1. Introduction
Ordo AI ("Ordo", "we", "us") is committed to protecting your privacy. This policy explains what data we collect, how we use it, and your rights regarding that data.
2. Data We Collect
Account data:
- Name and email address
- Company name and role
- Password (hashed, never stored in plain text)
Integration data:
- API tokens and credentials (encrypted at rest)
- Pipeline names and identifiers
- Orchestrator and warehouse connection details
Pipeline and operational data:
- Failed pipeline run logs
- Run history (last 7–90 days depending on plan)
- Schema change events
- Upstream row counts and query metadata
- Adapter and package version information
Usage data:
- Pages visited within the application
- Features used
- Diagnosis feedback (helpful / not helpful)
- Error logs for debugging purposes
3. How We Use Your Data
We use your data to:
- Provide the pipeline diagnosis service
- Improve diagnosis accuracy over time
- Send Slack notifications about pipeline failures
- Respond to support requests
- Send product updates and announcements (you can opt out)
- Detect and prevent fraud or abuse
We do not:
- Sell your data to third parties
- Use your pipeline data to train AI models shared across customers
- Share your workspace data with other Ordo customers
4. Data Storage and Security
- All data is stored on Appwrite Cloud infrastructure
- Credentials are encrypted using Fernet (AES-128) encryption
- Data is transmitted over HTTPS/TLS
- Workspace data is strictly isolated — no cross-workspace access
- We perform regular security reviews
5. Data Retention
- Active workspace data: retained while your account is active
- Diagnosis history: 7 days (free), 90 days (Pro), 1 year (Team)
- Deleted workspace data: purged within 30 days of deletion request
- Backup data: purged within 90 days
6. Third-Party Services
Ordo uses the following third-party services:
| Service | Purpose |
|---|
| Appwrite | Database and authentication |
| Upstash | Redis cache and vector search |
| Anthropic (Claude) | AI diagnosis generation |
| OpenAI | AI diagnosis generation |
| Google (Gemini) | AI diagnosis generation |
| Slack | Diagnosis delivery |
| Resend | Transactional email |
Each of these services has their own privacy policy. We share only the minimum data necessary for each service to function.
7. Slack Integration
When you connect Slack:
- We store your Slack workspace token (encrypted)
- We send diagnosis messages to the channel you specify
- We receive button click events (feedback) from Slack
- We do not access any other Slack messages or channels
8. Cookies
- Session cookie for authentication
- No advertising or tracking cookies
- No third-party analytics cookies
9. Your Rights
- Access — request a copy of all data we hold about you
- Correction — request correction of inaccurate data
- Deletion — request deletion of your account and all associated data
- Portability — request your data in a machine-readable format
- Opt-out — unsubscribe from marketing emails at any time
To exercise any of these rights, email: anshumangoswami07@gmail.com. We will respond within 30 days.
10. Children's Privacy
Ordo is not intended for users under 18 years of age. We do not knowingly collect data from children.
11. International Data Transfers
Ordo is operated from India. If you are accessing from outside India, your data may be transferred to and processed in India or other countries where our service providers operate. By using Ordo, you consent to this transfer.
12. Changes to This Policy
We may update this privacy policy at any time. We will notify you via email or in-app notification of significant changes. The date at the top of this document indicates when it was last updated.