Privacy Policy

Last updated: {{EFFECTIVE DATE}}

This Privacy Policy explains what personal data SignalOps (“we”, “us”), operated by {{LEGAL ENTITY — e.g. “SignalOps Ltd.”}}, collects when you use signalops.one and the SignalOps application, why we collect it, and the choices you have. SignalOps is a tool that reads a team’s written communication and work-tracker data and turns it into structured signals and analytics.

Because SignalOps analyses content from the workspaces you connect, please read the “Workspace content” section carefully — it is the data that matters most.

Who we are

SignalOps is operated by {{LEGAL ENTITY — e.g. “SignalOps Ltd.”}}. For any privacy question, or to exercise the rights described below, contact us at {{CONTACT EMAIL — e.g. privacy@signalops.one}}.

Data we collect

  • Account data — your email address and a securely hashed password (we never store your password in plain text).
  • Workspace connections — the access tokens for the tools you connect (Slack, Microsoft Teams, Discord, Linear, Jira, Asana, ClickUp). These credentials are encrypted at rest.
  • Workspace content — the messages and work items from the channels and projects you choose to analyse, and the structured signals (decisions, action items, risks, open questions) we derive from them. You control which channels and projects are in scope.
  • Billing data — handled by our payments provider, Paddle, which acts as merchant of record. We receive limited transaction and subscription metadata; we do not store your full card details.
  • Usage and technical data — logs, request identifiers and basic diagnostics needed to operate the service securely and debug issues.

Workspace content — what we do and do not do

When you connect a workspace and run an analysis, we read the messages and tracker items in the channels and projects you selected, send them to the language-model provider you have configured to extract signals, and store the resulting structured signals together with references back to the source. We do not join your calls and we record no audio.

We use your content to produce your reports and to operate the features you enabled. We do not sell your data, and we do not use your workspace content to train our own models.

How we use data

  • To provide the service — connect your tools, run analyses, and show you signals and reports.
  • To operate and secure the service — authentication, abuse prevention, debugging, and maintaining reliability.
  • To handle billing and subscriptions through Paddle.
  • To communicate with you about your account and the service (for example, team invitations, sent via Resend).

Legal bases (EEA/UK)

Where the GDPR or UK GDPR applies, we process personal data on the basis of performing our contract with you (providing the service), our legitimate interests (securing and improving the service), your consent where required, and to meet legal obligations. Where you connect a workspace on behalf of an organisation, you are responsible for having the authority and lawful basis to do so.

Sub-processors

We rely on a small number of third parties to run the service — a payments provider, a language-model provider, an email provider, and a hosting provider. The current list, and what each one processes, is on our Sub-processors page.

Data retention

We keep your account and configuration for as long as your account is active. Workspace content and derived signals are kept according to your workspace’s retention settings; where retention cleanup is enabled, data older than your chosen window is deleted automatically. You can delete signals, disconnect a source, or delete your account at any time; deleting your account removes your data, subject to short operational backup windows and any retention we are legally required to observe.

Security

Traffic to the service is encrypted in transit with TLS. Connection credentials and other secrets are encrypted at rest. Access is restricted and scoped per workspace. No system is perfectly secure, but we take reasonable technical and organisational measures to protect your data.

Your rights

Depending on where you live, you may have the right to access, correct, export, or delete your personal data, to object to or restrict certain processing, and to withdraw consent. To exercise any of these, contact {{CONTACT EMAIL — e.g. privacy@signalops.one}}. You also have the right to complain to your local data protection authority.

International transfers

The service is hosted in the European Union. Some sub-processors may process data in other countries; where they do, appropriate safeguards (such as standard contractual clauses) are relied upon.

Children

SignalOps is a workplace tool and is not directed to children. We do not knowingly collect data from anyone under 16.

Changes

We may update this policy. Material changes will be reflected here with a new “last updated” date, and where appropriate we will notify you.

Contact

Questions about this policy or your data: {{CONTACT EMAIL — e.g. privacy@signalops.one}}. Operator: {{LEGAL ENTITY — e.g. “SignalOps Ltd.”}}.