AmpSend is built local-first: your work lives in your browser, and data leaves it
only when you take an action that obviously requires it. This page lists exactly what
stays local, what leaves and when, and what we measure.
What stays in your browser
All of the following is stored only in your browser's local storage and is never
sent to our servers:
Your templates, projects, and scenarios
Subscriber data, data extensions, and content blocks
Your Anthropic API key, if you use the AI assistant
Editor settings, theme, and getting-started progress
Rendering happens entirely client-side - the AMPscript engine runs in your browser.
Clearing your browser's site data deletes this work; use Export in the sidebar to keep
a backup file.
What leaves your browser, and only when you act
Share links. Creating one uploads a snapshot of that project or template
(including its scenarios, and the shared blocks and data extensions it needs) to our
storage so your stakeholders can view it. Links are unguessable, marked
non-indexable, and expire 90 days after their last update. To remove one sooner,
email us.
Test sends. The rendered email and the recipient address go through our
send service to Resend
for delivery. Recipients must verify their address with a one-time code first - the
service can only ever deliver self-requested previews.
AI assistant. Your messages, attachments, and the project documents the
assistant reads go directly from your browser to
Anthropic
using your own API key, under your own Anthropic agreement. Our servers never see
your prompts, your templates, or your key.
Usage statistics
We collect anonymous, cookieless usage statistics via
PostHog, hosted in the EU.
Concretely:
Events are feature counts - things like "a template was created" or "a share
link was viewed". Never the content of templates, data, or AI conversations.
No cookies, no persistent identifiers, no session recording, no autocapture -
each visit is anonymous.
Share-link identifiers are irreversibly hashed before they appear in any
statistic, and URL fragments are stripped from every event.
Cookies
None. Neither the site nor the app sets cookies today.
Accounts
AmpSend has no accounts yet. When accounts launch (for cloud sync and hosted AI),
this policy will be updated first, and everything above about local-first defaults
will remain true for local use.
Because there are no accounts and analytics are anonymous, we hold almost nothing
about you. The exceptions are share-link snapshots and test-send verification records
- email us to have either removed, and see the
support page for the process.
Children
AmpSend is a professional developer tool and is not directed at children under 16.
Changes
We will update this page when practices change, with the date above. Material
changes to what leaves your browser will be called out in the product.