Privacy

Privacy Policy

How SOPSai collects, uses, protects, and shares information.

Product

SOPSai

Effective date

June 2026

These trust, legal, and policy pages are provided for transparency and may be updated as SOPSai evolves. They should be reviewed by qualified counsel before broad commercial launch.
1

Introduction

This Privacy Policy applies to SOPSai websites, applications, and related services. It explains how SOPSai collects, uses, shares, stores, protects, and deletes information.

Effective date: June 2026. Questions can be sent to privacy@sopsai.io or support@sopsai.io.

2

Information We Collect

  • Account information, such as name, email address, login/session details, and workspace membership.
  • Workspace information, such as workspace name, company profile, company details, departments, team roles, and settings.
  • Customer content, such as SOPs, steps, summaries, playbooks, company knowledge documents, uploaded files, screenshots, videos, assignments, acknowledgements, comments, and notes if present.
  • AI inputs and outputs, such as prompts, clarifying answers, uploaded supporting context, generated SOP drafts, and company knowledge excerpts used for generation.
  • Usage and diagnostic data, such as route usage, feature usage, logs, errors, device/browser information, IP address, and timestamps.
  • Communications, such as support requests, contact form submissions, feedback, and emails.
3

Customer Content Ownership

Customers retain ownership of SOPs, documents, uploads, and workspace content. SOPSai does not claim ownership of customer content.

SOPSai uses customer content only as needed to provide, operate, secure, support, maintain, and improve the service.

4

How We Use Information

  • Provide, operate, maintain, and improve the service.
  • Authenticate users and manage workspaces and permissions.
  • Generate SOP drafts with AI features when requested.
  • Store and organize SOPs, playbooks, departments, company knowledge, assignments, acknowledgements, and related workspace content.
  • Provide search, export, assignment, acknowledgement, and collaboration features.
  • Support users and respond to requests.
  • Troubleshoot bugs and improve product reliability and performance.
  • Prevent fraud, abuse, security incidents, and unauthorized access.
  • Enforce the Terms of Service and comply with legal obligations.
5

AI Processing

When AI features are used, SOPSai may send relevant user prompts, SOP content, uploaded supporting files or extracted text, company profile fields, and company knowledge excerpts to AI service providers.

AI output is a draft and should be reviewed before use. SOPSai does not intentionally sell customer SOP content. AI provider data handling may depend on the provider, configuration, and applicable agreement.

Users should avoid submitting regulated or highly sensitive data unless they are authorized to do so and the workspace has appropriate controls for that data.

6

Company Knowledge and Uploaded Files

Company Knowledge documents may be uploaded so SOPSai can help generate more relevant SOPs. Readable extracted text may be used as context for AI generation.

Unsupported files may be stored but not used by AI. Archived or deleted files are not intended to be used for future AI generation, subject to backup, logging, and retention practices.

7

How We Share Information

  • Hosting, database, authentication, and storage providers.
  • AI service providers when AI features are used.
  • Analytics or diagnostic providers if used.
  • Support tools if used.
  • Payment providers when billing is enabled.
  • Legal, compliance, safety, fraud-prevention, or security disclosures when appropriate.
  • Business transfers, such as a merger, acquisition, financing, or sale of assets.
8

Subprocessors

SOPSai may use subprocessors for hosting, authentication, database, file storage, AI processing, analytics, support, and payments when enabled. See the subprocessors page or contact support@sopsai.io for the current list.

9

Data Security

SOPSai uses safeguards such as authenticated access, workspace isolation, role-based permissions, Row-Level Security policies, private storage, file upload validation, rate limiting and abuse prevention, security headers, secret handling practices, and logging/error handling safeguards.

No online service can guarantee absolute security. Customers are responsible for securing their own devices, accounts, users, and internal operational practices.

10

Data Retention

SOPSai retains account, workspace, customer content, logs, and operational data for as long as needed to provide the service, comply with legal obligations, resolve disputes, enforce agreements, maintain backups, and protect security.

Deletion may not immediately remove data from backups, logs, security records, or other retained operational systems.

11

Customer Controls

Users and workspace owners can create, edit, archive, export, and manage SOPs and workspace content in the product.

Additional deletion, export, and account controls may be added over time as SOPSai matures.

12

Cookies and Local Storage

SOPSai may use cookies, local storage, and similar technologies for authentication, session management, security, preferences, analytics, and reliability.

Blocking or deleting cookies may affect login, workspace access, and product functionality.

13

Data Requests and Rights

Depending on location and applicable laws, users may request access, correction, deletion, export, or restriction of certain information by contacting privacy@sopsai.io or support@sopsai.io.

SOPSai may need to verify identity, workspace authority, and legal eligibility before completing a request. Some requests may be limited by legal, security, billing, dispute, backup, or operational needs.

14

Children's Privacy

SOPSai is not intended for children under 13. If you believe a child has provided information to SOPSai, contact us so we can review and take appropriate action.

15

International Data Transfers

Information may be processed in the United States or other locations where SOPSai or its service providers operate.

16

Changes to this Policy

SOPSai may update this Privacy Policy as the product, providers, legal requirements, or business practices change. Updated versions will be posted with a revised effective date.

17

Contact

Questions or requests about this Privacy Policy can be sent to privacy@sopsai.io or support@sopsai.io. Legal entity: SOPSai.