docs / Security & privacy
Your data & privacy
What we do and don't do with your data — no lock-in, full export, automatic cleanup, and clear boundaries around AI and sync.
Coalface is built so your data stays yours. This page pulls together the promises that are spread across the product.
No lock-in
Your data is exportable. You can import from other tools, and take your data back out — including data tables as CSV. Nothing traps you here.
Automatic data minimisation
An always-on data cleanup policy keeps only what you need. Set a retention window per group and a daily job removes data past it, with a sensible floor so recent data is always kept. Less old data lying around is good for privacy and good for you — see the activity log for where this is configured.
Clear boundaries
We’re explicit about where your content does and doesn’t go:
- Encrypted at rest. Descriptions, comments and subtasks are encrypted by default.
- The Vault stays put. Vault values are never synced, exported, searched or sent to AI.
- AI is opt-in and on-demand. AI only runs when you press a button, and never touches the Vault.
- Sync is signed and directional. WordPress sync is signed both ways and can be read-only.
Deleting data
When you want data gone, you’re in control of exactly what goes — see managing your data for the owner-only delete flow, which lets you remove specific categories or everything, with an age filter for older records.
Account protection
Keeping access to your data safe is covered separately in account security — 2FA and step-up checks.
The short version: your data is exportable (no lock-in), cleaned up automatically on a schedule you set, encrypted at rest, and never quietly sent anywhere you didn’t ask. You can delete exactly what you choose.
last updated 27 July 2026