Hesitating privacy
What happens to your decision?
Hesitating is designed to help with an everyday stuck moment without requiring an account. Saving and syncing are opt-in.
Processing
When you ask for a decision, the situation and any context you provide are processed by TypeSafe/Jev so Hesitating can receive structured judgments. Hesitating applies its own safety rules, clarification flow, and final output policy around those judgments.
Pasted public URLs are detected automatically. Hesitating may send the URL, the decision context needed to understand it, and a small structured extraction request to OpenRouter and its web-search tools. The page is treated as untrusted data: page instructions cannot change Hesitating's safety or decision policy. Failed links produce uncertainty, not invented facts.
If you attach images, the image bytes are sent to an OpenRouter vision model only for short-lived extraction of visible text and relevant facts. The normalized observations are then passed to TypeSafe/Jev with your words; raw image bytes are not saved in decision history or analytics. Hesitating does not infer sensitive private attributes from images.
When an ordinary decision needs a tailored clarification, Hesitating may send the decision and the context you supplied to OpenRouter to draft one question and its answer choices. OpenRouter does not choose the final action; Hesitating validates the draft and applies its own safety and decision policy. If that service is unavailable, Hesitating uses a small deterministic clarification template. If Jev cannot make a structured judgment, the app returns an explicit retryable provider failure and never manufactures a verdict or confidence.
Provider terms and privacy policies can change. Review the current policies of TypeSafe and OpenRouterbefore using the service for sensitive information.
What is stored
Anonymous decisions are not saved by default. If you choose “Save locally”, the decision stays in this browser until you clear it or browser storage is removed. Anonymous product analytics contain operational events and counts, never raw decision text, context, email addresses, auth tokens, or API keys.
If you sign in and choose to sync, saved decisions, clarification history, outcomes, and the coarse environment context used for that decision are stored with your account. Cloud history remains until you delete it or delete the account. You can export or delete synced data from Saved.
Account and retention
Magic links expire after ten minutes. A successful sign-in consumes the selected link and invalidates other outstanding links for that email. Sessions expire after thirty days; signing out removes the current session. Deleting an account removes its decisions, outcomes, sessions, and outstanding sign-in links.
Saved cloud history is retained until you delete it. Logs and analytics are designed to contain only operational metadata, such as timing, request status, action category, and failure type. Hesitating does not put private decision text in share URLs.
Use good judgment
Hesitating is not a clinician, lawyer, financial adviser, emergency service, or substitute for a trusted person. Immediate-danger situations are routed to emergency or trusted support instead of receiving an everyday verdict; ordinary choices remain in the normal flow.
Contact
Questions about privacy, deletion, or the service can be sent to info@hesitat.ing.