dispute evidence can be kept after cancellation for applicable legal, accounting or claims periods.
Support and operational records are retained according to the purpose of the request, incident investigation and any required retention. Hosting logs and backups also follow provider settings. On a verified deletion request, we identify what can be removed or de-identified, what must be retained and why. Restricted backup copies may remain until their normal rotation; a legal hold can delay deletion of relevant records.
7. Your choices and rights
Contact support to request access, correction, deletion, portability or another privacy right available under the law that applies to you. Depending on that law, you may also object to or restrict processing, withdraw consent, use an authorized agent, appeal a decision or complain to a supervisory authority. We respond within the applicable timeframe and explain lawful exceptions. We do not discriminate for exercising a protected right.
We may need proportionate proof that a request concerns your purchase; never send full card details, passwords or wallet keys. We cannot remotely erase local files or backups you control. Cancellation, deletion and email unsubscribe are separate actions; tell us which you intend and we will help you complete it.
8. International processing and legal bases
Our service providers may process information in the United States and other countries. Where a law requires a legal basis, processing may be necessary to perform our agreement, meet legal duties, pursue legitimate interests in operating and securing the service, or rely on consent where required. Legitimate interests remain subject to applicable rights; withdrawing consent does not invalidate earlier lawful processing. Where required, international transfers need the applicable contractual or other lawful safeguards. Contact us for information relevant to your location.
9. Security and age limits
We use encrypted network connections, access restrictions, protected backend keys, signed short-lived access records and Keychain storage. No system is completely secure. We make legally required notices of qualifying incidents. Path is intended for adults 18 and older; contact support if you believe a child has supplied personal information.
10. Changes
We identify the current version and give appropriate notice of material changes. A revised notice does not by itself supply consent for an unrelated new use of personal information. Contact support@sistine.ai with questions or requests.
Correspondence addressLooks Labs LLC
c/o Registered Agents Inc
30 N Gould St Ste R
Sheridan, WY 82801
United States
© 2026 Looks Labs LLC · support@sistine.ai