Skip to content
Romy.

Privacy Policy

How Romy handles website, workspace, connected-account, product-usage, and support data.

Last updated

Sections

01

Who operates Romy

Romy is operated by Alice Bull, trading as Romy. Alice Bull is the data controller for the website, waitlist, account, billing, support, security, and product-analytics data described in this policy.

Contact: hello@romy.is. Postal address: 2261 Market Street, STE 94902, San Francisco, CA 94114, United States.

02

What this policy covers

This covers personal data collected when you sign up for Romy, connect accounts or tools to your workspace, use the product, or contact us for support. It does not cover linked third-party sites, which have their own policies.

03

When Romy acts for your business

When a business customer puts personal data about other people into a Romy workspace, or connects an account that contains it, that customer will normally be the data controller and Romy will process that data on the customer's documented instructions to provide the service. The customer is responsible for having a lawful basis, giving any required privacy notices, and responding to those people's requests. We will provide reasonable assistance with requests that concern Romy's processing. The Data Processing Addendum at https://romy.is/dpa forms part of the customer's agreement with Romy for that processing.

04

What Romy handles, and why

Romy is a workspace-based product. Data lives inside a workspace and is scoped to it. In rough order of sensitivity:

Open. Public or low-sensitivity material, such as public opportunity signals or content you choose to publish.

Internal. Operational workspace data: goals, deals, tasks, projects, notes, people, strategy artifacts, and company enrichment facts with provenance.

Sensitive. Inbox content, meeting transcripts, financial detail, credentials, and any connected-account data you grant access to (for example Google OAuth scopes).

Billing data. Handled by our payment processor (Stripe). We do not store full card numbers.

Website, account, and contact data. This includes name, email address, account and workspace details, support messages, IP address, device and browser information, and product-usage information. If you subscribe to updates, it also includes your email address and marketing preferences.

05

Connected accounts

When you connect a third-party account (email, calendar, CRM, or similar), Romy requests only the scopes needed for the features you use. Scopes are shown before you grant access, and connections can be revoked at any time from Settings. Tokens are encrypted before storage.

06

How we use your data

Workspace data belongs to the workspace. Romy is the custodian, not the owner. Specifically:

  • To provide, secure, support, and administer Romy and your account.
  • To operate connected features that you choose to enable, including Gmail, Google Calendar, Notion, Stripe, Resend, and GitHub when its connection is available.
  • To send the weekly note and beta updates after you join the waitlist or request first-read access, and to honour an unsubscribe request.
  • To understand and improve Romy through website and product analytics, where you have consented to optional analytics cookies.
  • Workspace data is never sold or used for advertising.
  • We may use anonymized, aggregated patterns across workspaces to improve the underlying product and strategy corpus. This never includes identifiable business or personal data, and never targets an identified account.

Where GDPR or UK GDPR applies, we rely on performance of a contract, our legitimate interests in operating, securing, and improving Romy, your consent for optional analytics and marketing where required, and compliance with legal obligations. You can withdraw consent at any time; this does not affect processing that was lawful before withdrawal.

Romy uses Vercel AI Gateway for model processing. Workspace data is not used to train any model. Sensitive requests are configured for Zero Data Retention and may be processed by US-based model providers selected through the gateway only to provide the requested feature.

07

Who we share data with

We use service providers to run Romy: Supabase (EU database, authentication, and storage); Vercel (hosting, delivery, and AI Gateway); Stripe (payments); PostHog, Vercel Web Analytics, Vercel Speed Insights, and Google Analytics (analytics); Resend (email); and, when you choose to connect them, Google Gmail and Calendar, Notion, and GitHub. Vercel AI Gateway may route a request to a US-based model provider. Each receives only the data needed for its role.

We may also share data with professional advisers, a successor to our business, or authorities when legally required, and with a third party when you direct us to do so.

08

International transfers

Workspace data is hosted in the EU. Some service providers, including US-based AI model providers reached through Vercel AI Gateway, process data outside the EU, EEA, or UK. Where required, we use an applicable adequacy decision or contractual safeguards such as the European Commission Standard Contractual Clauses and the UK International Data Transfer Addendum. Contact us if you would like information about the safeguards relevant to a transfer.

09

Retention

  • Soft-deleted records: recoverable for 30 days, then purged.
  • Meeting transcripts: kept until you delete them.
  • Connected-account data: retained while the connection is active; deleted within 30 days after disconnection.
  • Workspace deletion: when you ask us to delete a workspace, we remove its data from active systems after the applicable 30-day recovery window, except for billing and tax records we must retain. Secured backup copies are not restored except for disaster recovery and age out under the provider backup schedule.
  • Billing and financial records: kept as required by applicable tax law.
  • Marketing contact data: kept until you unsubscribe or ask us to delete it. We may keep a minimal suppression record so we continue to honour an opt-out.
  • After these periods, data is deleted or anonymized.

10

Your rights

Subject to applicable law, you can ask to access, correct, delete, restrict, or export your data; object to processing based on legitimate interests; and withdraw consent where consent is the basis for processing. To exercise these rights, email hello@romy.is. We aim to respond within 30 days and may need to verify your identity. If you are in the EU, EEA, or UK, you may also complain to your local data-protection authority. Romy does not sell or share personal information as those terms are defined by California law. California residents may exercise applicable rights to know, correct, delete, or obtain a copy of their personal information without discrimination.

11

Security

We use encrypted storage, access controls scoped to what's needed, and workspace-level isolation enforced at the database layer rather than only in the application. If we discover a breach that meets the legal threshold, we will notify affected users and any required regulator without undue delay.

12

Cookies

Our Cookie Notice explains the cookies and similar technologies we use, including how to accept, reject, or later change optional analytics: https://romy.is/cookies.

13

Children

Romy is for business use and is not directed at anyone under 18. By using Romy you confirm you are at least 18 years of age, have the legal capacity to enter into a binding agreement, and use the Services only for lawful purposes.

14

Data Romy is not designed for

Romy is not designed to process payment-card numbers, government-issued identification numbers, health or genetic data, biometric data, criminal-record data, or data revealing racial or ethnic origin, political opinions, religious beliefs, trade-union membership, or sexual orientation. Do not submit this information to Romy.

15

Changes to this policy

Material changes will be flagged in-app and may require re-acknowledgement. The "last updated" date will reflect the most recent change.

16

Contact

hello@romy.is

End of privacy policy.