Privacy policy
Merit stores immigration evidence, which is sensitive personal data. This page states plainly what is stored, what is not, and who it is shared with. No legalese padding.
What is stored
- Your account email.
- Your profile: name, title, links, and resume text.
- Evidence records you add: title, description, URL, date, and which USCIS criterion it supports.
- Outreach logs: who you drafted outreach to and when.
- Generated artifacts: LaTeX, BibTeX, and plugin zips produced from your evidence.
- Usage traces: which model was used, token counts, cost, and timestamps.
What is not stored
Your API key. It is held in your browser, sent with each request you make, used to make that one call, and never written to disk, a log, or a database.
Who it is shared with
The model providers Merit routes to via Vercel AI Gateway (Google, Anthropic, OpenAI) receive the content you submit for generation. If the optional outreach integrations are enabled on your deployment, the outreach content you submit is also sent to Senso (drafting) and Nimble (finding contacts and looking up public scholar profile data). These integrations are off unless the operator sets a Senso or Nimble API key; on Merit's own hosted deployment, both are configured. Merit does not sell your data and has no advertisers.
Retention and deletion
Your data persists until you delete your account. Deleting your account removes every row keyed to you.
Your rights
You can export your data at any time from the account page, and delete your account and all associated data at any time from the account page.
Self-hosting
If you run Merit yourself, none of the above involves us at all. The data lives in your own Supabase project, under your own control.