Privacy policy.
We collect nothing. Your artwork goes to a model service only if you connect one and ask it to look.
The short version
Silo Systems collects no data about you. None. There is no Topoform account, no analytics, no telemetry, no crash reporting, no advertising identifier, and no Silo server anywhere in the picture. Your artwork and the models you generate never reach us, because there is nowhere for them to go.
One optional feature can send data off your Mac, and it deserves plain language. Topoform lets you connect a model service using your own account and your own key: a cloud model service, a custom endpoint address you enter, or a model server running on your own Mac. It can then suggest art direction for your relief, and the studio chat can propose a build. When you use either, your Mac sends the request to that service under your agreement with it.
If you connect nothing, Topoform makes no network connection of its own. If you connect a model server on this Mac, the traffic stays on your machine. The geometry is always computed on your Mac either way. No model ever generates your relief.
What we don't have, and therefore never see
Because Topoform has no server-side component, none of the following exists anywhere in our infrastructure (which consists of: nothing): your name, email, phone, or address; your IP address, device identifier, or any hardware fingerprint; your artwork, your generated models, or anything derived from them; session timing, feature usage, or behavioural data; crash reports. The app never contacts Silo Systems.
Model services you connect, and what reaches them
A service you add in the Providers section receives data only when you send it something:
- When you press Ask for art direction: the artwork you chose, which can include metadata embedded in the file (a photo can record where it was taken), plus a prompt describing your printer (name, bed size, layer height, analysis pitch), your loaded filaments, the relief mode and print budget, and any artistic notes you typed.
- When you send a message in the studio chat: your messages in that conversation, the current setup (printer, loaded filaments, mode, style, height, rim, print budget, the planned pitch and layer height, and the artwork's file name), and the artwork itself unless you turn off Send the artwork in the chat panel.
Processing, sculpting, and exporting a relief send nothing. Test connection sends no artwork or text, only your key if one is set, to list the models the endpoint offers. A request goes directly from your Mac to the endpoint you configured, authenticated with your key if you set one, and like any web server the endpoint also sees your IP address. Silo Systems is not a party to those requests, receives no copy, and operates no proxy. What the service does with the data is governed by its privacy policy and your account with it. Read it, particularly the parts about whether prompts are retained or used for training.
Remove every connected service and Topoform works fully offline, with every mode, style, and export still available. That is the way to use it if you would rather nothing left your machine.
Where your keys live
API keys are stored in the macOS Keychain, in an app-scoped generic-password item. They are never written to preferences, log files, exports, or any file we or anyone else can read, and they are never transmitted to Silo Systems. Removing a service in the Providers section deletes its Keychain item.
Other outbound traffic you initiate
- App Store updates. When Apple ships a Topoform update, the App Store delivers it. That traffic is between your device and Apple. Topoform is not involved.
- Links you click. If you click an external link inside the app, your default browser handles the request. Topoform is not involved.
Permissions we request, and why
- Files you choose. Read the artwork you open, and write only the 3MF, contact sheet, height map, and report into the output folder you select, via the system file picker. Process previews are written to the app's own temporary folder.
- Outgoing network connections. Used solely to reach the model endpoints you configure. With nothing connected, this permission goes unused.
When you export, Topoform also asks a supported slicer installed on your Mac, if there is one, to test-import the new 3MF. That check runs locally and its result is written into the report. Topoform does not request protected resources beyond those listed above. System permission controls remain in effect at all times.
On-device data you create
Your printer profile, filament rack, and provider endpoints live inside the macOS app container at ~/Library/Containers/com.silosystems.topoform/. Generated models and reports are written only to the folder you pick and remain under your control there. Removing the Topoform app bundle may leave its sandbox container in place; use macOS storage controls to clear it. Files in locations you selected remain until you delete them.
Third-party components
- The relief engine: a deterministic geometry pipeline bundled inside the app. It runs on your Mac and sends nothing anywhere.
- Model services you add: a cloud service under your own account, a custom endpoint you point at, or a model server on your Mac. These receive data only as described above, only after you configure them, and only under your own account.
Children's privacy
Silo Systems collects no personal data from any user, including users under 13. Connecting a third-party model service is an adult decision governed by that service's own terms and minimum-age rules.
Changes
If we ever materially change how Topoform handles data, we will publish an updated version of this page, announce the change prominently in the release notes, and require explicit consent in-app before any new collection begins. The current policy is: Silo Systems collects nothing, and outbound traffic goes only to model services you configure.
Contact
Questions about this policy: admin@ohmslaw.net