Legal

Privacy notice

Last updated: May 6, 2026. This page is a practical product privacy baseline and should be reviewed by counsel before launch.

What we collect

We collect account details, workspace membership, authentication events, API key metadata, audit logs, support messages, and billing/contact information when provided.

DecisionsLayer also processes customer-submitted decision data: subjects, actors, evidence, context, inputs, metadata, outcomes, timestamps, and derived analytics such as anomalies, quality scores, segments, and optimization workflow records.

How we use data

We use data to provide the product, authenticate users, enforce tenant and workspace isolation, operate ingestion APIs, produce analytics, monitor reliability, prevent abuse, and respond to support or legal requests.

The platform records decisions for observability and analysis. It is not a rules engine and does not make customer production decisions on its own.

Website analytics

The marketing site records page views and link clicks using a first-party visitor identifier stored in local storage. Analytics are used to understand conversion and site performance, and may be routed to Google Analytics 4 or a first-party collection endpoint. Browser Do Not Track is respected by the tracking script.

Customer responsibilities

Customers control what decision payloads they send. Avoid sending unnecessary sensitive personal data, secrets, credentials, payment card data, or health information unless a separate written agreement allows it.