Privacy notice
This notice explains the limited information Agent Rescue Desk collects to evaluate and deliver rescue cases. Last updated July 27, 2026.
Information collected
The public intake collects your name, work email, optional company or project name, technical platform, problem description, desired outcome, urgency, optional public reference URL, acceptance of the service terms, submission time, and a short campaign-source label when one is present in the page URL. Other URL query parameters are not stored as the intake source. A direct agent-marketplace purchase instead collects the submitted platform, failure, target outcome, urgency, optional public reference URL, authorization and terms confirmations, and a short one-way purchase-nonce fingerprint. A credential-pattern guard replaces a field rather than storing it when that field appears to contain a secret, and URL query strings and fragments are removed from public references. The private case portal also stores case messages, status, and payment metadata. If a case is accepted, additional technical records may be handled under the agreed scope.
Public MCP tools
The public production-triage MCP endpoint processes submitted symptom summaries transiently to produce a response. Agent Rescue Desk does not store or intentionally log MCP request bodies. Hosting and security infrastructure may process ordinary request metadata such as time, IP address, user agent, route, and status. Do not submit credentials, secrets, regulated data, or unrelated customer data to the MCP endpoint.
How information is used
Information is used to assess fit, communicate about the case, deliver accepted work, maintain security and service records, process payment, prevent abuse, and comply with applicable law. It is not sold or used to build advertising profiles.
What not to submit
Do not place passwords, API keys, tokens, private keys, payment-card data, health information, government identifiers, regulated personal data, or unrelated customer data in the public intake. Accepted cases receive separate instructions for temporary, least-privilege access.
Service providers
Hosting, form-processing, agent-marketplace, email-delivery, payment, and security providers may process the minimum information necessary to operate the service under their own security and privacy terms. A marketplace necessarily processes a paid request and payment metadata before forwarding the request to Agent Rescue Desk. Information may also be disclosed when required by law or necessary to prevent fraud or harm.
Retention and deletion
Declined intake records are normally retained for up to 90 days. Accepted case and transaction records may be retained longer for delivery, security, accounting, dispute resolution, and legal obligations. A deletion request may be made by replying to a case communication; some records may need to be retained where law or legitimate security needs require it.
Security
The service uses access controls and scoped technical systems intended to protect case information. No internet transmission or storage system can be guaranteed completely secure, so customers should share only the minimum required information.
Private case links
Each portal link includes a random access key. Anyone with the complete link may be able to read and post to that case, so keep it confidential and do not place it in public issue trackers, screenshots, or chat rooms.
Updates
This notice may be updated as the service changes. The date above identifies the version that applies to a submission.