OperatorHQ policies · July 2026

Privacy Policy

How OperatorHQ minimises, protects, retains, and deletes account and project information.

Early Access · Beta: OperatorHQ is in early access. These policies apply today and may be updated as formal legal review completes; material changes are announced before they take effect.

Information collected

OperatorHQ collects necessary account, workspace, project, uploaded-file, run, approval, billing-status, security, audit, and first-party product-event data. It avoids advertising profiles and unnecessary personal data.

Purposes

Data is used to authenticate users, provide workflows, enforce permissions and budgets, store private work, process payments, prevent abuse, support requests, and meet retention or deletion instructions.

AI providers

When an operator selects a paid AI provider, task inputs and approved attachments needed for that task may be transmitted server-side under the provider's terms. Demo and manual modes do not require a paid AI call.

Client data is never used to train AI models. Customer inputs or outputs are not used for marketing by OperatorHQ, and providers are engaged under terms that prohibit training on client data.

Claim Checker text

Text submitted to the free Claim Checker is processed in memory to produce your report and is never used for model training. It is not written to our database or logs. An anonymized copy is stored only when you explicitly create a share link for a result, and only for that result.

Storage and sharing

Uploads are private. Production downloads use short-lived signed links. Data may be shared with configured infrastructure, email, AI, storage, and payment processors only as needed to provide the service or comply with law.

Retention and rights

Workspace retention is configurable. The product models data export and deletion for projects, accounts, and workspaces. Backups, processor deletion, identity verification, and jurisdiction-specific rights procedures must be validated before launch.

Data deletion

To request deletion of your account or workspace data, email a deletion request through the site contact channel (/contact) from the address associated with your workspace.

Verified deletion requests are executed within 30 days. Encrypted backups and downstream processors complete deletion on their own schedules, and audit exports already downloaded remain governed by the Terms.

No automatic compliance claim

OperatorHQ does not claim automatic compliance with GDPR, CCPA, PDPO, or any other privacy law. A data map, privacy impact assessment, processor agreements, transfer analysis, and legal review remain required.