Privacy Policy
Miller Family MCP · northmark.ai · Effective 6 September 2026
The short version: these are private servers for one family's own collections. Signing in with Google tells us who you are so we can check you are on the invitation list and decide what you are allowed to do. That is the only reason we ask. No ads, no tracking, nothing sold or shared with data brokers.
Who we are
Miller Family MCP is a set of private, self-hosted Model Context Protocol (MCP) servers operated by Matthew Miller for the use of his family and invited friends. They let an AI assistant work with household collections — a wine cellar, a book library, a record collection, and related tools. It is not a commercial product and is not open to the public. You can reach us at privacy@northmark.ai.
What we collect
- Your Google account basics. When you sign in with Google we
receive your email address, your Google account identifier, and your basic
profile (name and photo). We request only the standard
openid,emailandprofilepermissions. We have no access to your Gmail, Drive, Calendar, contacts, or any other Google data, and we never ask for it. - Your sign-in records. The tokens that keep you signed in, stored so you are not asked to sign in again every few minutes.
- The collection data itself. Wine bottles, books, records and similar entries, along with changes made to them — for example who moved a bottle or catalogued a book, and when.
- Ordinary technical logs. Our hosting providers record standard request logs (IP address, timestamps, which tool was called) used for security and debugging.
Why your email address matters here
On these servers your email address is not a marketing contact — it is the key to the door. Every request is checked against an invitation list, and your address also determines what you are permitted to do: read-only, read and write, or administrative. If your address is not on the list, the server refuses the request. We do not send marketing email, and there is nothing to unsubscribe from.
What we never do
- No advertising and no ad networks.
- No selling or renting personal information — to anyone, ever.
- No tracking you across other websites.
- No use of your data to train machine-learning models.
Where it is stored
Data is held in Google Cloud (Firestore, and Cloud Storage for book cover images) in the United States. Traffic is encrypted in transit, and access is enforced on the server, not in the client.
Service providers
These servers run on infrastructure from Google Cloud (hosting, database, and the sign-in that verifies your identity) and Cloudflare (the gateway through which assistants connect, plus network security). Each processes data only as needed to provide those services.
Connections to other services
Some of these servers read from or write to accounts on outside services — CellarTracker for wine, Discogs for records, Tableau for analytics. Those connections use the operator's own accounts, not yours; you are never asked to link an account of your own, and your personal information is not sent to them. Anything those services do with the operator's account is covered by their own policies.
Your data and deletion
Sign-in records are kept only while they are valid. Collection data is kept for as long as the collection exists, because it is a household inventory rather than a personal profile. If you would like your account removed and your name detached from the entries you created, email us and we will do it.
Children
This is a private family service, and children in the operator's household use it with their parents' knowledge and permission. It is not offered to the public and no one can gain access without being added to the invitation list by the operator. We collect nothing from a child beyond the sign-in basics described above.
Changes
If this policy changes in a meaningful way, we will update this page and the effective date above.