Privacy
Last updated: 12 August 2026
Porto (“we”, “us”) is operated by Sam Vickars. This policy explains what we collect, why, and what choices you have. Porto is in public beta; we will update this page as the product changes.
What Porto is
Porto is a portfolio website builder. You edit a site in our app, then publish it to a public subdomain. This policy covers the Porto app and website (porto.bysam.fun and related domains). It does not govern third-party sites you link to from your portfolio.
What we store
Account data. Your email address and account identifier, used for sign-in and support.
Site content. Drafts, published snapshots, commit history, uploaded media, and site settings you save in the builder.
Page-view counts. If analytics are enabled for your site, we store the page path and site identifier when someone views a published page. We do not store visitor names or emails from those requests.
Technical logs. Our hosts may briefly retain IP addresses and request metadata for security and reliability.
What we do not store
Chat history on our servers. We do not save your builder chat as a conversation log in our database. Messages you send exist in your browser’s local storage for convenience until you clear them or remove the site data from your device.
Porto is not a chat archive. If you need a record of AI suggestions, copy them before clearing chat or leaving the builder.
AI features
When you use chat, description suggestions, commit-message generation, or image alt-text suggestions, Porto sends the relevant text and site context to Anthropic’s API to produce a response. That happens in real time for the request—we do not add those prompts or replies to a permanent Porto chat log.
Anthropic processes API requests under its own terms and retention rules. We do not use your content to train Porto models. Do not put passwords, secrets, or sensitive personal data about others into chat or other AI fields.
Analytics on Porto
We use Vercel Analytics on the Porto app and marketing pages to understand traffic in aggregate. We do not use advertising or cross-site tracking pixels.
Analytics on published sites
When analytics are enabled, published sites include a lightweight page-view beacon. It records the page path and site slug. It does not set cookies on your visitors’ browsers. You can turn this off in Settings → Analytics and republish.
Service providers
We rely on trusted processors to operate Porto, including:
- Supabase (database, authentication, file storage)
- Vercel (hosting and analytics)
- Anthropic (AI features in the builder)
- ImprovMX or similar (transactional email for sign-in codes)
Cookies and local storage
Porto uses essential cookies to keep you signed in (via Supabase Auth). The builder also uses browser local storage for chat history and layout preferences on your device.
Vercel Analytics may use cookies or similar technologies on Porto pages. We do not run a separate advertising cookie banner because we do not use ad networks.
Retention
We keep your account and site data while your account is active. You can delete your account in Settings; that removes your site, uploads, and account. Page-view records tied to your site are removed with it.
Your choices
Download a ZIP export of your site from Settings. Delete your account in Settings to remove your data from Porto. For privacy requests, email privacy@bysam.fun.
If you are in Canada, you may have rights under PIPEDA to access, correct, or challenge our handling of personal information. We will respond to reasonable requests within a practical timeframe.
Children
Porto is not directed at children under 13. We do not knowingly collect personal information from children.
Changes
We may update this policy as Porto evolves. We will revise the date at the top of this page when we do. Continued use after changes means you accept the updated policy.
Questions? privacy@bysam.fun. See also Privacy and Terms.