Privacy Policy
Last updated: August 30, 2026
1. What Vesta is
Vesta is a Multi-Criteria Decision Analysis (MCDA) tool. It helps you structure and compare alternatives across multiple criteria using AHP and structured pairwise comparisons. Your projects are stored in your account so you can access them from any device.
2. Data we collect
- Account information: your name, email address, and profile picture, provided by your Google account when you sign in via Google OAuth.
- Project data: the criteria, alternatives, weights, comparisons, and any other content you create inside Vesta.
- Usage analytics: product usage events (e.g. which features you use, how often you interact with the app) collected via PostHog. Your IP address is discarded before storage, and no names or email addresses are included. Events are associated with your account identifier (a random string, not your name or address, but still data that relates to you) so that repeat visits from one person are not counted as many. Analytics are necessary for us to understand how the product is used and to improve it.
3. How we use your data
- To authenticate you and associate projects with your account.
- To store and retrieve your projects across sessions and devices.
- To understand how the product is used and guide product improvements (analytics only).
We do not sell your data or use it for advertising.
4. AI-assisted features
Every AI-assisted feature in Vesta, including the AI Model Builder, pairwise comparison guidance, duel insights and audit insights, requires your own Anthropic API key and calls Anthropic's API directly from your browser. Your key, your conversation, and Claude's replies are never sent to or seen by Vesta.
The one exception: before each request, the relevant text (your message, or the project names/criteria/alternatives involved) is sent through a Vesta-operated check to OpenAI's Moderation API, to prevent abuse of the feature. Neither Vesta nor OpenAI retain what is examined there, and the check fails open: if it's unavailable, your request proceeds rather than being blocked.
Your API key can be kept in memory for the current browser session only, or stored encrypted on your device (automatically forgotten after 30 days of inactivity); you control which, and can delete it at any time from your account settings. We recommend using a key dedicated to Vesta with a spend limit set in the Anthropic Console, since a leaked key is a billing risk, not a data one.
5. Data storage and third-party processors
Your project and account data is stored in Google Firebase (Firestore and Authentication), operated by Google LLC. Usage analytics are processed by PostHog, Inc. When you invite a collaborator to a project, Resend (Plus Five Five, Inc.) delivers that one email, and receives the address you invited together with the project's name; it is used for nothing else. By using Vesta you also agree to their respective privacy policies:
The moderation check described above is the fourth: it sends the specific text being checked to OpenAI, and nothing else about you.
6. Data retention and deletion
Your projects and account data are retained for as long as your account exists. You may delete individual projects at any time from within the app. To permanently delete your account and all associated data, including all projects and their content, go to your profile page and use the Delete account option. This action is irreversible. It removes, in order: every project you own along with its collaborator list, your entry in any project someone else shared with you, your profile, and your authentication record. Backups held by our infrastructure providers may retain a copy for a short period afterwards under their own retention schedules.
7. Your rights
Depending on your jurisdiction you may have rights to access, correct, or delete your personal data. You can exercise your right to deletion directly in the app via the profile page.