Privacy Policy

Last updated: August 8, 2026

1. Who we are

Saturn is operated by Wilcus Industries. Questions and requests: lucas.marta0799@gmail.com.

2. What we collect

  • Your Google account basics (name, email, avatar) when you sign in.
  • The organizations you belong to and your role in each.
  • The MCP servers you connect: their names and URLs, and the credentials you provide or that we obtain on your behalf, encrypted at rest.
  • The tool catalogs we cache from your connections, so agents do not re-query them.
  • The memory notes you and your agents write, and the tool-access rules you set.
  • The OAuth clients your agents register and the tokens issued to them, plus the hash and last-used time of any API key you create.

We do not record the arguments your agents send to tools or the results they get back. Those pass through and are not stored.

3. How we use it

To operate the service: authenticate you and your agents, assemble each caller's tool list, enforce role-based access, relay tool calls to the right upstream server, and provide support. We may also email you at your account address for required service and account messages and for optional product announcements you can opt out of. We show no ads, sell no data, and run no third-party analytics or tracking.

4. Cookies

Essential cookies only: your sign-in session. No tracking cookies.

5. Where data goes

  • Google handles sign-in and receives only what an OAuth login involves.
  • Your data is stored in a managed Postgres database, and the application runs on cloud infrastructure.
  • The MCP servers you configure receive the tool calls your agents make, including their arguments — where you direct them, and no further.

Saturn does not send your data to any model provider. It has no model of its own and makes no inference calls; the agent you run does that, wherever you run it.

6. Secrets

Connection credentials are encrypted at rest with a server-side key and are never sent to your browser. Saturn's own access tokens are never forwarded to an upstream server: an agent's token authenticates it to Saturn and nothing else, and each upstream is called only with the credential you stored for it.

7. Retention and deletion

Your data is kept while your account exists. Deleting a connection deletes its stored credentials and cached catalog; deleting a memory note deletes it. Email us to delete your account and everything attached to it. Data owned by an organization you do not control stays with that organization.

8. Changes

Updates are posted on this page.