Legal

Privacy Policy

Last updated: April 2026

1. Introduction

DigitalAgentOS ("we", "us", or "our") is committed to protecting your personal information. This Privacy Policy explains what data we collect, how we use it, and your rights in relation to that data.

By using the Service, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

We collect the following categories of information:

Account information

  • Name, email address, and password (hashed; we never store plain-text passwords)
  • Profile picture (if provided via Google OAuth)
  • Workspace name and URL slug

Personnel and HR data

  • Employee first name, last name, job title, department, phone number
  • Leave requests (type, dates, duration, approval status)
  • Payslip and payment records (gross pay, deductions, net pay)
  • Daily standup entries and work item assignments

Usage data

  • Log data including IP address, browser type, pages visited, and timestamps
  • Device information for security purposes

Payment information

  • Billing details are handled by Stripe. We do not store credit card numbers.
  • We receive and store Stripe customer IDs and subscription status.

3. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain the Service
  • Send transactional emails (invitations, work item assignments, leave notifications)
  • Process billing and manage subscriptions
  • Detect and prevent fraud and abuse
  • Respond to support requests
  • Improve the Service through aggregate, anonymised analytics

We do not use your data for advertising purposes and we do not sell your personal data to third parties.

4. Data Storage and Security

Your data is stored on Neon (PostgreSQL) hosted on AWS infrastructure. All data is encrypted in transit using TLS and encrypted at rest.

We implement industry-standard security measures including password hashing (bcrypt), secure session management, and role-based access controls to protect your data.

While we take reasonable steps to protect your information, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

5. Third-Party Services

We use the following third-party services to operate the platform:

  • Resend: transactional email delivery
  • Stripe: payment processing and subscription management
  • Neon (AWS): PostgreSQL database hosting
  • Vercel: application hosting and edge network
  • Pusher: real-time notifications (channel IDs only)

Each of these providers has their own privacy policy governing their use of your data. We share only the minimum data necessary for each service to function.

6. Cookies and Sessions

We use cookies and session tokens to maintain your authenticated state. These are essential for the Service to function and cannot be disabled while using the platform.

We do not use tracking cookies, advertising cookies, or third-party analytics cookies.

7. Data Retention

We retain your data for as long as your account is active. If you close your account, we will delete your personal data within 30 days, except where we are required to retain it for legal or regulatory purposes.

Workspace owners can export their data at any time before account closure.

8. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

  • Access: request a copy of the data we hold about you
  • Correction: request that inaccurate data be corrected
  • Deletion: request deletion of your personal data
  • Portability: receive your data in a structured, machine-readable format
  • Objection: object to certain types of processing

To exercise any of these rights, contact us at support@digitalagentos.com. We will respond within 30 days.

9. Children's Privacy

The Service is not directed at children under the age of 16. We do not knowingly collect personal information from children. If you believe we have inadvertently collected data from a child, please contact us immediately.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or a notice within the Service. The "last updated" date at the top of this page reflects the most recent revision.

Continued use of the Service after changes constitutes your acceptance of the updated policy.

11. Contact

If you have any questions about this Privacy Policy or how we handle your data, please contact us at support@digitalagentos.com.