Effective Date: April 1, 2026
This Privacy Policy describes how Piqued AI, LLC ("Piqued AI," "we," "us," "our") collects, uses, and protects information when you use our hosted services, including piqued.cc, Piqued Forge, Collabynt, and related services (the "Service"). This policy also describes your rights regarding your information.
We are a governance company. We believe trust is evidence, not intention. This policy is written to be clear, not to obscure.
When you create an account, we collect your name, email address, and organizational affiliation (if provided). If you authenticate through a third-party identity provider (such as Google Workspace), we receive the profile information that provider shares, typically your name, email, and profile image.
When you use the Service, you may upload or create project governance data, including state files, session records, decision records, concern logs, and related content ("Governance Data"). This data may contain project names, participant names, technical decisions, and other information about your work.
If you subscribe to a paid tier, payment is processed by Stripe, Inc. We do not store your full credit card number, bank account number, or other payment instrument details. Stripe handles payment processing directly and is subject to its own privacy policy. We receive confirmation of payment status, a transaction identifier, and billing address.
We collect information about how you interact with the Service, including pages viewed, features used, session duration, and actions taken. We use this information to improve the Service, not to build advertising profiles.
We automatically collect technical information such as your IP address, browser type, operating system, and device type. This information is used for security, troubleshooting, and service delivery.
We use cookies and similar technologies for authentication, session management, and security. We do not use advertising cookies or third-party tracking cookies. See Section 7 for details.
We use your information to operate, maintain, and improve the Service, including storing and displaying your Governance Data, authenticating your identity, processing payments, and providing customer support.
We may send you service-related communications such as account verification, security alerts, billing notices, and product updates. You may opt out of non-essential communications at any time.
We use account and technical information to detect and prevent fraud, abuse, and unauthorized access.
We use aggregated, de-identified usage data to understand how the Service is used and to inform product development. We do not use individual Governance Data for this purpose.
We may use or disclose information as required by applicable law, regulation, legal process, or governmental request.
This section exists because your Governance Data is not ordinary user content. It contains your project decisions, your team's concerns, your organizational strategy. We treat it accordingly.
We do not use your Governance Data to train artificial intelligence models, machine learning systems, or any automated learning systems. Your governance records are yours.
We do not sell your Governance Data to third parties. We do not sell your personal information to third parties.
We do not use your Governance Data or personal information for advertising purposes. We do not display third-party advertisements in the Service.
We do not analyze the content of your Governance Data for purposes other than providing the Service to you. We do not aggregate insights from your Governance Data with other users' Governance Data.
Your Governance Data is accessible only to you and to users you explicitly authorize (such as team members in a shared workspace). Our employees may access your Governance Data only as necessary to provide support you have requested, to investigate a security incident, or to comply with legal obligations, and such access is logged.
Governance Data is encrypted in transit (TLS 1.2 or higher) and at rest (AES-256 or equivalent, provided by our infrastructure subprocessors). Authentication tokens and session credentials are stored using industry-standard cryptographic methods. We verify encryption configuration as part of our infrastructure deployment process.
For enterprise customers who require a Data Processing Agreement (DPA) for GDPR or other regulatory compliance, we provide a standard DPA upon request. Contact legal@piqued-ai.com.
We share information with third-party service providers who help us operate the Service (such as hosting providers, payment processors, and authentication providers). These providers are contractually required to use your information only to provide services to us and to protect it in accordance with this policy. A current list of our subprocessors is maintained at https://piqued.cc/subprocessors.
We may share information when you direct us to, such as when you publish a Trust Center page, share a project view with external parties, or connect a third-party integration.
We may disclose information if required by law, court order, or governmental authority. Where legally permitted, we will notify you before making such a disclosure.
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such transfer and any changes to this policy.
We may share aggregated, de-identified data that cannot reasonably be used to identify you (such as "X% of projects use milestone tracking"). This data contains no Governance Data content.
We retain your information for as long as your account is active and as needed to provide the Service.
When you close your account, we make your Governance Data available for export for a minimum of 30 days (per our Terms of Service, Section 3.3). After that period, we delete your Governance Data from our active systems within 90 days.
Governance Data may persist in encrypted backups for up to 180 days after deletion from active systems, after which it is permanently removed.
We may retain information longer if required by law or to resolve disputes.
You may access and export your Governance Data at any time through the Service in standard pqdx format. You may request a copy of your personal information by contacting us at privacy@piqued-ai.com.
You may update your account information at any time through the Service. To correct other personal information, contact us at privacy@piqued-ai.com.
You may delete your Governance Data through the Service at any time. You may request deletion of your account and personal information by contacting us at privacy@piqued-ai.com. We will process deletion requests within 30 days, subject to legal retention requirements.
You may object to certain uses of your information or request that we restrict processing. Contact us at privacy@piqued-ai.com.
Your Governance Data is structured under the pqdx protocol, an open standard. You may export it in pqdx format and use it with any compatible tool or service.
Where we process information based on your consent, you may withdraw that consent at any time. Withdrawal does not affect the lawfulness of processing before withdrawal.
We use cookies that are strictly necessary for authentication, session management, and security. These cannot be disabled without breaking the Service.
We use first-party analytics to understand Service usage. We do not use third-party analytics services that track you across websites. Our analytics do not use cookies and do not collect personally identifiable information.
We do not use advertising cookies, retargeting pixels, or cross-site tracking technologies.
The Service is operated from the United States. If you access the Service from outside the United States, your information will be transferred to and processed in the United States.
If you are located in the European Economic Area, United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation, including the rights described in Section 6. Our legal basis for processing your information is: (a) performance of our contract with you (providing the Service); (b) our legitimate interests (security, service improvement); (c) your consent (where applicable); (d) compliance with legal obligations. You may contact us at privacy@piqued-ai.com or lodge a complaint with your local data protection authority.
If you are a California resident, you have additional rights under the California Consumer Privacy Act, including the right to know what personal information we collect, the right to delete your personal information, and the right to opt out of the sale of personal information. We do not sell personal information. To exercise your rights, contact us at privacy@piqued-ai.com.
The Service is not directed to children under 18. We do not knowingly collect personal information from children under 18. If we learn that we have collected personal information from a child under 18, we will delete it promptly.
We may update this policy from time to time. We will notify you of material changes at least 30 days before they take effect, via email or in-Service notification. The effective date at the top of this policy indicates when it was last revised.
For questions about this Privacy Policy or your data, contact:
Piqued AI, LLC
privacy@piqued-ai.com
1111B S Governors Ave, Ste 28392
Dover, Delaware 19904
United States
© 2026 Piqued AI, LLC. All rights reserved.