Data-processing information
The service providers involved when you submit a form on this website.
This page sets out the intended structure. It is not approved legal advice or a final published policy, and the signed agreement takes precedence over it.
This website versus the application
Two different things are described here. This website processes only what you type into its two forms, and is covered by the privacy notice. The ProposalOS application processes an organization's own documents and proposal content, under a written agreement made before access is granted.
Roles
For application data the customer organization decides what is uploaded, why, and how long it is kept — it is the controller of its own content. ProposalOS processes that content on documented instructions in order to provide the service, and for no other purpose.
Separation between organizations
Each customer organization's files, extracted knowledge, search index and AI context are scoped to that organization. One customer's content is never used to answer another customer's search, and never contributes to another customer's recommendations.
Use for model training
Customer content is not used for shared external-model training by default. Where a capability would require sending content to an external provider, the provider, the region and the terms are disclosed in the agreement before that capability is enabled.
Access, audit and retention
Access follows roles, administrative access is controlled and recorded, and significant actions are written to an audit history the customer can review. Hosting region, retention periods, backup handling and any sub-processors are set out in writing during onboarding.
Requests about application data
Requests to export or delete an organization's content are made by that organization's administrator and handled under the signed agreement. Write to info@theproposalos.com to start one.