Ours is short, because we collect almost nothing. That's the product philosophy applied to ourselves.
Sets no cookies. Runs no analytics, no tracking pixels, no third-party scripts. We don’t know you visited unless you tell us.
Runs inside your network. Your databases, documents, questions, and the knowledge FactRule builds from them never reach our servers — structurally, not as a policy. Connected editions send a published, closed-schema health pulse: counts and status enums only, which you can inspect in the documentation and verify on the wire with the built-in egress audit.
If you sign up, we store what the relationship needs: company name, contact email, plan, billing state (payments are processed by Stripe — card details never touch us), and your servers’ health pulses. We are the data controller for exactly this account data and nothing else.
We are not a data processor for your business data — we never receive it. Your LLM provider relationship (if you choose a cloud model) is your own; fully in-network operation is supported and recommended for regulated data.
Close your account and we delete it: account records within 30 days, raw health pulses within 90, keeping only what tax law makes us keep (invoices). Email us and we’ll confirm the deletion.
Questions, DPAs, or deletion requests: privacy@factrule.example — a person reads it.