Privacy Policy
Last updated: January 29, 2026
1. Introduction
PIOL (“we”, “us”, “our”) operates PIOL Radar™, PIOL CertPath™ and PIOL StrategyOS™ (“the Service”), intelligence platforms. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
2. Information We Collect
Account Information
- Name and email address
- Organization name and role
- Billing information (processed securely by Stripe)
Usage Data
- Pages viewed and features used
- Search queries and filter selections
- AI chat conversations (anonymized after 24 hours)
- Report generation activity
Technical Data
- IP address (not stored with user identity)
- Browser type and device information
- Cookies and similar technologies (see Cookie Policy below)
3. How We Use Your Information
- To provide and maintain the Service
- To process your subscription and billing
- To send service-related notifications
- To improve and personalize the Service
- To respond to your support requests
- To comply with legal obligations
4. Data Retention
- Account data: retained until you request deletion, then removed after a 30-day grace period
- AI chat messages: user messages are anonymized after 24 hours; conversations are purged after 90 days
- API logs: retained for 30 days
- Audit logs: retained for 7 years (regulatory compliance)
5. Data Sharing
We do not sell your personal information. We share data only with:
- Supabase — Database and authentication hosting
- OpenAI / Anthropic — AI processing (no user-identifying data is sent)
- Stripe — Payment processing
- Vercel — Application hosting
6. Your Rights
Depending on your jurisdiction (GDPR, CCPA, etc.), you may have the right to:
- Access and export your personal data
- Correct inaccurate information
- Delete your account and associated data
- Opt out of marketing communications
- Withdraw consent for data processing
You can delete your account at any time from Settings > Account > Delete Account.
7. Cookie Policy
We use essential cookies for authentication and session management. We use analytics cookies only with your consent. You can manage your cookie preferences at any time via the cookie consent banner.
8. Security
We implement industry-standard security measures including encryption in transit (TLS), encrypted storage, Row Level Security (RLS) on all database tables, rate limiting, and regular security audits. No PII is logged in production error logs.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or through a notice on the Service.
10. Contact Us
If you have questions about this Privacy Policy or your data, contact us at privacy@piol.ai.