Skip to content

This policy explains how personal data is handled in ProgramOS. Two cases are distinguished: beneficiary data entered by a customer organization, where that organization is the controller and we are the processor, and contracting and visitor data, where we are the controller.

Our role in each case

When an organization runs its program on the platform, it determines the purpose and means of processing its beneficiaries’ data, and we process that data under its instructions solely to operate the service. Your own data, as a representative of an organization or a visitor who writes to us, is data we control and process to manage the relationship and reply to you.

What we collect about you

Account data such as name, email, organization and role. Technical usage data needed for operation and security, such as sign in time and request identifier. And whatever you choose to send us through the contact form. We use no advertising trackers and build no interest profiles.

Cookies

We use strictly necessary cookies only: a session cookie to keep you signed in, one that stores the language, and one that stores light or dark appearance. There are no advertising or third party analytics cookies.

Basis for processing

Account data is processed to perform our contract with you. Security data and logs rest on a legitimate interest in protecting the service and meeting regulatory obligations. What you send through the contact form rests on your consent, which you may withdraw at any time.

Sharing

We do not sell personal data. We share it only with service providers necessary to operate, such as hosting and email, under contracts limiting their use to what we instruct, and with competent authorities where the law requires. Any transfer outside the Kingdom is subject to prior assessment and contractual safeguards.

Retention

Each organization sets retention periods for its beneficiaries’ data inside its workspace, and the platform carries out deletion with human approval and a recorded tombstone. Contracting data is kept for the life of the relationship and for the period the regulations require afterwards. Contact messages are deleted once their purpose ends.

Your rights

You have the right to be informed, to access, to obtain a copy, to request correction or erasure, and to withdraw consent. If your data sits with an organization using the platform, the request goes to that organization as the controller, and the platform gives it the tools to fulfil these rights and track their deadlines. If the data sits with us, write to us directly.

Security

Encryption in transit, hashed passwords, mandatory two step verification for anyone reaching organization data, tenant isolation tested automatically, attachment scanning, and an audit record of every operation with a correlation identifier. None of this means risk is absent, which is why we maintain a documented incident path.

Incidents

We record when we learned of an incident, its scope, its assessment and the action taken, and escalate to the customer organization without undue delay so it can notify the competent authority and data subjects where the conditions for that are met.

Artificial intelligence

The in platform assistant is disabled by default. It is enabled only by a decision of the organization admin with an acknowledgement of how data is processed, and customer data is not used to train models. An organization can switch it off at any moment, and all outbound sending stops immediately.

Privacy contact

For any question or request about this policy use the contact page and choose the security and privacy topic. We reply within the statutory period.