01
Who operates Romy
Romy is operated by Alice Bull, trading as Romy. Alice Bull is the data controller for the website, waitlist, account, billing, support, security, and product-analytics data described in this policy.
Contact: hello@romy.is. Postal address: 2261 Market Street, STE 94902, San Francisco, CA 94114, United States.
02
What this policy covers
This covers personal data collected when you sign up for Romy, connect accounts or tools to your workspace, use the product, or contact us for support. It does not cover linked third-party sites, which have their own policies.
03
When Romy acts for your business
When a business customer puts personal data about other people into a Romy workspace, or connects an account that contains it, that customer will normally be the data controller and Romy will process that data on the customer's documented instructions to provide the service. The customer is responsible for having a lawful basis, giving any required privacy notices, and responding to those people's requests. We will provide reasonable assistance with requests that concern Romy's processing. The Data Processing Addendum at https://romy.is/dpa forms part of the customer's agreement with Romy for that processing.
04
What Romy handles, and why
Romy is a workspace-based product. Data lives inside a workspace and is scoped to it. In rough order of sensitivity:
Open. Public or low-sensitivity material, such as public opportunity signals or content you choose to publish.
Internal. Operational workspace data: goals, deals, tasks, projects, notes, people, strategy artifacts, and company enrichment facts with provenance.
Sensitive. Inbox content, meeting transcripts, financial detail, credentials, and any connected-account data you grant access to (for example Google OAuth scopes).
Billing data. Handled by our payment processor (Stripe). We do not store full card numbers.
Website, account, and contact data. This includes name, email address, account and workspace details, support messages, IP address, device and browser information, and product-usage information. If you subscribe to updates, it also includes your email address and marketing preferences.
05
Connected accounts
When you connect a third-party account (email, calendar, CRM, or similar), Romy requests only the scopes needed for the features you use. Scopes are shown before you grant access, and connections can be revoked at any time from Settings. Tokens are encrypted before storage.
06
How we use your data
Workspace data belongs to the workspace. Romy is the custodian, not the owner. Specifically:
- To provide, secure, support, and administer Romy and your account.
- To operate connected features that you choose to enable, including Gmail, Google Calendar, Notion, Stripe, Resend, and GitHub when its connection is available.
- To send the weekly note and beta updates after you join the waitlist or request first-read access, and to honour an unsubscribe request.
- To understand and improve Romy through website and product analytics, where you have consented to optional analytics cookies.
- Workspace data is never sold or used for advertising.
- We may use anonymized, aggregated patterns across workspaces to improve the underlying product and strategy corpus. This never includes identifiable business or personal data, and never targets an identified account.
Where GDPR or UK GDPR applies, we rely on performance of a contract, our legitimate interests in operating, securing, and improving Romy, your consent for optional analytics and marketing where required, and compliance with legal obligations. You can withdraw consent at any time; this does not affect processing that was lawful before withdrawal.
Romy uses Vercel AI Gateway for model processing. Workspace data is not used to train any model. Sensitive requests are configured for Zero Data Retention and may be processed by US-based model providers selected through the gateway only to provide the requested feature.
08
International transfers
Workspace data is hosted in the EU. Some service providers, including US-based AI model providers reached through Vercel AI Gateway, process data outside the EU, EEA, or UK. Where required, we use an applicable adequacy decision or contractual safeguards such as the European Commission Standard Contractual Clauses and the UK International Data Transfer Addendum. Contact us if you would like information about the safeguards relevant to a transfer.
09
Retention
- Soft-deleted records: recoverable for 30 days, then purged.
- Meeting transcripts: kept until you delete them.
- Connected-account data: retained while the connection is active; deleted within 30 days after disconnection.
- Workspace deletion: when you ask us to delete a workspace, we remove its data from active systems after the applicable 30-day recovery window, except for billing and tax records we must retain. Secured backup copies are not restored except for disaster recovery and age out under the provider backup schedule.
- Billing and financial records: kept as required by applicable tax law.
- Marketing contact data: kept until you unsubscribe or ask us to delete it. We may keep a minimal suppression record so we continue to honour an opt-out.
- After these periods, data is deleted or anonymized.
10
Your rights
Subject to applicable law, you can ask to access, correct, delete, restrict, or export your data; object to processing based on legitimate interests; and withdraw consent where consent is the basis for processing. To exercise these rights, email hello@romy.is. We aim to respond within 30 days and may need to verify your identity. If you are in the EU, EEA, or UK, you may also complain to your local data-protection authority. Romy does not sell or share personal information as those terms are defined by California law. California residents may exercise applicable rights to know, correct, delete, or obtain a copy of their personal information without discrimination.
11
Security
We use encrypted storage, access controls scoped to what's needed, and workspace-level isolation enforced at the database layer rather than only in the application. If we discover a breach that meets the legal threshold, we will notify affected users and any required regulator without undue delay.
13
Children
Romy is for business use and is not directed at anyone under 18. By using Romy you confirm you are at least 18 years of age, have the legal capacity to enter into a binding agreement, and use the Services only for lawful purposes.
14
Data Romy is not designed for
Romy is not designed to process payment-card numbers, government-issued identification numbers, health or genetic data, biometric data, criminal-record data, or data revealing racial or ethnic origin, political opinions, religious beliefs, trade-union membership, or sexual orientation. Do not submit this information to Romy.
15
Changes to this policy
Material changes will be flagged in-app and may require re-acknowledgement. The "last updated" date will reflect the most recent change.
16
Contact
End of privacy policy.
