Privacy Policy
Last updated: [TODO: date at launch]
This policy explains what personal data Neyli collects, why, and what your rights are. The data controller is [TODO: legal entity name, registered address]. For content your team stores in a workspace, we act as a processor on behalf of the workspace owner (see the Data Processing Addendum).
What we collect
- Account data — email address, display name, hashed password (we never see the plain password), workspace membership and role.
- Workspace content — the projects, tasks, boards, notes, messages and files your team creates. This is your data; we host it.
- Billing data — plan, seat count and subscription status. Card details go directly to Stripe; we never store them.
- Assistant usage — prompts and needed workspace context are processed by our AI provider to generate responses; we meter token usage per workspace. We do not use your content to train models.
- Technical logs — IP address, error reports and coarse usage events needed to run, secure and rate-limit the Service.
We do not run advertising trackers. Cookies/local storage are used only to keep you signed in and remember preferences (strictly necessary), so there is no cookie banner to click through.
Why we process it (legal bases)
- To provide the Service you asked for (contract).
- To secure the Service, prevent abuse and debug faults (legitimate interest).
- To bill subscriptions and keep required records (contract, legal obligation).
- To send product/service emails such as invites and receipts (contract); marketing only with consent.
Subprocessors
| Provider | Purpose | Region |
|---|---|---|
| Supabase | Database, auth, file storage | [TODO: chosen project region] |
| Cloudflare | Hosting, workers (API edge), rate limiting | Global edge |
| Stripe | Payments and subscription billing | US/EU |
| Anthropic | AI assistant processing | US |
| [TODO: email provider — Resend or Postmark] | Transactional email (invites, receipts) | [TODO] |
| [TODO: error tracking — Sentry or GlitchTip host] | Error reports | [TODO] |
Retention
Workspace content lives for as long as the workspace exists. Deleted workspaces are removed from live systems promptly and from rolling backups within [TODO: e.g. 8 weeks — matches backup retention]. Account data is deleted when the account is deleted. Billing records are kept as long as tax law requires.
Your rights
Depending on where you live (e.g. GDPR/UK GDPR/CCPA) you can request access, correction, export or deletion of your personal data, object to certain processing, and complain to a supervisory authority. Write to [TODO: privacy email] — we respond within 30 days. For content inside a customer's workspace, we will refer the request to the workspace owner, as required by our processor role.
Security
Data is encrypted in transit and at rest, isolated per workspace with database-level row security, and covered by weekly offsite backups. Access to production systems is limited to the operator and protected by revocable keys.
Changes
We'll announce material changes in the app or by email before they take effect.
Contact
[TODO: privacy email] · [TODO: postal address]