Privacy Policy
Effective Date: March 4, 2026
1. Introduction
ObligoShield is a B2B SaaS platform designed for document analysis and compliance monitoring. We take your privacy seriously. This policy explains how we collect, use, and protect your information. We do not sell your data.
2. Information We Collect
2.1 Account Information
When you sign up via Supabase or Google OAuth, we collect your:
- Email address
- Display name
- Profile picture (if provided by the OAuth provider)
2.2 Application Data
To provide the Service, we process:
- Documents: Files you upload for analysis.
- Metadata: Extracted dates, obligation types, and risk scores.
- Usage Logs: IP addresses, browser types, and system activity for security and debugging.
3. Google API Disclosure
ObligoShield's use and transfer of information received from Google APIs to any other app will adhere to the Google API Service User Data Policy, including the Limited Use requirements.
We use Google OAuth solely for authentication. We do not access your Google Drive or any other Google services unless explicitly authorized and initiated by you through a manual upload.
4. Data Handling & Security
- Temporary Processing: Documents uploaded for analysis are processed temporarily. No permanent storage of your raw documents is claimed unless specifically enabled through an "Archive" feature.
- Encryption: Data is encrypted in transit and at rest using standard cloud infrastructure security (provided by Supabase and AWS/GCP).
- No AI Training: We do NOT use your sensitive business documents to train third-party LLMs or our proprietary models.
5. Third-Party Services
We share necessary data with the following essential processors:
- Supabase: For authentication and database management.
- Stripe: For payment processing (we do not store credit card details).
- Google: For OAuth-based login.
6. Your Rights
As a global user, you may request:
- Deletion of your account and all associated metadata.
- A copy of the data we have stored about your profile.
- Clarification on any automated processing performed on your documents.