Privacy policy
Your information, and what we do with it
Last updated: September 27, 2026
1lev1 is built on consent between partners. The same rule applies to your information: it is used to run your partnerships, it is shown to the people you work with, and it is not sold.
In short
- We collect what you give us to run your rikmas, plus the technical minimum to keep the service working and safe.
- Your rikma partners see what a partnership needs: your name, profile, contributions, hours, shares, votes and messages in that rikma.
- We do not sell personal information and we do not use it for advertising.
- An AI assistant you connect acts as you, only with your permissions, and you can disconnect it at any time.
- You can ask to see, correct, export or delete your information: notifications@1lev1.com.
Who we are
1lev1 (1lev1.com) is a platform for consent-based partnerships, called rikmas. This policy covers the website, its apps, the public API and the 1lev1 connector for AI assistants (MCP).
Questions about this policy or your information go to notifications@1lev1.com.
What we collect
- Account information: name, username, email, password (never stored in readable form), country and language.
- Your profile, as far as you fill it in: photo, skills, roles, ways of working, values, resources you own, and a short bio.
- What you create on the platform: rikmas, missions, tasks, resources, products, votes, conversation messages, wishes, and files you upload to a rikma's library.
- Work and money records: hours you log with a timer, their approvals, sales, profit splits and shares. These are records you keep together with your partners.
- Technical data: IP address, browser and device type, and server logs. Page visits are counted with aggregate analytics that do not build a profile of you.
- If you turn them on: a push notification token, and the public keys of devices you pair with your account.
AI assistants and the API
You can connect an AI assistant, such as Claude, to your account through the 1lev1 connector or an API key. This is what happens when you do:
- The assistant acts as you, with your account's permissions, narrowed by the key's scope if you limited it. It sees what you could see on the site - no more.
- We receive the tool calls the assistant makes and what it sends in them. We do not receive the rest of your conversation with it.
- For every change, AI run and refused call we keep an audit line: which key, which user, which tool, which rikma or mission, the outcome and the duration. Never the contents of the call.
- The assistant cannot approve votes, profit splits, sales or proposals for you. Anything that lands work, money or an obligation on another member still waits for that member.
- You can disconnect at any time: Settings, API keys. The key stops working immediately.
What the AI provider does with your conversation is governed by that provider's own privacy policy, not this one.
What we use it for
- Running the platform: showing your rikmas, computing shares, carrying consent processes to the end, and sending the notifications and emails you asked for.
- Suggesting missions and resources that match your skills. These matches are computed on our servers.
- Translation: text that members wrote may be machine-translated for readers of other languages. A translation is always labelled as one, and the original is one tap away.
- AI features: when you use planning, the concierge, the assistant or translation, the relevant text is sent to an AI model provider to produce the result.
- Security: preventing abuse, rate limits, and investigating errors.
We do not sell personal information, we do not use it for advertising, and we do not let the providers below use it for their own purposes.
How long we keep it
We keep your information as long as your account is active.
Records that belong to a partnership - hours, sales, profit splits, votes - are also your partners' records, and their shares are computed from them. After you leave or delete your account they may remain in the rikma's history. On request we replace your name there with an anonymous label.
Server logs are kept for a limited period and then deleted.
Security
All traffic is encrypted (HTTPS). Passwords and API keys are stored only in hashed form. The sign-in token is not readable by scripts on the page, and the database accepts requests only from our own servers.
No system is perfectly secure. If a breach affects your information, we will tell you.
Your choices and rights
- See and correct most of your information yourself, on your profile and settings pages.
- Ask for a copy of your information, or for it to be corrected or deleted.
- Disconnect AI assistants and revoke API keys at any time.
- Turn off notifications and emails you do not want.
Write to notifications@1lev1.com and we will answer within 30 days.
Changes to this policy
When we change this policy we update the date at the top. If a change is significant, we will tell registered members before it takes effect.
Contact
Questions, requests and complaints: notifications@1lev1.com