Information we process
- Identity data
- Google account email, display name, verified identity status, session data, and workspace membership
- Workspace data
- Organization settings, members, feedback, customer references, product problems, impact context, reviews, approvals, and audit events
- Connector data
- Provider account identifiers, connection health, authorized scopes, import status, and records imported through supported connector workflows
- AI configuration
- Selected provider, model, encrypted workspace API key when supplied, model-run metadata, and structured analysis results
- Technical data
- Request metadata, error logs, security events, and aggregate product analytics needed to operate and improve the service
- Public requests
- Feature-request text, voting controls, moderation status, and security metadata used to limit duplicate or abusive submissions
Why we use information
- Authenticate users and enforce workspace membership.
- Provide feedback ingestion, review, prioritization, and workflow features.
- Connect authorized provider accounts and report connection health.
- Run AI analysis only when a supported provider is configured and the workflow requests it.
- Protect the service, diagnose failures, prevent duplicate actions, and maintain audit history.
- Understand aggregate product usage and improve the public website and application.
- Respond to product, pilot, privacy, and security questions.
Service providers and connected systems
CloseSpan relies on hosting, database, authentication, product analytics, connector authorization, and optional AI-model providers to operate the service. These providers process information only for the relevant service function and under their own contractual and privacy terms.
Pipedream stores connected-provider credentials and facilitates provider authorization. Google supplies identity authentication. When a workspace configures an AI provider, redacted or minimized workspace content needed for that requested analysis may be sent to the selected provider. CloseSpan does not sell personal information or use workspace feedback for advertising.
Retention, access, and deletion
Workspace records are retained while they are needed to provide the service, maintain workflow history, meet security needs, or satisfy an applicable agreement. The current product does not yet provide complete self-service retention, export, or deletion controls.
To request access, correction, or deletion, email [email protected]. Requests may require identity and workspace-authority verification. Provider credentials and source records may also need to be removed in the connected provider or Pipedream account.
Security and product maturity
CloseSpan uses technical and organizational controls described on the security page, but no internet service can guarantee absolute security. The product is in an early design-partner stage. Row-level database security and complete data-lifecycle automation are not yet implemented, so sensitive production use should be agreed and scoped before data is connected.
Changes and contact
This policy may change as the product, providers, and legal requirements change. The effective date will be updated when material changes are published. Privacy questions and requests can be sent to [email protected].