Ambera

Terms of Service

Terms of Service

Last updated
September 4, 2026
Effective
June 28, 2026

These terms govern your use of two products. Ambera is the consumer mobile application — a personal energy tracker, with a website at ambera.app. Ambera Forge is the product for people who build software with AI coding agents — a solo builder or a team — at forge.ambera.app: it reads the repository you connect and the application you deployed and reports what it found as counts you can check; Signal, a feature inside it, reads the market for what you are building every week; and, when you ask it to, Forge opens a fix as a pull request in your own repository. By creating an account or otherwise using either product, you agree to these terms.

Most sections apply to both products. Where a section is specific to one — for example, the consumer subscription terms that apply only to Ambera, or the workspace, billing and credit terms that apply only to Ambera Forge — it says so. When you use Ambera Forge on behalf of an organization, you confirm that you have authority to accept these terms for that organization and to bind it to them.

01

The service

Ambera is a tool for tracking the energy you spend and recover. Ambera Forge is an instrument for software built with AI agents: it reads the repositories your workspace connects — their history, their reviews, their source and their configuration — and the deployed application you point it at, and reports what it found as counts over stated samples, with example paths; it reads the public web for the market around what you are building and reports that as a brief with its sources and a versioned market-fit number; and it can open a pull request in your repository that proposes a fix for one finding, which you review, merge or close. Neither product is a medical device, a diagnosis tool, or a substitute for professional advice from a clinician, therapist, or any other licensed practitioner. If something in your body or mind is not right, please talk to a person qualified to help.

We may add, change, or remove features over time. We will give reasonable notice for changes that materially reduce the functionality you are paying for.

02

Your account

You are responsible for the account you create — for keeping your credentials safe, for the activity that happens under it, and for the accuracy of the information you provide.

You must be at least 16 years old to use Ambera or Ambera Forge. If your local law requires a higher age of digital consent, that age applies to you.

03

Organizations and workspaces (Forge)

Ambera Forge is used inside a workspace, which belongs to an organization — a company, a team, or one person building alone. A workspace is created by an owner or admin, who can invite other people to join it as members. Sign-in to Forge is by magic link, Google, or GitHub — we never ask you to manage a password.

The organization, acting through its owner and admins, is responsible for managing its own membership — who is invited, who is removed, and what role each member holds — and for the API keys and connected AI clients its members create, which act with that member’s permissions. The organization is also responsible for its workspace content: the repositories it connects for reading, the deployed application it points the launch check at, the readings, fix pull requests and filed-action records that result, the Signal subjects it describes and the companies it asks Forge to watch, and the share links it creates — and for ensuring it has the right to connect those repositories, to have pull requests opened in them, to read that deployed application, and to file issues into the tracker it points Forge at.

When you accept these terms on behalf of an organization, you warrant that you are authorized to bind that organization, and the organization — not you personally — is the customer under these terms for Ambera Forge.

04

Acceptable use

Ambera is provided for your personal use, and Ambera Forge for the internal use of your organization. With either product, you agree not to:

  • Reverse engineer, decompile, or attempt to extract the source code of the app, except to the extent the law expressly permits.
  • Resell, sublicense, or use the service to build a competing product.
  • Use the service in any way that violates the law, infringes someone's rights, or harms other users.
  • Attempt to access another person's account, or to circumvent security or rate-limiting measures.
  • Use automated means to scrape or extract data from the service in bulk.

For Ambera Forge specifically, you also agree not to use it to surveil, rank, or evaluate individual engineers. Forge is built to resist that use — its team-facing surfaces report counts and distributions, never a per-person ranking of review load (see the reading commitments below) — but the intent matters too: Forge is for measuring work, not for measuring people. You further agree to point the launch check, and Autopilot’s nightly read, only at an application you operate or are authorized to test — the read is passive and requests nothing a visitor’s browser would not, but it is still your responsibility to have the right to ask; and to ask Signal to watch companies, products and arguments, never individual people.

We may suspend or terminate access if your use causes meaningful harm to the service or to other users. Where the circumstances allow it, we will tell you what happened and give you a chance to fix it first.

