Privacy Policy
Effective 2026-07-29. Companion to the User Agreement.
What we collect
- Account and billing contact details you provide (name, email, business name).
- Stripe payment metadata (Stripe processes cards; we do not store full card numbers).
- Product usage needed to run Roger (sessions, tasks, vault metadata).
- Agreement acceptance records (version, time, source, IP/user-agent when available).
- For the first 12 months of owned-database customers: failure/fix reports when Roger cannot fulfill a request (request, why failed, leading context, resolution) โ not a full database copy.
- Operational logs for security, abuse prevention, and reliability.
How we use data
- Provide Roger, owned databases, setup meetings, and support.
- Bill and communicate about your subscription (month-to-month; 30-day cancel notices).
- Improve Roger from failure/fix reports during the 12-month window.
- Secure the service and enforce the User Agreement.
Sharing
We use processors such as Stripe (payments), Resend (transactional email), and optionally Twilio (SMS/voice). We do not sell your customer database contents. Board ops email for setup meetings: [email protected].
Security
Customer vaults are isolated per customer, auth-gated on Spark, and transported over HTTPS/TLS. No security practice is perfect; report issues to [email protected].
Retention
Billing and agreement records are kept as needed for operations and legal obligations. Failure/fix report sharing obligation ends after 12 months; ownership of your database remains yours after setup.
Your choices
Request export or access questions via [email protected]. Canceling Roger does not erase your right to keep database exports you lawfully obtained.