diff --git a/docs/integrations/claude-code.mdx b/docs/integrations/claude-code.mdx index c4b5a2c35..4277bb90e 100644 --- a/docs/integrations/claude-code.mdx +++ b/docs/integrations/claude-code.mdx @@ -183,11 +183,16 @@ the same way the Python SDK and the CLI attribute theirs. Without a key they are sent under a random per-machine id. Each event carries the event name, the plugin version, the harness it ran in, -your OS and Python version, timings, counts, and a coarse failure label. -Repository and session identifiers are hashed with a random salt generated on -your machine and never sent, so they cannot be linked back to a repository name +your OS and Python version, and per-event properties describing what happened: +timings, counts, coarse outcome and failure labels, and which model was +configured. Repository and session identifiers are hashed with a random salt +generated on your machine, so they cannot be linked back to a repository name or path. +The exact set is enforced in code rather than by this list: every property is +filtered through a denylist of sensitive keys and credential-shaped values are +redacted before anything is sent. + Prompts, memory text, queries, file paths, repository names, and API keys are never sent. diff --git a/docs/integrations/deepseek-plugin.mdx b/docs/integrations/deepseek-plugin.mdx index 16b8badaf..0242496e1 100644 --- a/docs/integrations/deepseek-plugin.mdx +++ b/docs/integrations/deepseek-plugin.mdx @@ -114,7 +114,7 @@ Both tools also accept optional per-call `userId`, `agentId`, and `runId` params ## Telemetry -Writes are tagged `source="DEEPSEEK_HARNESS"` so Mem0 can attribute usage to this integration. Anonymous usage events include operation names, durations, result counts, and coarse failure kinds. Queries, memory text, entity IDs, and API keys are never included. Set `MEM0_TELEMETRY=false` to opt out. +Writes are tagged `source="DEEPSEEK_HARNESS"` so Mem0 can attribute usage to this integration. Usage events include operation names, durations, result counts, and coarse failure kinds. They are **not anonymous**: when an API key is configured they are sent under your Mem0 account email, the same way the SDK attributes its own. Queries, memory text, entity IDs, and API keys are never included. Set `MEM0_TELEMETRY=false` to opt out. This plugin is a developer preview and tracks the evolving DeepSeek Harness plugin API. diff --git a/integrations/agent-plugin-core/skills/pause/SKILL.md.tmpl b/integrations/agent-plugin-core/skills/pause/SKILL.md.tmpl index 9cc720c7a..569305ec7 100644 --- a/integrations/agent-plugin-core/skills/pause/SKILL.md.tmpl +++ b/integrations/agent-plugin-core/skills/pause/SKILL.md.tmpl @@ -7,8 +7,8 @@ disable-model-invocation: true # Pause memory capture To pause (hooks stop capturing and sending session content; a minimal -anonymous telemetry ping still fires at session start unless -`MEM0_TELEMETRY=false`): +telemetry ping still fires at session start, under your Mem0 account email, +unless `MEM0_TELEMETRY=false`): ```bash python3 "{{PLUGIN_ROOT}}/core/memory_cli.py" --harness "{{HARNESS_ID}}" {{PLUGIN_DATA_ARG}} pause diff --git a/integrations/antigravity-plugin/skills/pause/SKILL.md b/integrations/antigravity-plugin/skills/pause/SKILL.md index e88f7d315..77b4146b6 100644 --- a/integrations/antigravity-plugin/skills/pause/SKILL.md +++ b/integrations/antigravity-plugin/skills/pause/SKILL.md @@ -7,8 +7,8 @@ disable-model-invocation: true # Pause memory capture To pause (hooks stop capturing and sending session content; a minimal -anonymous telemetry ping still fires at session start unless -`MEM0_TELEMETRY=false`): +telemetry ping still fires at session start, under your Mem0 account email, +unless `MEM0_TELEMETRY=false`): ```bash python3 "${ANTIGRAVITY_PLUGIN_ROOT}/core/memory_cli.py" --harness "antigravity" pause diff --git a/integrations/claude-code-plugin/README.md b/integrations/claude-code-plugin/README.md index 872071abe..b58f54c79 100644 --- a/integrations/claude-code-plugin/README.md +++ b/integrations/claude-code-plugin/README.md @@ -137,6 +137,8 @@ Local data lives in `${CLAUDE_PLUGIN_DATA}`: - `flush-worker.log`: whether memory creation succeeded - `plugin-errors.log`: hook errors (no credentials) - `telemetry.jsonl` / `telemetry-identity.json`: usage events and the id they are sent under +- `telemetry-salt`: random per-install salt for the repo and session hashes +- `install-state.json`: records that install has been counted once on this machine Mem0 receives captured user messages, Claude's answers, sidekick assignments and completed responses, and changed file paths. When a failed command is recorded, extraction can also include bounded command details and results. Complete files and general tool output stay on your machine. Values that look like credentials are redacted before anything is sent. @@ -146,7 +148,9 @@ Usage events (which hook ran, timing, result counts, failure types) so Mem0 can **These events are not anonymous.