Privacy Policy
1. Introduction
Foreman is committed to protecting your privacy. This Privacy Policy outlines our practices regarding the collection, use, and disclosure of information when you use our AI agent orchestration platform. This policy applies to all Users of the Service and governs data collection and usage in compliance with applicable privacy regulations.
2. Information We Collect
We collect information to provide and improve our Service. This includes:
- Account Information: Name, email address, password, and billing details.
- Business Context: Company profiles, team rosters, and operational preferences you provide during onboarding or normal operation.
- Usage Data: Chat logs, interaction metrics, and system activity logs generated as you interact with the Chief of Staff and Workspace Agents.
3. How We Use Information
Your information is primarily used to operate the Foreman Service. This includes generating contextual Deliverables, maintaining your Workspace memory, processing payments, and providing customer support. We also use aggregated, anonymized usage data to identify platform bottlenecks, optimize agent orchestration, and improve overall system reliability.
4. Data Sharing
Foreman does not sell your personal data. We share data only with trusted third parties necessary to operate the Service, such as cloud infrastructure providers, payment processors, and underlying LLM providers required to process your AI requests. We may also disclose information if required to do so by law or in response to valid requests by public authorities.
5. BYOK Data Processing
If you utilize Bring Your Own Key (BYOK) functionality, your prompts, context data, and queries are routed directly to your specified LLM provider using your API Key. In these scenarios, the data processing terms of your chosen provider supersede Foreman's standard data processing agreements for the duration of that specific inference call.
6. Data Retention
We retain your personal information and Workspace data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, including for the purposes of satisfying any legal, accounting, or reporting requirements. Upon account deletion, active Workspace data is expunged from our production databases, though backups may be retained for a limited transitional period.
7. Data Security
We implement robust technical and organizational measures to secure your data, including encryption in transit and at rest, role-based access controls, and regular security audits. While we strive to use commercially acceptable means to protect your personal information, no method of transmission over the Internet or method of electronic storage is 100% secure.
8. Your Rights
Depending on your location, you may have rights under the GDPR, CCPA, or other applicable privacy laws. These rights may include accessing, correcting, updating, or requesting deletion of your personal information. You can exercise these rights by contacting our privacy team. We will respond to all legitimate requests within the timeframe mandated by applicable law.
10. Children's Privacy
Our Service is intended for business operators and professionals. It is not directed at anyone under the age of 16. We do not knowingly collect personally identifiable information from children. If you become aware that a child has provided us with Personal Data, please contact us immediately so we can take steps to remove such information.
11. Contact & DPO
If you have any questions about this Privacy Policy, our data practices, or if you wish to contact our Data Protection Officer (appointment pending), please reach out to us at: privacy@foreman.company.
Compliance Gaps Requiring Legal Review
- Missing DPO appointment
- DPIA documentation
- Standard Contractual Clauses
- Specific retention periods
- Breach notification procedures