We never train AI models on it. We never sell or share it. You can export or delete everything, any time, without asking us.
Every document you upload, every client record, every chat transcript: yours. We process it only to run the product for you. Export it any time. Delete it any time.
Your prompts and documents are never added to training sets, fine-tunes, or evaluation corpora. Not ours, not our model providers'. Google Gemini and OpenAI API calls run under zero-retention, no-training enterprise agreements.
No data brokers. No carrier kickbacks. No ad networks. The only third parties that touch your data are infrastructure subprocessors (hosting, AI inference, email), each under contract and listed publicly.
Postgres Row-Level Security tags every row with your agency's tenant ID. Cross-tenant reads are blocked at the database, not just the app. Custom builds for one agency cannot leak into another agency's workspace.
TLS 1.2+ everywhere. AES-256 at rest. PII fields (SSN, credit card, DOB, EIN, phone) are masked before chat history is persisted, by default.
One-click export of your org's data as JSON plus generated PDFs. One-click org wipe with a 7-day reversible soft-delete window, then permanent purge. No tickets, no waiting.
This page is the plain-English version. The binding documents are below.