Inspired legal
Privacy policy
Inspired is a prototype for exploring public inspiration records on ATProto. This policy explains the data the app handles when you use it.
What we handle
You can browse Inspired without connecting an account. To connect an ATProto account, Inspired uses OAuth and receives the permissions needed to create, update, and delete your inspiration records.
When you connect, the app handles:
- your ATProto DID, handle, display name, avatar, and profile description;
- the inspiration records you create, including their category, subject, display details, note, and creation time;
- OAuth state, DPoP keys, access and refresh tokens, and a hashed browser-session identifier.
Where data lives
Your inspiration records are written to your connected Personal Data Server (PDS). They are public ATProto records and may be read, indexed, copied, or displayed by other services in the ATProto network.
Inspired keeps OAuth data and hashed browser-session mappings in its authentication database so that your session can work. Browser sessions expire after 14 days. The app also keeps an AppView index of public records and related public metadata to power discovery.
Third-party services
To provide account lookup, public profile data, and inspiration metadata, Inspired may request information from ATProto services, Wikidata, Google Books, Open Library, YouTube, and the website URLs you choose to add. Those services process requests under their own privacy practices.
Your choices
You can disconnect from Inspired at any time. Disconnecting removes the app’s browser session and revokes the OAuth session where possible; it does not delete records already stored in your PDS or public indexes. You can delete an inspiration from your profile, which deletes that record from your PDS and updates Inspired’s index.
Changes and contact
This prototype may change as it develops. Material updates to this policy will be published on this page. For privacy questions, contact Jeremy throughBluesky.