Legal

Privacy Policy

Effective date: August 30, 2026  ·  Last updated: August 30, 2026

Most apps turn your data into a way to distract you or sell to you. Theater is built the other way. Your data is yours, and it is here to power your own connections, community, and growth. We make money on subscriptions, so we never have a reason to sell your work or profit from your attention.

The short version

The summary is for orientation. The full terms below govern.

Contents 1. Who we are  ·  2. What we collect  ·  3. How we use it  ·  4. The AI layer (Maistro)  ·  5. We never sell or train shared models on your work  ·  6. Contacts you import  ·  7. Who we share data with  ·  8. Google user data  ·  9. Where your data is stored  ·  10. Retention  ·  11. Your rights  ·  12. Shared productions & leaving  ·  13. Breach notification  ·  14. Security  ·  15. Regional rights (GDPR/CCPA)  ·  16. Children  ·  17. Changes  ·  18. Contact

1. Who we are

Theater is a personal operating system for organizing and executing the work in your life. It is operated by Bushwick & Devoe LLC (“Theater,” “we,” “us”), a New York limited liability company. We are the controller of the personal data described here. This policy explains what we collect when you use gettheater.app and the Theater application, why, and the choices you have. Theater is currently offered in private beta, and these practices may evolve as the product does. We will note material changes as described in Section 17.

2. What we collect

We collect only what we need to run the service for you.

Information you give us

Information from connected services (only if you connect them)

Information we collect automatically

We do not collect payment card or bank information. Theater is free during the private beta and does not process payments.

3. How we use your information

We do not use your content for advertising, and we do not sell it. See Section 5.

4. The AI layer (Maistro)

Maistro is the AI assistant inside Theater. It is powered by Anthropic’s Claude API. Here is exactly how your data is handled when a Maistro feature runs:

Maistro can be wrong. Its drafts and suggestions are a starting point for you to review. They are not professional advice. See the Terms of Use for the full disclaimer.

5. We never sell your work, and never train shared models on it

We make money from the product, through subscriptions, and never from selling your data. Specifically:

If you opt in to share feedback during the beta, any product insight we draw from it is aggregated and de-identified before it informs our roadmap, and your raw content stays private to you and your coaching. Sharing feedback is optional and off by default.

6. Contacts and other people’s information you import

Your network is yours. Theater lets you bring in the connections you have already made, from a LinkedIn export or your phone, and put them to work toward your own goals. We use them only for you, never to market to those people and never to build a directory. And we respect their data the same way we respect yours, which is why the handling below matters.

7. Who we share data with (subprocessors)

We share data with a small set of vendors that help us run Theater. They process data on our behalf, under contract, only to provide their service to us. We do not permit them to sell it or use it for their own purposes.

ProviderWhat it does for TheaterData involved
SupabaseDatabase, authentication, and file storage (our primary data store)Your account and content
VercelApplication hosting and serverless functionsRequests and technical data in transit
Anthropic (Claude API)Powers Maistro’s AI featuresOnly the data a feature needs at request time (Section 4)
LoopsTransactional email (waitlist and collaboration invites)Recipient email and message details
GoogleCalendar sync, only if you connect itCalendar events and attendees (Section 8)

We keep a current list of subprocessors and will update this policy when we add or change one. This list is complete as of the date above. Theater runs no analytics platform, no advertising network, and no third-party tracking of any kind. We may also disclose information if required by law, to enforce our terms, or to protect the rights, safety, and security of our users and the service.

8. Google user data

Theater’s use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements. Concretely, if you connect Google Calendar:

9. Where your data is stored

Your data is stored on cloud infrastructure located in the United States (Supabase and Vercel). If you access Theater from outside the United States, your information will be processed in the United States and in the locations of the subprocessors listed above. For transfers of data from the EEA or UK, see Section 15.

10. How long we keep your data

We keep your account and content for as long as your account is active. When you delete specific items, they are removed from your active workspace. When you delete your account, we delete or de-identify your personal data within 30 days, except where we must retain limited records to comply with law, resolve disputes, or enforce our agreements. Server logs and authentication tokens are kept for a short period (typically 30 to 90 days). Waitlist emails are kept until launch or until you opt out. Google authorization tokens are deleted when you disconnect Google. Data sent to the Claude API is subject to the provider-side window in Section 4.

11. Your rights and choices

During the private beta, some of these are handled manually: email hello@gettheater.app and we will process your request. We will respond within the time required by applicable law, and in any case within 30 days. You also have the right to complain to a data-protection authority (see Section 15).

12. Shared productions and leaving Theater

Theater lets you invite collaborators to a production. When you share a production, the people you invite can see what you have shared with them, and messages you post on a shared Callboard are visible to that production’s collaborators. If you delete your account, we delete your personal data as described in Section 10, but content you contributed to a production owned or co-owned by someone else may remain with that production, shown as from a removed user, because another person also relies on it. You can remove collaborators, and leave or stop sharing a production, at any time.

13. If there is a data breach

If we become aware of a security incident that affects your personal information, we will notify affected users and any required authorities without undue delay, and we will describe what happened and what we are doing about it, as required by applicable law.

14. How we protect your data

We use technical and organizational measures to protect your information, including encryption in transit and at rest at the infrastructure-provider level, owner-only access controls on your core data, and server-side handling of sensitive credentials. See our Security Overview for details. No system is perfectly secure, and Theater is an evolving beta, so we describe our current posture honestly rather than promising certifications we do not yet hold.

15. Regional privacy rights

EU / UK (GDPR)

If you are in the EEA or UK, we process your personal data on these legal bases: to provide the service and your account (performance of a contract); for Maistro features, product improvement, and security (our legitimate interests); for connecting Google, sharing beta feedback, and training Maistro’s voice on your samples (your consent, which you can withdraw); and to meet legal obligations. You have the rights to access, correct, delete, port, object to, and restrict processing, and to withdraw consent, and you can lodge a complaint with your local supervisory authority (in the UK, the ICO). Maistro’s suggestions are proposals that you approve; we do not make decisions producing legal or similarly significant effects about you without human involvement. Where we transfer EEA or UK data to the United States, we rely on Standard Contractual Clauses (and the UK Addendum) with our subprocessors.

California (CCPA/CPRA)

We collect the categories of personal information described in Section 2 (such as identifiers, commercial information, and internet or app activity) for the purposes in Section 3, and we disclose them to the service providers in Section 7 under contracts that bar them from using the data for their own purposes. We do not “sell” or “share” personal information as those terms are defined under California law, so there is nothing to opt out of, and we honor Global Privacy Control signals regardless. You have the rights to know, access, correct, and delete your personal information, and to not be discriminated against for exercising them.

16. Children

Theater is intended for users 18 and older. It is not directed to children, and we do not knowingly collect personal information from anyone under 18. If we learn we have collected such information, we will delete it. Contact hello@gettheater.app.

17. Changes to this policy

We may update this policy as Theater grows. For material changes, we will provide notice (for example, by email or an in-app notice) before the change takes effect, update the date above, and, where the change requires your consent under applicable law, ask for it.

18. Contact us

Questions, requests, or concerns about privacy: hello@gettheater.app. Bushwick & Devoe LLC, a New York limited liability company. We will give you our postal address on request.