This notice explains what Oshyn Inc (“Oshyn”) collects when you use the ContextCloud website at contextcloud.works and the ContextCloud account portal at account.contextcloud.works, why we collect it, and what you can do about it. It does not cover what happens inside the ContextCloud product itself once your organization is created; that is covered by the terms your organization agrees to.
This website sets no cookies
The marketing site you are reading sets no cookies, loads no third-party scripts, and stores nothing in your browser. There is no consent banner because there is nothing to consent to. This is enforced by an automated check that fails our build if anyone adds a script, a cookie, or browser storage to this site.
Our web servers do keep ordinary access logs, which include your IP address, the page you requested, the page that referred you, and your browser's user-agent string. We use them to understand which pages are read and to investigate faults and abuse.
The account portal
The portal uses a privacy-respecting analytics service that sets no cookies and does not track you across other websites. It records page views and a small number of product events, such as completing registration.
What we collect, and why
If you join the waitlist
We store the email address you give us, and your name and company if you choose to provide them. We also record whether you opted in to marketing email, the IP address and browser user-agent string the registration came from, and the times at which you registered, confirmed your email, were admitted, or asked to be removed.
The email address is how we confirm your registration and tell you when you are admitted. The IP address and user-agent string are kept as a record of the registration itself and to detect abuse of the form. Name and company help us understand who is asking for access.
If you accept our terms or notices
When you accept a document in the portal, we record which document it was, its version and a cryptographic hash of its exact text, the time you accepted it, the IP address and user-agent string you accepted it from, and where in the product you did so. If you later withdraw that acceptance we record when. We keep the hash rather than a copy of the text so that we can prove precisely which wording you agreed to.
If your organization buys a subscription
Payment is handled by our payment processor. We do not receive or store your card details. We store the identifiers the processor gives us so that we can match a payment to your organization, along with your organization's billing status.
Marketing email
We send marketing email only if you opted in, and that choice is separate from the operational email we send about your registration or account. Every marketing message carries an unsubscribe link. When you unsubscribe or ask to be removed, we keep a one-way hash of your email address so that we can recognise it and avoid contacting you again. That suppression record is kept indefinitely, because it is the mechanism by which your removal is honoured.
Who else handles your information
We use a small number of service providers to operate ContextCloud. Each one handles your information only to provide their service to us:
- a cloud hosting provider, which runs our servers and databases and holds our backups;
- two email delivery providers, which send the messages described above;
- a payment processor, which handles subscription payments;
- an analytics provider for the account portal, as described above.
We publish the current list of providers, and what each is used for, on our subprocessors page.
Where your information is held
ContextCloud is operated from the United States, and your information is stored and processed there.
How long we keep it
| What | How long |
|---|---|
| Waitlist registrations you never confirmed | 7 days, then deleted |
| Confirmed waitlist registrations | Until you are admitted or ask to be removed. If neither has happened within 24 months of you confirming your address, we delete the registration |
| Portal accounts and acceptance records | For as long as the account exists, and then for the period we are required to keep them |
| Organizations that close their ContextCloud account | 365 days after closure, so the organization can be reinstated or its data exported on request; then deleted |
| Server access logs | 90 days |
| Unsubscribe suppression records | Indefinitely, so that your removal keeps being honoured |
| Backups | Deleted on our backup cycle, after which copies age out |
The full schedule, including the stores inside the product, is on our retention schedule.
Your choices
You can ask us what we hold about you, ask us to correct it, ask us to delete it, and unsubscribe from marketing at any time. If you have a portal account you can delete it yourself from your account settings. For anything else, write to privacy@contextcloud.works and a person will answer.
If you are in California, you have specific rights under California law, including the right to know what we collect, to have it deleted, and to correct it. We do not sell your personal information and we do not share it for cross-context behavioural advertising. Exercising these rights never costs you anything and we will not treat you differently for it.
If you are in Canada, you may ask for access to the personal information we hold about you and challenge its accuracy, on the same contact address.
Who we market to
We market ContextCloud in the United States and Canada. We do not advertise, solicit business, or target our services outside those countries. Anyone may join the waitlist, but this notice is written for the United States and Canada.
Automated and AI-generated content
ContextCloud is a product for running AI agents. Output produced inside the product is generated by AI models and may be inaccurate. Nothing on this website or in the portal makes an automated decision that has a legal or similarly significant effect on you.
Children
ContextCloud is a product for businesses and is not directed at children. We do not knowingly collect information from anyone under 16.
Changes
When this notice changes we publish a new version with a new version number and effective date, and the previous versions remain identifiable by the record we keep of what you accepted.
Contact
Oshyn Inc
privacy@contextcloud.works