05

Subscriptions and payments (Ambera)

Ambera, the consumer app, offers a free tier and a paid Premium subscription. The free tier is a real product, not a trial — manual logging, the today and 7-day balance, the cumulative chart, the imbalance nudge, setting an arc — the shape of a week or a sprint — with planned activities, per-activity push reminders for those planned activities, the daily energy check-in that fills in a day you didn't log, writing daily reflections, voice-to-text dictation in long-form fields, the "about you" pages, and the suggestions Ambera draws from your own logging rhythm — the activities you tend to repeat on a given day, offered back so you can add them in a tap — are free and remain free. Premium adds the AI assists: tailored draft suggestions, note-to-activity prefill, the "Describe your day" chat that turns a free-form description of a stretch of time into a list of proposed ledger entries you can edit before saving, reflection gap-fill that proposes activities your evening reflection mentions but you haven't logged, personalized intensity calibration, the weekly reflection synthesis that reads back the week's reflections and ledger as a short paragraph, the personalized activity audit that surfaces which activities have most reliably restored your balance, the patterns synthesis that reflects the trends across your weeks back in a sentence, and the per-arc summary that reads your arc's intended and emerging shape back as a short observation.

Ambera Premium subscriptions are billed through the Apple App Store or Google Play, depending on your platform. The platform store, not Ambera, processes your payment and handles refund requests. Subscriptions renew automatically until you cancel them through your platform's subscription settings. This is separate from Ambera Forge, which is billed on the web through Stripe — see the Forge billing section below.

Pricing displayed in the app at the time of purchase is the price you pay. If we change Premium pricing in the future, the change will apply to renewals beginning a billing cycle later, with notice before that renewal.

You can cancel a Premium subscription at any time through your platform's subscription settings. Cancellation stops future renewals; it does not refund the current billing period, and Premium access continues until the period you have already paid for ends. Subscription fees are otherwise non-refundable from us, and we do not offer pro-rated returns for the unused portion of a period. Any refund of a charge already made is at the discretion of the platform store under its own policy.

Nothing in this section overrides mandatory consumer-protection rights that apply to you under the law of the country you live in.

06

Subscriptions and billing (Forge)

Ambera Forge is sold and billed directly on the web through Stripe, our payment processor — separate from the consumer Ambera subscription, which is billed by Apple or Google through their app stores. Forge offers a free tier; three subscription plans — Solo, for one person building alone, and Team and Premium, for organizations; a one-time purchase called the Launch Audit, which covers a single repository for a fixed 90-day window and then ends on its own; and credit top-ups. The Launch Audit is not a subscription and nothing about it renews.

Team and Premium are billed per covered contributor, never per seat. A covered contributor is someone who authored or reviewed a pull request Forge analyzed in the last 30 days. Each of those plans includes an allowance of covered contributors in its base price, with a per-contributor rate above that allowance. Viewers are free, repositories are not metered, and bots are excluded from the count. The count is measured from the repositories themselves, and the billing read returns a number — never the list of people behind it. Solo is a flat monthly or annual price for one workspace and is not metered on contributors.

Credits meter the work that consumes a model: a Signal cycle, seeding a Signal subject, an agent-assisted fix, and each watched company beyond the number a cycle includes. Everything deterministic is never metered and never will be — the repository read and its nightly re-reads, the pull-request check, the launch check, deterministic fixes and the market-fit arithmetic — because a meter on re-reads would switch the instrument off for billing reasons. Every new workspace receives a one-time welcome grant sufficient for one idea to be seeded and read once. A Solo subscription grants credits on every paid invoice, the Launch Audit grants credits with the purchase, and top-up packs can be bought at any time; the schedule of costs and grants is published on the pricing page and inside the product before anything is charged. Credits are a unit of work, not money: they have no cash value, cannot be withdrawn or transferred, do not expire while the workspace exists, and are forfeited when the workspace is deleted. There is no overdraft — when the balance cannot cover a cycle, Signal pauses that subject and says so on its page rather than running it. A run that fails after being charged is refunded in credits. Credits already used are not refundable except where the law requires otherwise.

Current prices, allowances, rates and the credit schedule are published on the pricing page, and the exact amounts shown at the time of purchase are the amounts that govern. Subscriptions bill monthly or annually, at your choice.

A limited founding price applies to the first 100 Team workspaces: they keep the launch base price for as long as their subscription lives. It discounts the base price only — the per-contributor rate is the same for everyone — and it is a loyalty arrangement, not a time-limited sale.

