Privacy Policy
This Privacy Policy explains how Shelfcrew (“we,” “us”) collects, uses, and shares information when you use our application, websites, and services (the “Service”).
1. Information we collect
- Account information — name, email, organization, and authentication details when you sign up.
- Content you provide — files, messages, notes, and data you add to the Service so your crew can work on it.
- Connected-service data — when you authorize a third-party app (e.g., email, storage, or a retailer portal), the data needed to perform the tasks you request.
- Usage and device data — logs, feature usage, and technical details used to operate and secure the Service.
- Payment information — handled by our payment processor; we do not store full card numbers.
2. How we use information
We use information to provide and operate the Service, perform the tasks you request, secure and support your account, process payments, communicate with you, and improve the Service. We do not sell your personal information.
3. AI processing
To perform tasks, the Service sends relevant content to AI model providers and integration partners strictly to generate the results you request. We do not use your content to train third-party foundation models except where you explicitly opt in. Providers process this data under their own agreements and security controls.
4. Service providers (sub-processors)
We rely on trusted providers to run the Service, including for cloud hosting and database, payments, connector/authentication brokering, and AI model inference. Representative providers include:
- Supabase — application database and backend infrastructure.
- Stripe — subscription billing and payment processing.
- Composio — secure sign-in and brokered access to the third-party apps you connect.
- AI model providers (e.g., Anthropic, OpenAI, Google, and open-model hosts) — to generate AI output for the tasks you run.
[Confirm and keep this list current — it is the sub-processor disclosure your connected-service and compliance reviews will rely on.]
5. Sharing
We share information only: with the service providers above to operate the Service; with people you choose to collaborate with inside your organization; when required by law or to protect rights and safety; and in connection with a business transfer, subject to this Policy.
6. Data retention and deletion
We keep information for as long as your account is active or as needed to provide the Service, then delete or anonymize it within a reasonable period, except where longer retention is required by law. You can request deletion of your data by contacting us.
7. Security
We use administrative, technical, and organizational safeguards to protect information, including encryption of connector credentials per organization. No system is perfectly secure, but we work to protect your data and to notify you of incidents as required by law.
8. Your rights
Depending on where you live, you may have rights to access, correct, export, or delete your personal information, and to object to or restrict certain processing. To exercise these rights, contact us at the address below.
9. International transfers
We may process information in the United States and other countries. Where required, we use appropriate safeguards for cross-border transfers.
10. Children
The Service is not directed to children under 18, and we do not knowingly collect their personal information.
11. Changes
We may update this Policy from time to time. If we make material changes, we will provide reasonable notice and update the date above.
12. Contact
Questions or requests? Email hello@shelfcrew.app.