** When an API key is configured — which installing the plugin requires — events are sent under your Mem0 account email, the same way the Python SDK and the CLI attribute theirs. Without a key they are sent under a random per-machine id. -What each event carries: the event name, the plugin version, the harness it ran in, your OS and Python version, timings, counts, and a coarse failure label. Repository and session identifiers are hashed with a random salt generated on your machine and never sent, so they cannot be linked back to a repository name or path. +What each event carries: the event name, the plugin version, the harness it ran in, your OS and Python version, and per-event properties describing what happened — timings, counts, coarse outcome and failure labels, and which model was configured. Repository and session identifiers are hashed with a random salt generated on your machine, so they cannot be linked back to a repository name or path. + +Rather than restate a list that drifts, the exact set is enforced in code: `telemetry.record` filters every property through a denylist of sensitive keys and redacts credential-shaped values. See `_PRIVATE_KEYS` in `core/telemetry.py`. Prompts, memory text, queries, file paths, repository names, and API keys are never sent. diff --git a/integrations/claude-code-plugin/skills/pause/SKILL.md b/integrations/claude-code-plugin/skills/pause/SKILL.md index 5aef04f39..ce69d13d2 100644 --- a/integrations/claude-code-plugin/skills/pause/SKILL.md +++ b/integrations/claude-code-plugin/skills/pause/SKILL.md @@ -7,8 +7,8 @@ disable-model-invocation: true # Pause memory capture To pause (hooks stop capturing and sending session content; a minimal -anonymous telemetry ping still fires at session start unless -`MEM0_TELEMETRY=false`): +telemetry ping still fires at session start, under your Mem0 account email, +unless `MEM0_TELEMETRY=false`): ```bash python3 "${CLAUDE_PLUGIN_ROOT}/core/memory_cli.py" --harness "claude-code" --plugin-data-dir "${CLAUDE_PLUGIN_DATA}" pause diff --git a/integrations/codex-plugin/skills/pause/SKILL.md b/integrations/codex-plugin/skills/pause/SKILL.md index d8a52f47b..c8f8ddd5f 100644 --- a/integrations/codex-plugin/skills/pause/SKILL.md +++ b/integrations/codex-plugin/skills/pause/SKILL.md @@ -7,8 +7,8 @@ disable-model-invocation: true # Pause memory capture To pause (hooks stop capturing and sending session content; a minimal -anonymous telemetry ping still fires at session start unless -`MEM0_TELEMETRY=false`): +telemetry ping still fires at session start, under your Mem0 account email, +unless `MEM0_TELEMETRY=false`): ```bash python3 "${PLUGIN_ROOT}/core/memory_cli.py" --harness "codex" --plugin-data-dir "${PLUGIN_DATA}" pause diff --git a/integrations/cursor-plugin/skills/pause/SKILL.md b/integrations/cursor-plugin/skills/pause/SKILL.md index 634385145..17384c368 100644 --- a/integrations/cursor-plugin/skills/pause/SKILL.md +++ b/integrations/cursor-plugin/skills/pause/SKILL.md @@ -7,8 +7,8 @@ disable-model-invocation: true # Pause memory capture To pause (hooks stop capturing and sending session content; a minimal -anonymous telemetry ping still fires at session start unless -`MEM0_TELEMETRY=false`): +telemetry ping still fires at session start, under your Mem0 account email, +unless `MEM0_TELEMETRY=false`): ```bash python3 "${CURSOR_PLUGIN_ROOT}/core/memory_cli.py" --harness "cursor" pause diff --git a/integrations/kimi-plugin/skills/pause/SKILL.md b/integrations/kimi-plugin/skills/pause/SKILL.md index 9f217a468..8f93e3bf7 100644 --- a/integrations/kimi-plugin/skills/pause/SKILL.md +++ b/integrations/kimi-plugin/skills/pause/SKILL.md @@ -7,8 +7,8 @@ disable-model-invocation: true # Pause memory capture To pause (hooks stop capturing and sending session content; a minimal -anonymous telemetry ping still fires at session start unless -`MEM0_TELEMETRY=false`): +telemetry ping still fires at session start, under your Mem0 account email, +unless `MEM0_TELEMETRY=false`): ```bash python3 "${KIMI_PLUGIN_ROOT}/core/memory_cli.py" --harness "kimi" pause diff --git a/integrations/mem0-agent-plugin/skills/pause/SKILL.md b/integrations/mem0-agent-plugin/skills/pause/SKILL.md index c6316dd0b..a87d6c3ee 100644 --- a/integrations/mem0-agent-plugin/skills/pause/SKILL.md +++ b/integrations/mem0-agent-plugin/skills/pause/SKILL.md @@ -6,8 +6,8 @@ description: Pause Mem0 memory capture on this machine. Use when the user wants # Pause memory capture To pause (hooks stop capturing and sending session content; a minimal -anonymous telemetry ping still fires at session start unless -`MEM0_TELEMETRY=false`): +telemetry ping still fires at session start, under your Mem0 account email, +unless `MEM0_TELEMETRY=false`): ```bash python3 "${PLUGIN_ROOT}/core/memory_cli.py" --harness "coding-agent" pause diff --git a/integrations/zapier-mem0/README.md b/integrations/zapier-mem0/README.md index 7b3f5ed0f..dab21d3f3 100644 --- a/integrations/zapier-mem0/README.md +++ b/integrations/zapier-mem0/README.md @@ -32,7 +32,7 @@ pnpm test:unit # offline unit tests (mocked, no network) MEM0_API_KEY=m0-... pnpm test # unit + live E2E against api.mem0.ai ``` -Anonymous usage telemetry is sent to Mem0; opt out with `MEM0_TELEMETRY=false`. +This app sends no telemetry of its own. Its API requests carry `source: "ZAPIER"` so Mem0 can see aggregate usage of the integration. To deploy (maintainers): `pnpm build && zapier push`.