Privacy Policy

A working draft covering the data the platform foundation processes today.

Data we store

Account identity (handled by our authentication provider), your profile details, organization records, memberships, teams, tasks, notifications, activity history and audit logs.

Tenant isolation

Every organization-owned record carries an organization identifier, and access is enforced by database-level policies. Members of one organization cannot read another organization's data.

Credentials

Passwords are never stored in application tables. Authentication is handled by a dedicated identity service, and API keys and secrets are held server-side only.

Audit records

Security-relevant actions are recorded with actor, action, resource and timestamp for accountability. These records are visible to organization owners and admins.

Your choices

You can update your profile at any time and request deletion of your account and associated organization data.