Last Updated: July 06, 2026
At Tessera, we believe that your business data belongs entirely to you. Our application is designed from the ground up to follow a local-first architecture, ensuring that no sensitive operational files, client details, or API keys are ever stored or processed on third-party cloud servers.
Tessera does not host cloud databases. All databases, configuration files, SQLite activity stores, and workspace version records created while running playbooks are stored directly on your computer's local hard drive.
When you add API keys for AI models (like OpenRouter, OpenAI, or Anthropic) or connect external business services, Tessera does not save these credentials in plaintext config files. Instead, all credentials are encrypted and stored in your computer's built-in, native security system (Apple Keychain on macOS or Credential Manager on Windows).
When you log into Tessera using Google or Microsoft accounts, the login tokens are managed securely on your device. Tessera uses these tokens solely to authenticate your local session and authorize local Workspace API tasks (such as syncing sheets or calendar schedules).
Our static download website does not use tracking cookies, advertising trackers, or fingerprinting scripts. We do not gather or sell any personal data about your visit.
Since Tessera is open-source and runs entirely client-side, we cannot change the privacy of your local files through remote updates. Any future changes to this policy will be documented on our GitHub repository.