Subscription charges renew automatically — monthly or annually, depending on the billing interval you chose — until the subscription is cancelled. You can change plans or cancel at any time through the Stripe customer portal, which we link from the workspace's billing settings. When you cancel, access continues until the end of the period you have already paid for, and the subscription is not renewed after that. A Launch Audit simply ends when its window lapses; the readings it produced remain available to the workspace, and so does the closing report.

The price shown at the time you subscribe or purchase is the price you pay for that period. If we change Forge pricing in the future, the change applies to renewals beginning a billing cycle later, with notice before that renewal; a founding price is not withdrawn by a general price change. As with the consumer subscription, fees already paid are non-refundable except where the law requires otherwise, and we do not offer pro-rated returns for the unused portion of a period.

The organization is the customer for paid Forge plans and is responsible for its charges. Nothing in this section overrides mandatory consumer-protection rights that may apply under the law of the country you live in.

07

What Forge reads, what it writes, and what it will not show (Forge)

Ambera Forge reads repositories, not people. It reaches GitHub through a GitHub App an administrator of your organization installs on the repositories it chooses, with short-lived tokens narrowed to each job, and what it produces are readings: counts over stated samples, with example file paths. It writes to your repository in exactly two ways, both of which you can see and undo: a fix — a branch and a pull request, opened when a member asks or when the workspace has switched Autopilot on for deterministic fixes — and, with the pull-request check on, a check result and one comment on your pull requests. Forge never pushes to your default branch and never merges anything; whether a proposed fix lands is your decision, made in your repository. Two commitments are structural. First, Forge holds no personal energy data of any kind — it is a separate service from the Ambera mobile app, with its own sign-in and its own database, and it has no path to anyone’s personal ledger. Second, team-facing surfaces report counts and distributions, never a per-person ranking of review load, and the billing count is likewise returned as a number rather than as a list of people.

These commitments are published in more detail at forge.ambera.app/privacy-for-engineers, and the Privacy Policy describes exactly what Forge collects, what it sends to a model and when, and where it goes.

08

Your content

The ledger entries, notes, arcs, planned activities, daily check-ins, daily reflections, and the "about you" pages you fill in are all yours. You retain all rights to them. When you connect an integration, the activity rows we create from your Google Calendar or Linear data are treated the same way — they are your content, you control them, and you can edit or delete them at any time.

You grant us a limited license to host, transmit, process, and display that content solely for the purpose of operating the service for you. This includes using a third-party AI model provider to process and personalize the content you see — for example, generating activity suggestions from your intention and your "about you" pages, calibrating intensity estimates to your own history, and producing reflections and recommendations tailored to your patterns. AI suggestions are always user-initiated: you tap a button to ask for them, you can edit or discard what comes back, and nothing is silently inferred onto your ledger. We do not use your content to train general-purpose AI models, to advertise to you, or to advertise on someone else's platform. The Privacy Policy describes exactly what is sent to the AI provider and when.

In Ambera Forge, the workspace content is what the instrument produces and records: the readings of the repositories your organization connects, the records of fixes proposed and actions exported into your organization’s tracker, the Signal subjects — your description in your own words, the watch list you confirmed, the briefs, bets and decisions — and the share links and settings around them. That content belongs to the organization, and the organization controls it. Your repositories themselves stay where they are: Forge reads them through the GitHub App and writes only what the previous section says — a branch and a pull request you are free to close, and a check on your pull requests. Any code Forge proposes into your repository is yours the moment it is there; we claim no rights in it, and GitHub’s terms govern the pull request as they govern the rest of the repository. The issues Forge files are created in your organization’s own tracker, where that tracker’s terms apply.

Two things Signal shows are not your content, and stay when your workspace goes. The shared market catalog — what a company, product or argument was observed to say or do, as dated entries each carrying the public web address it was read from — is a fact about the market that every workspace watching the same company reads, and it is what the public sector and company pages render; nothing you typed enters it. And a company that two unrelated organizations both watch may be placed in a public sector on that strength alone; nothing about who watched it is stored or shown.

You can export or delete your content at any time. Deletion handling is described in the Privacy Policy.

09

Intellectual property

Ambera and Ambera Forge, including the applications, websites, designs, names, logos, and underlying software, are owned by us and protected by copyright and trademark law. These terms do not transfer any of those rights to you. You may use the service as intended; you may not copy, redistribute, or pass off the product as your own. The free command-line reader we publish on npm is licensed under the terms in its own package; those terms, not these, govern it.

