Privacy Policy
Last updated: April 2026
1. Information We Collect
We collect information you provide directly: name, email address, organization name, and project/financial data entered into the platform. We also collect technical data including IP address, browser type, and usage analytics.
2. How We Use Your Information
We use your information to: (a) provide and improve the Service; (b) process your requests and transactions; (c) send service-related communications; (d) generate AI-powered insights using your program data; (e) comply with legal obligations.
3. AI Processing
The AI Advisor module sends program data (projects, budgets, risks) to Anthropic's Claude API for analysis. This data is processed according to Anthropic's usage policies and is not used to train AI models. Data is transmitted securely via encrypted connections.
4. Data Storage and Security
Your data is stored on DigitalOcean's managed infrastructure in the United States. We use industry-standard encryption (TLS in transit, encryption at rest) and access controls to protect your information. Database backups are maintained for disaster recovery.
5. Data Sharing
We do not sell your data. We share data only with: (a) service providers who assist in operating the platform (DigitalOcean, Anthropic); (b) as required by law; (c) with your explicit consent. All service providers are bound by data processing agreements.
6. ERP Integration Data
When you connect ERP systems (SAP, Oracle, Dynamics, etc.), we access only the data types you authorize (GL entries, cost centers, budgets). ERP credentials are stored encrypted and are never shared with third parties.
7. Cookies
We use essential cookies for authentication and session management. We do not use advertising or tracking cookies. You can manage cookies through your browser settings.
8. Your Rights
You have the right to: (a) access your personal data; (b) correct inaccurate data; (c) request deletion of your data; (d) export your data in a standard format; (e) withdraw consent at any time. To exercise these rights, contact us at the email below.
9. Data Retention
We retain your data for as long as your account is active or as needed to provide the Service. Upon account termination, we will delete your data within 90 days, except where retention is required by law.
10. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of material changes via email or through the Service.
11. Contact
For privacy-related questions or requests, contact us at [email protected].