Last updated August 21, 2026. The short version: the open-source product runs where you deploy it and sends us nothing, and this site doesn't track you.
What we collect
What we never do
The paid product runs in your own cloud (BYOC) or in a hosted deployment we operate, under the MSA and DPA you sign. Full detail below.
The open-source Mari build runs where you deploy it. It sends us no telemetry and uploads nothing to us. What it connects to, indexes, and processes is under your control and your configuration, on your own infrastructure.
mari.guru is a static site. It sets no cookies and runs no analytics or ad pixels. The one thing it stores is your light-or-dark theme preference, in your own browser's local storage, where it stays.
This site serves its own fonts, so nothing on these pages loads from a third party. The docs pages under /docs currently fetch their fonts from Google Fonts, which means Google's servers see your IP address there the way any web server does. Because we don't track you, a Do Not Track signal changes nothing: the site behaves the same with it or without it.
If you email us, we keep the email so we can answer it. If you book a demo, the booking runs through Calendly, which processes what you enter there under its own privacy policy. We see your name, email, and the time you picked.
Data handling for the paid product, including what a deployment touches and how long anything is retained, is set out in the MSA and DPA each customer signs. On bring your own cloud, the deployment runs in your VPC and your content stays inside your network. On the hosted option, it runs in an environment we operate under those same terms.
Want to know what we hold about you, correct it, or have it deleted? Contact us and we'll handle it.
If this policy changes, the new version appears here with a new date at the top.