Trustnet

Privacy Policy

In force from 26 September 2026 · updated the same day to cover connected assistants

Trustnet is a private recommendation network. It is made and run by one person, Dan Shapiro, in Israel. This policy says what is stored, who else it passes through, and how to have it deleted. It is written in plain English because a policy nobody reads protects nobody.

1 · What is stored

Your account

Your name, and the email address or phone number you signed in with. A colour for your avatar. Anything you choose to add to your profile, such as a location or a short description.

Your circles and the people in them

The circles you create, and for each person you add: the name you give them, and the way you chose to reach them — a phone number, an email address or a LinkedIn address. You may also record why you trust them.

Most of this is other people's information, and you are the one entering it. Those people did not fill in a form here. Add someone only if you would be comfortable messaging them yourself, because that is exactly what Trustnet does with what you enter — it opens your own WhatsApp or mail app with a message ready for you to send.

If someone asks you to remove them, remove them. If they write to us instead, we will delete what we hold about them and tell you that we did.

Your library and your questions

The recommendations you save — the place, person or thing, your note, your rating, your tags and your categories. The questions you ask your circles, and the answers that come back. Lists you build and send.

Things you choose to hand over

What is not stored

There is no advertising, no ad network, no tracking pixel and no analytics product in Trustnet — not Google Analytics, not Facebook, not anything else. No cookies are set for tracking. Your browser keeps a few small values so you stay signed in and so the app remembers what you have already seen; those live on your device.

2 · Where it is kept

In a Postgres database run by Supabase, in their ap‑southeast‑1 region, which is Singapore. The Trustnet web page itself is served by Netlify.

Access to your rows is enforced by the database itself, per account, not only by the app in front of it.

3 · Who else your information passes through

These are the only third parties involved, and this is everything each one receives.

WhoWhat they receive, and why
Meta — WhatsApp The messages Trustnet helps you send: sign-in, invitations, questions to your circles and answers back. Meta receives the phone numbers involved and the text of those messages, and handles them under their own terms.
OpenAI Text, so a machine can read it: chat text you paste into the importer, pages you ask Trustnet to fetch, your search wording and entries from your library when you search or build a list, and the text of messages sent to the Trustnet WhatsApp number. Sent through the OpenAI API, which does not train models on it.
Google — Places The name of a place and a location hint, when Trustnet fills in details of somewhere you saved. No information about you is sent.
jsDelivr Two open-source libraries are loaded from this network when the page opens, so it sees your IP address and browser, as any website you visit does. It receives nothing from inside Trustnet.
Netlify & Supabase They run the hosting and the database, so they hold what is described above as their infrastructure normally does.

Nothing is sold, and nothing is shared for advertising. No one receives your information for their own purposes. There is no arrangement of any kind under which Trustnet data is passed to anyone not named in this table.

4 · Who can see what, inside Trustnet

Your library is yours. Another member sees one of your recommendations when you send it to them — answering a question they asked, or sending them a list you made.

A circle is a list of people you chose. It is not shown to the people in it and not shown to anyone else. There is no public profile, no feed, and no way for a stranger to browse what you have saved.

5 · Connecting an assistant

You can connect an AI assistant — Muse, to begin with — to your Trustnet account, from the connect page. You do not have to, nothing is connected unless you do it, and you can disconnect from the same page at any time.

What a connected assistant can reach

What it cannot

What the assistant's own maker sees. Whatever your assistant reads from Trustnet passes into that assistant — for Muse, that means Meta. Your library, the wording of your questions and the answers you were given are handled from that point under their privacy policy rather than this one, exactly as anything else you tell an assistant is. Connect one only if you are content with that.

Nothing reaches any assistant unless you connect it yourself.

The connection is a token, held only as a sha256 in the same way a password would be. It records when it was last used, so the connect page shows you whether something is still using it.

6 · How long it is kept, and how to have it deleted

What you save is kept until you ask for it to be removed. Write to the address on the help page and say what you want deleted — a single entry, a circle, or your whole account. A whole account, including everything in it, will be deleted within 30 days, usually the same week.

Ask in the same message and you will be sent a copy of your library first.

You may also ask what is held about you and ask for anything wrong to be corrected. There is no form to fill in; write and ask.

7 · Children

Trustnet is not intended for anyone under 16, and accounts are not knowingly created for them.

8 · Security, honestly stated

Connections are encrypted, the database enforces per-account access rules, and there are no passwords to steal because Trustnet does not use any. But this is a small product in early testing, run by one person. It is not the place for anything you would be seriously harmed by losing or revealing.

9 · Changes

If this policy changes in a way that matters, the date at the top changes and active members are told. Older versions are in the project's public version history.

10 · Contact

Everything above is handled by one person, and you can reach him from the help page. Questions about your information, deletion requests, and complaints all go to the same place and get a real answer.