10

Third-party services

Ambera and Ambera Forge integrate with external services. For Ambera: Google Calendar, Linear, Apple Health, the App Store, Google Play, RevenueCat, PostHog (product analytics), and a third-party AI model provider used to power the Premium AI assists. For Ambera Forge: GitHub, which Forge reads connected repositories through and opens fix pull requests in; the issue tracker your organization exports audit actions into — Linear, Jira, GitHub Issues, or ClickUp — which Forge only files issues into, never imports work from; Stripe, which processes Forge payments on the web, and Fakturoid, which issues the invoices; OpenRouter, which routes Forge’s model requests to Anthropic and to US hosts running DeepSeek’s open-weight model, and carries Signal’s web searches; and the public websites of the companies you ask Signal to watch and the deployed application you point the launch check at, both of which Forge reads as an ordinary visitor would. Your use of those services is governed by their own terms. We are not responsible for their availability or for actions they take with respect to your account on those platforms, and a company page Signal read may change or disappear after the reading was taken.

11

Disclaimers

Ambera and Ambera Forge are provided "as is" and "as available." To the maximum extent the law permits, we disclaim implied warranties of merchantability, fitness for a particular purpose, and non-infringement.

We do everything we reasonably can to keep the service running, but we do not guarantee that it will be uninterrupted, error-free, or that it will always be available. Ambera observes your patterns, and Ambera Forge reads repositories and reports counts over stated samples; neither predicts the future or replaces clinical, managerial, or engineering judgment, and nothing either shows you should be treated as medical advice.

A Forge reading is a measurement of a repository, or of what a deployed application handed to one request, at one moment, over the sample it states. It is not a security audit, a certification, or a guarantee: a count of zero means the detector observed nothing in what it read, never that nothing exists — and every reading says what it did not read. The launch check is passive; it sees what a visitor’s browser receives and does not test what the browser did not receive. A Signal brief is written by a model from sources it cites, and every line of it carries a tag saying whether it is a fact, a company’s own claim, a user’s opinion or an inference; the market-fit number is a versioned function of counts, recomputed over history when its definition changes, and it can fall. None of it is investment, financial or business advice, and no decision you take on it is ours. Text a model wrote — a brief, a synthesis, a proposed fix — can be wrong; a pull request Forge opens is a proposal you are responsible for reviewing before you merge it, and a fix marked review-before-merge (for example, enabling row-level security, which denies every row until you write policies) will change how your application behaves.

12

Limitation of liability

To the maximum extent the law permits, Ambera is not liable for indirect, incidental, special, consequential, or punitive damages, or for any loss of profits, revenue, data, or goodwill arising from your use of the service — including from merging a pull request Forge proposed, or from a decision taken on a reading or a brief.

Our total liability to you for any claim relating to the service is capped at the amount you paid us in the 12 months immediately preceding the event giving rise to the claim.

Nothing in these terms limits liability that cannot be limited under the law that applies to you — including, in the EU, liability for gross negligence, intent, or for harm to life and health.

13

Termination

You can stop using Ambera or Ambera Forge and delete your account at any time, for any reason. An organization can close its Forge workspace through its admins; unused credits are forfeited with it. Pull requests Forge opened stay in your repository, yours to close. We can terminate or suspend your access if you materially breach these terms or if we are required to do so by law. Where reasonable, we will give you notice and an opportunity to cure first.

If your account is terminated, the sections on Forge’s reading commitments, intellectual property, disclaimers, limitation of liability, and the general terms below survive.

14

Changes to these terms

We may update these terms from time to time. If a change materially affects your rights, we will notify you in the app or by email before it takes effect. The "last updated" date at the top of this page always reflects the current version.

Continuing to use Ambera or Ambera Forge after a change takes effect means you accept the updated terms. If you do not accept them, you can delete your account.

15

General terms

These terms are governed by the laws of the country in which the operator of Ambera and Ambera Forge is established, without regard to conflict-of-law principles. If you are a consumer in the EU, you also have the protection of any mandatory provisions of the law of the country you live in.

If any part of these terms is found unenforceable, the rest remain in effect. Failure to enforce a provision is not a waiver of it. You may not assign these terms without our consent; we may assign them in connection with a corporate transaction, subject to the Privacy Policy.

These terms are the entire agreement between you (or your organization, for Ambera Forge) and us regarding the service.

16

Contact

Questions about these terms — hello@ambera.app.