Where each kind of data goes
Identity always leaves
Signing in and creating a workspace callauth.ve.ai and us.api.ve.ai. Your
email address, your workspace and who belongs to it are held server-side. Ve
has no offline account, so this happens on the first request the app makes.
Voice and dictation leave
Typed chat runs against a process on your own Mac. Speaking does not. Both the Voice button and the Dictate microphone open a connection to Ve’s servers and stream your audio there.Prompts go to your model provider
Whatever you type in chat reaches the provider you connected, under your own account, the same way it would in that provider’s own app. See Connect a model.Prediction sends a screenshot
Tapping Fn asks Ve to draft something for you. To do that it captures a screenshot, the address of the page and the text on it, and sends all three to Ve’s servers. Fn works inside Ve only, until you turn on Global inSettings > Shortcuts. Global lets the key fire in any application, which means
the screenshot can be of something other than Ve. It is off on a new install and
needs macOS permissions you grant deliberately.
Fn is a single key with no modifier, so it is easy to press by accident. You can
change it on the same page.
Dictation and voice context use the same connection but drop the page text. They
still send the screenshot, the window title and the page address.
What Ve records about your browsing
Once you are signed in, Ve records the pages you visit and the content of those pages into a database on your Mac. This is on by default.Settings > Privacy has no switch for this. Incognito is the way to browse
without it being recorded.
Controls in Settings > Privacy
Under Data on the same page:
- Clear browsing data removes history, cookies, cache and more.
- Site permissions covers per-site location, camera, microphone and cookie access.
- Certificates opens the trusted certificates held in your macOS Keychain.
Saved passwords
Saved passwords stay on your Mac, in Chromium’s password store behind the macOS keystore. The model never receives one. Passwords are resolved locally and typed into the page. A stored login is only offered when its saved origin matches the site you are actually on, so a lookalike domain cannot claim it.The Cloud sync row in
Settings > Password does not sync anything. Your
vault is stored on this device.