← flow-graph.com

Privacy Policy

Effective: August 25, 2026 · Contact: help@flow-graph.com

The short version: FlowGraph is local-first. Your graphs, documents, and models live on your device first. Account identity, private cross-device protection, sharing, the one-map Free Preview, and other cloud actions use FlowGraph servers only when those features are active.

What stays on your device

What we store if you create an account

Payments

Card-backed trials and payments are processed by Stripe. Card details never touch FlowGraph servers or code. We store only the customer/subscription identifiers and status/timing needed to enforce the trial and entitlement.

Cloud 3D translations (Autodesk APS)

If you choose "View with APS (cloud)" for a Revit/Navisworks/DWG/DGN file, that file is sent to Autodesk's cloud for conversion — always behind an explicit consent step that says so. With your own Autodesk app, the traffic is between you and Autodesk. On our platform quota, we meter usage counts (not file contents).

Optional Google 3D map background

Spatial World starts without Google's background. If you choose "Use Google 3D Tiles" after the on-screen disclosure, your browser requests Google Photorealistic 3D Tiles directly from Google. To return the tiles, Google receives the area or coordinates you are viewing and ordinary network and request information such as your IP address and browser or device details. FlowGraph does not send your ontology cards, IFC files, source documents, or other vault content to Google for this feature, and it does not infer graph facts from the imagery.

Your approval is stored only on that device. Choose "Turn off Google 3D" in Spatial World to stop tile requests and clear the approval. Use of the background is subject to the Google Maps/Google Earth Additional Terms of Service and Google Privacy Policy.

Analytics & error reporting

How you found us (attribution)

When you arrive from one of our content pages or a campaign link, the address may carry a short source tag (?src= or a standard utm_source) — for example ?src=ifc-viewer. We remember only that one short tag for the current browser session, using session storage on your device — no cookie, no cross-site identifier, no fingerprint. If you later create an account, that single tag is attached to your signup as a plain field so we can learn which pages are useful. It is never sold, never linked across sites, and it disappears when you close the browser tab if you don't sign up. It is not used for the local, account-free path at all.

What we never do

Data deletion

Local data: delete it yourself — it's yours, on your machine. Account data: email help@flow-graph.com and we delete your account, plan records, and synced content within 30 days (billing records are retained as legally required).

Changes

If this policy changes materially we'll note it in the app's "What's new" and on this page. Questions: help@flow-graph.com.