Legal · Last updated 20 August 2026

Terms of service

These terms govern use of the cnvs.app website, hosted whiteboard and kanban service, MCP endpoint, REST API, and installed web app.

Using the service

cnvs.app is a free, no-signup service operated by CODER AI. By using it, you agree to these terms and the privacy policy. If you use cnvs.app for an organization, you represent that you have authority to accept these terms for that organization.

You are responsible for the devices, browsers, MCP clients, agents, and network access you use with the service.

Board access and security

A board URL or board ID is a bearer-style access credential. Anyone who knows it can access an unlocked board. You are responsible for sharing it only with intended collaborators and for using an optional write or full read/write lock when appropriate.

Access keys have no recovery mechanism. Do not publish board URLs, IDs, access keys, reviewer fixtures, or MCP tool output that contains confidential content. Actions performed through a connected AI agent are actions made on your behalf; review tool names, arguments, and destructive confirmations before approval.

Your content

You retain ownership of content you submit. You grant cnvs.app a limited, non-exclusive license to host, process, reproduce, transmit, and render that content only as needed to operate, secure, and support the service.

You must have the rights needed to upload and share the content. Do not use cnvs.app to infringe intellectual property or privacy rights, distribute malware, facilitate abuse, publish unlawful content, expose secrets without authorization, or harm other users or systems.

API and MCP use

You may use the public MCP endpoint and REST API within the published schemas, quotas, rate limits, and safety requirements. Do not bypass access locks, probe for private boards, evade rate limits, interfere with availability, automate abusive traffic, or misrepresent destructive operations as read-only.

Limits may change to protect service reliability. Current machine-readable limits are published at /quotas.json, and technical documentation is at /developers.

Retention, deletion, and availability

Boards are purged from the live service after up to 30 days of inactivity, as described in the privacy policy. Manual deletion makes board content unavailable through cnvs.app, and there is no user-facing recycle bin or individual-board recovery. Cloudflare D1 Time Travel may retain historical whole-database state for disaster recovery for up to 7 days on Workers Free or 30 days on Workers Paid. You are responsible for exporting content you need to retain.

The service is provided without a paid plan or service-level agreement. We may change, suspend, rate-limit, or discontinue features, and may remove content or block access when reasonably necessary for security, legal compliance, or abuse prevention.

Disclaimer and liability

The service is provided "as is" and "as available", without warranties of uninterrupted availability, fitness for a particular purpose, non-infringement, preservation, or error-free operation, to the extent permitted by law.

To the maximum extent permitted by law, cnvs.app and its operator will not be liable for indirect, incidental, special, consequential, or punitive damages, or for lost data, profits, business, or opportunities arising from use of the free service. Nothing in these terms excludes liability that cannot lawfully be excluded.

Changes and contact

We may update these terms. The current version and update date are published at this URL. Continuing to use the service after an update means you accept the revised terms.

Questions or notices can be sent to support@coderai.dev. Security reports should follow security.txt.