Legal

Privacy Policy — BioMate Connector

Effective date: July 2, 2026  ·  Last updated: July 2, 2026  ·  support@biomate.ai

This policy governs the BioMate connector — the MCP server and API that lets AI assistants (Claude, ChatGPT, and others) run BioMate workflows on your behalf. It is referenced by the Claude Directory listing, the connector README.md, and the generated tools_manifest.json.

1. Who we are

BioMate AI ("BioMate", "we", "us") operates the BioMate scientific-workflow platform. This policy explains what data the connector sends to BioMate, how we use and store it, who it is shared with, and how long it is kept.

Data controller: BioMate AI  ·  Contact: support@biomate.ai

2. What data we collect

When you use the BioMate connector, we process the following categories of data:

CategoryExamplesSource
Account & identityEmail address, BioMate user ID, organization ID, plan tierYour BioMate account
AuthenticationOAuth 2.1 access/refresh tokens, granted scopes, API keys (hashed at rest)OAuth flow / Settings → API Keys
Request contentNatural-language goals, prompts, and parameters passed to biomate_session / run_workflow; workflow IDs; accessionsSent by the AI assistant on your instruction
Scientific input dataFiles you upload (FASTQ, MRC, SMILES, sequences), S3 paths, database accessionsUploaded by you or fetched at your request
Run & output dataRun status, logs, QC results, structured findings, output files, generated reportsProduced by BioMate cloud on your runs
Usage & billing meteringLLM token counts, vCPU-hours, memory-hours, GPU-hours, storage-hours, timestampsGenerated during execution
Technical metadataIP address, request timestamps, user-agent of the calling surface, error/diagnostic logsAutomatically at request time
We do not intentionally collect special-category personal data. Do not upload identifiable human-subject data unless your account is configured for it and you have the legal basis to do so.

3. How we use your data

We use the data above only to:

We do not sell your data. We do not use your scientific input data or request content to train foundation models.

4. Sub-processors

To run workflows we route data to the following processors, only as needed to provide the service:

Sub-processorPurposeData shared
Amazon Web Services (AWS)Compute (Batch/GPU), storage (S3), cache (ElastiCache)Input files, run data, output files, metering counters
LLM providers (Anthropic, OpenAI, Google)AI reasoning, parameter extraction, report narrativeRequest content / prompts needed for the specific AI step
Lago (usage metering)Subscription and usage billingUser ID, aggregated usage counters

Sub-processors are bound by contract to use data only to provide their service to BioMate. We share data with law enforcement only where legally required.

5. Security & storage

6. Data retention

On account deletion, we delete or anonymize your personal data within a reasonable period, subject to legal retention requirements.

7. Your rights

Depending on your jurisdiction, you may have the right to access, correct, export, or delete your personal data, and to withdraw consent by revoking the connector's access. To exercise these rights, revoke access at biomate.ai/account/connectors or email support@biomate.ai.

8. Children's privacy

BioMate is not directed to children under 16 and we do not knowingly collect their personal data.

9. Changes to this policy

We will update this page and the "Last updated" date when this policy changes. Material changes will be communicated through the product or by email.

10. Contact

support@biomate.ai  ·  biomate.ai/support