Legal

Privacy Policy

This policy explains what Menso collects when you run an AI user test and what happens to that information.

Last updated: 2026-09-29

Information Menso collects

  • Your account email and the account identifier used to keep your work separate.
  • The product URLs, task text, research prompts and test settings you enter.
  • Test credentials you save on a test, or pass to a test through MCP or the CLI. Menso keeps them in access-restricted files on its server, without application-level encryption, and uses them only to run the tests you request and to keep them out of replays you share. Menso keeps up to 100 test accounts passed through MCP or the CLI per Menso account; when a new test goes past that, it deletes the least recently used ones that no queued or running test needs. If you change or delete a saved login that any of your tests used, Menso keeps the old login only until you delete those tests, and uses it only to check that the replays you share don't show it.
  • Screenshots and DOM recordings from the AI user's session on your product, plus the resulting replay, findings and report.
  • Purchase status and credit grants. Stripe handles payment details; Menso does not store card numbers.

How Menso uses the information

Menso uses your inputs to prepare the AI user, run the task, build the replay and report, maintain your account balance, and answer support requests. Menso also uses run failures and service logs to keep the test system reliable and prevent abuse.

Service providers and sharing

LLM providers receive the page content and task context needed to plan and run your test. Stripe receives payment and checkout information. Plausible Analytics receives page addresses without account, test or share identifiers, the referring site and campaign tags, and the product steps described under Cookies and analytics. These providers process information for Menso under their own security and privacy terms.

Menso does not publish your reports or replays. Another person can view one only through a share link you create. Anyone who receives that link may be able to open it, so share it with care.

Retention and deletion

Menso keeps reports, replays, screenshots, DOM recordings and related run records until you delete the run. Deleting a run removes its replay, screenshots, report and canvas record, including synced active copies. Deletion cannot be undone in the app. Some deleted data may remain in service backups for up to 14 days while those backups expire.

Cookies and analytics

Menso uses browser storage for your sign-in session and cookies for access to shared replays. Menso counts visits and product steps such as signing up, starting a test and upgrading with Plausible Analytics, which uses no cookies and does not store IP addresses; the site or campaign link that brought your browser to Menso is kept in browser storage and sent with those counts. Menso does not use advertising cookies.

Your choices and rights

You can delete individual runs in Menso. You can also ask Menso for an export of your account information or request deletion of your account data. Menso may ask you to verify that you control the account before completing the request.

For an export or deletion request, email support@menso.io from the address on your Menso account.