Privacy Policy
A working draft covering the data the platform foundation processes today.
Data we store
Account identity (handled by our authentication provider), your profile details, organization records, memberships, teams, tasks, notifications, activity history and audit logs.
Tenant isolation
Every organization-owned record carries an organization identifier, and access is enforced by database-level policies. Members of one organization cannot read another organization's data.
Credentials
Passwords are never stored in application tables. Authentication is handled by a dedicated identity service, and API keys and secrets are held server-side only.
Audit records
Security-relevant actions are recorded with actor, action, resource and timestamp for accountability. These records are visible to organization owners and admins.
Your choices
You can update your profile at any time and request deletion of your account and associated organization data.