Privacy policy
What BoltGauge collects, what it never collects, and who holds it.
Last updated 10 September 2026.
Who we are
BoltGauge is operated by Radial 47 (“we”). This policy covers the BoltGauge website and the BoltGauge agent, the small program you install on your own machine. For any question or request about your data, email privacy@radial47.com.
What the agent sends us
The agent reads the transcript files your coding agents (such as Claude Code and Codex) write on your machine, and uploads only what this page lists:
- for each request: the token counts, the model name, the provider, the name of the folder the session ran in (the folder’s own name only, never the full path, and never your home folder), the time of the request, the provider’s session id, a key that stops the same request, or the same upload, counting twice, and whether a sub-agent made the request. No cost is sent: we work the cost out from the token counts when a record arrives;
- plan limit standings: the percent used, the window length, the reset time, the plan name, and the time of the reading. For a Claude standing, also each window’s kind and group, a severity word, the model’s display name where a window is per model, and whether the window is active. For a Codex standing, also the limit’s id and name, a line number, and a scrambled code for the reading’s source, used only to keep readings in order;
- for Claude standings: a fingerprint of which Claude sign-in produced the reading, a short scrambled code derived from the account id, so each sign-in gets its own dial. The code cannot be turned back into the account.
- for Codex standings: a fingerprint of which Codex sign-in produced the reading. It is a short scrambled code made from the account id that Codex reports, so each Codex sign-in gets its own dial. The code cannot be turned back into the account.
What the agent never sends us
Transcript content, prompts, your code, and the contents of your files never leave your machine. Everything the agent uploads is named on this page; there is no other upload.
To fetch your plan’s usage limits, the agent reads the Claude Code sign-in file on your machine and uses its token to ask Anthropic directly. That token is sent to Anthropic only. It is never sent to BoltGauge and never logged.
To tell your Claude sign-ins apart, the agent reads the Claude Code identity
file on your machine (~/.claude.json) and takes one value: the
account id, which it scrambles into the fingerprint described above. The email
address and display name in that file never leave your machine.
To read your Codex plan’s limits, the agent asks Codex itself. About every three minutes it runs the Codex program already on your machine and asks it for the plan’s usage. Codex talks to OpenAI with its own sign-in. The agent never reads that sign-in, never sends it to BoltGauge, and never writes it to a log. The account id Codex reports is scrambled into the fingerprint described above. Your email address and display name never leave your machine.
The agent installs only after showing you a consent statement and taking a
typed yes. If what it collects ever changes, the statement changes with it and
the agent asks again before sending anything new. You can remove it at any time
with boltgauge-agent uninstall.
Account data
- Your email address, used to sign you in and to reach you about the service.
- A password, only if you choose to set one. It travels over an encrypted connection to our authentication provider and is stored by them in hashed form; we do not store it.
- The names you give your linked machines, and when each was linked and last seen. The agent is never asked for your computer’s hostname. A machine is only ever called what you typed.
Cookies
We set only the cookies the site needs to work: to keep you signed in, and to carry a code you clicked across sign-in. There are no analytics, advertising, or tracking cookies, and no third-party cookies.
How we use your data
To show you your own dashboard, to operate and secure the service, and to send you sign-in email. We do not sell personal data, we do not share it for advertising, and we do not send marketing email.
Who processes it for us
We use a small number of providers to run the service: Supabase (database and authentication), Netlify (web hosting), Resend (delivery of sign-in email), and Cloudflare (the check that you are a person on the sign-in pages). Your data may be processed in the United States and in other countries where these providers operate.
Retention and deletion
We keep your data while your account is active. Revoking a machine stops it from uploading; uninstalling the agent stops collection from that machine. To delete your account and its data, email privacy@radial47.com. We will delete it within 30 days.
Your rights
You can ask us for a copy of your data, ask us to correct it, or ask us to delete it, at the address above. Depending on where you live, you may have further statutory rights; we honour requests under the law that applies to you.
Children
BoltGauge is a developer tool and is not directed at children under 13. We do not knowingly collect their data.
Changes
If this policy changes, the date at the top changes with it. If the change is material, we will email account holders before it takes effect.