At ExoBoard.ai ("we," "our," or "us"), we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered strategic advisory platform.

1. Information We Collect

Account Information

When you create an account, we collect:

  • Name and email address
  • Company name and role
  • Billing information (processed securely via Stripe)
  • Password (stored using industry-standard encryption)

Business Data You Provide

To deliver personalized strategic advice, you may upload:

  • Financial documents and reports
  • Business plans and pitch decks
  • Marketing materials and metrics
  • Other business-related documents

Usage Data

We automatically collect:

  • Log data (IP address, browser type, access times)
  • Device information
  • Feature usage patterns
  • Session duration and interactions

2. How We Use Your Information

We use the collected information to:

  • Provide and improve our AI advisory services
  • Personalize your board experience and recommendations
  • Process transactions and send billing notifications
  • Communicate updates, security alerts, and support messages
  • Analyze usage patterns to enhance our platform
  • Comply with legal obligations

Important: Your business data is never used to train our AI models. Your strategic discussions and uploaded documents remain exclusively yours.

3. Data Sharing and Disclosure

We do not sell your personal information. We may share data with:

  • Service Providers: Third-party vendors who assist in operating our platform (hosting, payment processing, analytics)
  • Legal Requirements: When required by law, court order, or governmental authority
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • With Your Consent: For any other purpose with your explicit permission

4. Data Security

We implement robust security measures including:

  • AES-256 encryption for data at rest
  • TLS 1.3 encryption for data in transit
  • Regular security audits and penetration testing
  • Access controls and authentication protocols
  • Secure data centers with SOC 2 compliance (in progress)

5. Data Retention

We retain your data for as long as your account is active or as needed to provide services. Upon account deletion:

  • Personal data is deleted within 30 days
  • Business documents are permanently erased within 30 days
  • Anonymized analytics data may be retained for service improvement

6. Your Rights

Depending on your location, you may have the right to:

  • Access the personal data we hold about you
  • Request correction of inaccurate data
  • Request deletion of your data
  • Object to or restrict data processing
  • Data portability
  • Withdraw consent at any time

To exercise these rights, contact us at privacy@exoboard.ai

7. Cookies and Tracking

We use cookies and similar technologies to:

  • Maintain your session and preferences
  • Analyze site traffic and usage patterns
  • Improve user experience

You can control cookies through your browser settings. Disabling cookies may affect platform functionality.

8. International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place, including Standard Contractual Clauses where applicable.

9. Children's Privacy

ExoBoard.ai is not intended for individuals under 18 years of age. We do not knowingly collect data from children.

10. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of significant changes via email or through the platform. Continued use after changes constitutes acceptance.

11. Contact Us

For privacy-related questions or concerns:

Email: privacy@exoboard.ai
Address: ExoBoard Inc., 548 Market St, Suite 835, San Francisco, CA 94104