Privacy Policy

What information SipScale collects, why, who processes it for us, and the choices you have.

Version 2026-09-28-draft · Last updated 28 September 2026

Draft for legal review. This text is not final, and bracketed items are still to be decided.

Information you give us

Account details: your name, email address and password (stored by our authentication provider as a one-way hash).

Company information you enter in Business Profile, such as legal names, addresses, ownership, officers, licenses and federal and state identifiers. Owner Social Security numbers are encrypted before they are stored, and identifiers such as EINs are masked on screen until someone with permission chooses to show them.

Documents you upload to SipVault, brands, products and SKUs, markets, tasks, and anything you send through Report a Bug or Give Feedback.

Information collected automatically

Error reports: when something breaks, we record the error and where in the code it happened. Before a report is sent, we remove text that looks like a Social Security number, EIN or email address, and we do not attach your identity, form contents or documents.

Product usage: we record specific actions, such as creating an account, adding a brand or uploading a document, with your user and company IDs and short codes (for example a state code). We do not record what you type into forms, the contents of documents, or session recordings.

We do not store your IP address with your acceptance of these documents. [Server and security logging by our hosting providers to be described.]

How we use information

To run SipScale for you and your team: show your information to the people you have given access, work out which requirements apply to your markets, send account and team-invitation emails, keep the service secure, and fix problems.

We do not sell your information. [Any marketing use to be confirmed.]

Who processes information for us

Supabase: database, authentication and file storage. Replit: application hosting. Resend: account and invitation email. Sentry: error reports. PostHog: product-usage events. OpenAI: features that generate market and distributor research from the answers you give in those features.

[Processor locations, data-processing terms and international transfers to be confirmed.]

Who can see your company's information

People in your company see what their role allows. Other companies cannot see your company's information. A small number of SipScale staff with platform administrator access can see it to support you and operate the service.

Keeping and deleting information

[Retention periods, and how to request export or deletion, to be confirmed.] Contact [privacy email].

Your rights and changes

[Rights under applicable privacy laws, and how to exercise them, to be provided by counsel.]

When this policy changes, we will show the new version in SipScale and ask you to accept it before you continue.