AjourBack

Terms and privacy

Last updated 4 September 2026.

Ajour is open source and run by Vinther Consulting at ajour.haij.dk. This page says what you can count on and what we do with what you write. It is short, because the seven dogmas answer most of it: your data is yours, all of it can be exported, and all of it can be deleted.

What Ajour is

A tool for keeping small projects up to date: a plan, a weekly status, decisions and obstacles. The code is AGPL-3.0 and public, so you can run exactly this version on your own server if you would rather.

Accounts and access

You get in by applying or being invited. We store your name, your email and your workspace's name, and use them to sign you in and to write to you about the service. Passwords are stored hashed, and you can add a passkey and two-factor. We sell nothing, and we do not send marketing you did not ask for.

Your data

Everything you write in a workspace is yours. It lives in one database on EU soil with EU-owned providers, separated from other workspaces at the database level. You can take a complete copy as a spreadsheet or JSON at any time under Settings, and delete the whole workspace in the same place. Deleting it also removes the audit trail about it; only the bare fact that a workspace was deleted, by whom and when, remains.

The AI

The AI proposes and carries out changes to your plan, but it does not decide: a copy of the project is taken before every change, and you can undo all of it. It never sends anything out of the house and never deletes. If the installation uses a hosted model, the project's content is sent to it when you use the chat, the daily tip or the weekly status: the names of the people on the tasks, the milestones, the tasks, the obstacles, the decisions and the budget with its lines. Passwords, passkeys, the audit trail and other workspaces are never sent. The text goes as data, not as instructions. Which model it is is listed in docs/subprocessors.md; if the installation runs locally through Ollama, the text never leaves the server. Under Settings → AI a workspace can choose a different model than the installation uses, or turn the model off entirely. If the workspace chooses its own, that is the provider receiving the text, and the page says which one. An API key a workspace stores is encrypted and cannot be read back out.

Share links

A share link opens one project's status page for anyone holding it, with no login. It shows the plan, the milestones, the tasks and the approved statuses. It never shows money, obstacles, drafts or the AI chat. You can revoke a link and give it an expiry, and you should do both if the link has been somewhere you did not intend.

Leaving

You can delete your workspace immediately, without writing to anyone and without waiting. The export is one click away and readable without Ajour. We keep no copy afterwards beyond the nightly encrypted backups, which roll off after 30 days.

Running and guarantees

Ajour is new, and there is no uptime guarantee. We look after your data with encrypted backups every night, but take an export now and then if the project matters. The service is provided as it is, without warranties beyond what the law requires.

Licence

The code is AGPL-3.0. You may use it, change it and run it yourself; if you change it and offer it to others over a network, your changes must be available too. What you write in the tool is not covered by the licence — that is yours.

Contact

Write to martin@vintherconsulting.dk. If you have found a security problem, SECURITY.md in the repository says how to report it; use that rather than an ordinary email.

Who can see what is listed in docs/subprocessors.md.

På dansk