What is stored
Temri stores workspace identity links and membership, namespace grants, memory revisions, evidence excerpts and source locators, verification and correction records, and content-free operation receipts. Bounded usage records identify product, workspace and operation dimensions. Billing is deferred.
Who can access it
Clerk authenticates accounts. Temri links identities by issuer and subject, then checks current membership and namespace capabilities. Signing in, using a matching email or belonging to another application’s organization does not grant a workspace. Treat granted read access as permission to copy returned content.
Services involved
- Cloudflare hosts the service, workspace directory, temporal ledger and private evidence storage
- Clerk processes account authentication and session information
- When hybrid search is enabled, turbopuffer processes the rebuildable search projection and embedding processing is part of the search path; hybrid search is disabled in the initial development configuration
- Your agent or application receives content you authorize it to retrieve, under that provider’s separate terms
Retention and deletion
Memory and evidence remain available until an authorized deletion or an explicitly configured retention policy applies. No universal automatic retention period is promised in this pilot. A correction preserves revision history; it is not deletion.
Deletion suppresses affected content from current and historical online reads first. The operation receipt tracks cleanup of ledger payloads, evidence storage and search sinks. Pending cleanup is shown as pending, not complete. Receipts retain no deleted private text.
Temri cannot erase copies already exported to an agent, product, source repository or external backup. Source and backup retention are separate from online sink cleanup. A removed Git file does not prove historical blob erasure. Confirm those retention obligations with your pilot administrator before storing sensitive information.
Public site and private workspace
Customer memories and evidence are excluded from public documentation, SEO jobs, social images and readiness screenshots. The private workspace uses no session replay or acquisition analytics carrying private identifiers. Sign-out clears displayed private state.
Pilot requests and changes
Ask the administrator who granted your pilot access about membership, data access, retention or deletion. Do not publish private data in public issues. This pilot does not promise a compliance certification, data residency commitment, perfect erasure or uninterrupted availability. Material policy changes will update this notice before broader enrollment.