Legal
Privacy policy
Last updated 30 September 2026
Pipkin is a desk display that shows how much of your Codex and Claude Code allowance is left, fed by a command-line tool on your computer (the CLI). Pipkin is run by Damian Worsdell, a sole trader in Western Australia, Australia (“we” and “us”). This policy explains what the website, the CLI, the display and kit orders handle, and why. Questions go to privacy@pipkin.io.
The short version
- The CLI and the display run on your computer and your desk. The CLI connects only to OpenAI and Anthropic, to read your usage, and to GitHub when you install or update it. Nothing comes to us: there is no Pipkin server, no account and no telemetry.
- The website counts visits with Cloudflare Web Analytics, which sets no cookies.
- If you buy a kit, we use your details to deliver and support your order.
The website
Hosting. pipkin.io is served by Cloudflare. To deliver pages and protect the site from abuse, Cloudflare processes technical information about each request, such as your IP address, browser and the page you asked for. See Cloudflare’s privacy policy.
Analytics. We use Cloudflare Web Analytics to count visits. It records page views and general information such as the page, the referring site, browser and device type, country and how quickly the page loaded. It doesn’t use cookies or other storage in your browser to recognise you, and we see only totals, never individual visitors.
Your browser. If you pause the page’s animations, your browser remembers that choice in its local storage. It stays on your device. The site has no accounts, sign-in or contact forms, and doesn’t use cookies for advertising or tracking.
Installing. The install commands fetch a script from pipkin.io, which then downloads the CLI from GitHub. GitHub handles that download under its privacy statement.
The CLI
Once installed, the CLI runs a small background helper from when you sign in to your computer, and checks your usage every few minutes. It reads the Codex and Claude sign-ins already saved on your computer, and asks OpenAI and Anthropic directly for your usage over an encrypted connection. Your sign-in details are held in memory only, are sent only to their own provider, and never appear in Pipkin’s files or output. Those requests are between you and each provider, under their own terms and privacy policies.
To estimate each day’s spend, the CLI also reads token counts, model names and timestamps from the Codex and Claude session logs on your computer. It doesn’t keep or send the text of your conversations.
The CLI keeps its latest readings, settings and a small log in its own folder: ~/Library/Application Support/Pipkin on macOS, ~/.local/share/pipkin on Linux and %LOCALAPPDATA%\Pipkin on Windows. It sends usage figures to your Pipkin over USB, and never sends anything to us. It contacts GitHub only when you install it or run pipkin update. pipkin uninstall stops the helper, stops it starting when you sign in, and deletes its folder.
The display
Pipkin has no internet connection: its firmware doesn’t use Wi-Fi or Bluetooth. It receives usage figures from the CLI over USB, keeps them in memory, and remembers only which page you last chose.
Orders
Kits aren’t on sale yet. When they are, we’ll collect your name, email address, delivery address and order details to take payment, deliver your kit, support you and keep the records the law requires. Payments will be handled by a payment provider, and we won’t see or store your full card details. We share your delivery details with the courier that delivers your kit. We’ll keep order records for as long as tax law requires, which in Australia is generally five years. We’ll email you about your order, and send you news only if you ask for it.
If you email us, we keep your email address and message so we can reply and, for orders, support you. Email to pipkin.io is received by Cloudflare and forwarded to our email provider.
Who else handles information
The services named above (Cloudflare, GitHub, our email provider, and once kits are on sale our payment provider and couriers) may handle information outside Australia, including in the United States and, for deliveries, the country your kit is sent to. We keep order records and emails with these providers and in our own records, and take reasonable steps to protect them from misuse, loss and unauthorised access. We don’t sell personal information or share it for advertising.
Your rights
You can ask what personal information we hold about you, and ask us to correct or delete it, by emailing privacy@pipkin.io. We’ll delete it unless the law requires us to keep it, as with order records, and we’ll reply within 30 days. If you have a concern about how we’ve handled your information, email us and we’ll look into it and reply within 30 days. If you’re not satisfied, you can contact the Office of the Australian Information Commissioner. Depending on where you live, you may have further rights under your local law, including to complain to your local data protection authority.
Pipkin isn’t aimed at children, and we don’t knowingly collect information about them.
Changes
If we change this policy, we’ll update this page and the date at the top. For a significant change that affects customers, we’ll also tell you by email.