Privacy policy
How we collect, use and protect your data. The short version: it's yours, we don't sell it, and we never train our models on it.
What we collect
Information you give us directly — name, email, company, and the content you or your team put into your workspace (CRM records, tasks, documents, and similar). Usage telemetry (pages viewed, features used) via PostHog, to improve the product. If your workspace admin turns on team activity monitoring, app-usage time and active windows — never message content, file content, or keystrokes, and never without that admin's explicit consent (enforced in the API — capture is blocked until consent is recorded). If you chat with Ami, our AI assistant, we store that conversation history. We never collect your workspace's customer data for our own purposes.
How we use it
To run the service, bill you, communicate with you about your account, and improve the product. We do not sell your data. We do not use your workspace data to train shared AI models — Ami runs against the AI provider your workspace is configured for (for example Anthropic, OpenAI, Google Gemini, or others), and that provider processes your prompts only to return a response, per its own data-processing terms.
How long we keep it
Workspace and account data: for the life of your subscription, plus 30 days. Access and activity-monitoring logs: 90 days. Ami conversation history and audit logs: 1 year. Billing records: 7 years (tax law requires this — we can't delete these early). Data you export: deleted 30 days after export. Deletion runs automatically on a nightly schedule; the full policy is public in our data retention policy.
Who we share it with
We run our own infrastructure — self-hosted Postgres database and self-hosted object storage, not a shared cloud data warehouse. The processors we use for specific jobs: Stripe (billing), Maileroo (transactional email), PostHog (product analytics), and GlitchTip, self-hosted, (error tracking). If your workspace enables an integration you control — like syncing attendance from GreytHR, or connecting your own Razorpay account for your invoicing — that data flows only because you turned it on, and only for that purpose. We don't sell access to any of this, and we don't hand it to anyone outside this list.
Cookies (marketing site)
On this marketing site, if you accept cookies via the banner, we load PostHog (product analytics), Google Analytics, Hotjar, Meta Pixel, and LinkedIn Insight Tag. If you reject, none of these load. Our product dashboard (once you're a customer) only uses PostHog and does not run ad-tracking pixels.
Your rights
You can export your workspace data at any time from Settings → Privacy, ask what we hold about you, correct it, or ask us to delete it. Under GDPR this includes access, correction, erasure, and portability, regardless of where you're located. We respond to requests within 30 days. Contact privacy@amdital.com.
Security
Every database query is scoped to your workspace at the database layer (row-level security), traffic is encrypted in transit, and access to production requires authentication through our own JWT-based auth system — we don't rely on a third-party auth provider. We are not currently SOC 2, ISO 27001, or HIPAA certified; if that's a hard requirement for your organisation, talk to us before you sign up. Full detail on our security page.
Last updated: August 7, 2026. For questions, contact privacy@amdital.com.