LEGAL / DATA HANDLING
Privacy policy
How the Netlabs portfolio collects, uses, retains, and deletes account, support, and connected-platform data.
Published pre-release policy — the contracting legal entity, registered address, and production subprocessor schedule must be approved before marketplace submission or payment acceptance.
Scope and roles
This policy covers BoardDrift, ReplenishIQ, GuestPreflight, CosmeticLedger, RebillLens, EvidencePass, this website, and associated support services. Every product and publisher name remains a working candidate until legal-name clearance is complete.
For customer-controlled platform records, the customer is generally the controller and the publisher acts as processor or service provider. For account administration, security logs, billing records, and support requests, the publisher acts as controller.
Data we process
- Account and organization data: name, work email, authentication identifiers, role, plan, and organization membership.
- Connected-platform data selected by the customer: configuration snapshots, inventory and sales aggregates, external-collaborator metadata, order and product references, renewal records, supplier evidence metadata, and diagnostic results.
- Support and pilot data: contact details, product selection, messages, attachments supplied through an approved channel, and resolution history.
- Security and usage data: audit events, request identifiers, coarse device and browser information, timestamps, rate-limit keys, and error telemetry. The preview tools do not save the JSON sample submitted on a public product page.
Why we use data
- Provide requested diagnostics, evidence workflows, account administration, support, and contracted services.
- Secure the service, prevent abuse, investigate incidents, maintain tenant isolation, and produce auditable records.
- Measure activation and reliability using minimized event data, improve rules with de-identified or aggregated evidence, and meet legal obligations.
- We do not sell personal information, use customer content for advertising, or train general-purpose AI models on customer content.
Permissions and first-release limits
The first connected releases request the narrowest feasible read permissions. They do not automatically change boards, inventory, guest accounts, orders, subscriptions, payments, regulatory filings, or registry records. Product-specific permission scopes are shown during installation and in the applicable marketplace listing.
Third-party platforms process data under their own terms. Removing an app revokes future access but may not immediately erase records already retained under a customer contract; use the deletion process below.
Retention and deletion
- Public preview payloads: processed in memory and not intentionally persisted; standard infrastructure logs may retain request metadata without the submitted JSON.
- Diagnostic runs: retained for the customer-selected workspace period, with a launch default no longer than 90 days unless contract, legal hold, or an explicit evidence-retention setting requires otherwise.
- Security and audit logs: retained according to the production retention schedule, targeted at 90–365 days depending on event sensitivity.
- Support requests: targeted for deletion or de-identification within 90 days after closure unless needed for an active contract, dispute, or legal requirement.
Sharing, transfers, and rights
Data may be shared with vetted hosting, database, email, error-monitoring, authentication, billing, and support providers only to operate the service. A named subprocessor list and transfer mechanism will be published before production launch.
Depending on location, people may request access, correction, deletion, restriction, portability, or objection, and may complain to a regulator. Submit a request through the support page or email privacy@netlabs.app. Identity and authority over the relevant organization will be verified before disclosure or deletion.