Privacy Policy
Last updated: June 2026
This Privacy Policy explains how AUR Ventures LLC ("OrgSage," "we," "us") collects, uses, and protects information when you use the OrgSage service. OrgSage is operated from the United States. By using the service you consent to the processing described here.
1. What We Collect
Account information: Your email address and display name. If you sign up with email and password, we store a one-way hash of your password (Argon2id) — never the password itself. If you sign in with Google, we receive your email, name, and avatar from Google.
Salesforce metadata: When you connect an org, we sync its schema definitions, field structures, automation configurations (flows, triggers, validation rules), and dependency relationships.
OAuth credentials: To run background metadata syncs on your behalf, we store the OAuth refresh token Salesforce issues for each connected org, encrypted at rest with AES-256-GCM. This token is deleted the moment you disconnect the org or delete your account. We never receive or store your Salesforce username or password.
Usage & billing: Product usage counters (e.g. message and sync volume) for plan limits, and — for paid plans — billing records. Card details are handled entirely by Stripe; we never see or store full card numbers.
2. What We Do NOT Collect
OrgSage reads metadata only — never the data inside your org. We do not access, store, or process:
- Customer records or field values from your Salesforce org
- Personally identifiable information (PII) held in your Salesforce records
- Attachments, files, or documents stored in Salesforce
- Your Salesforce username or password
We read the structure and configuration of your org, not the business data within it.
3. How We Use Your Data
- Providing impact analysis, dependency mapping, drift detection, and AI-powered insights
- Running scheduled and on-demand metadata syncs for your connected orgs
- Operating, securing, and improving the service
- Processing payments and enforcing plan limits
- Sending transactional email (verification, notifications, account and billing notices)
We do not sell your data, and we do not use it for advertising.
4. AI Processing
OrgSage's AI features send relevant metadata context (never your Salesforce record data) to OpenAI to generate analysis and answers. This is processed through OpenAI's API, which under OpenAI's policy does not use API data to train its models. We may change or add AI providers to operate the service; we will only ever send metadata, never the business data inside your org.
5. Third-Party Services
We share data with these processors only as needed to run the service:
- OpenAI — AI analysis (metadata context only; not retained for training).
- Stripe — Payment processing. We never store full card numbers.
- Resend — Transactional email delivery.
- Google — Optional sign-in (only if you choose Google sign-in).
- Railway — Cloud hosting and database infrastructure (United States).
6. Data Retention & Deletion
Disconnecting an org permanently and immediately deletes that org's synced metadata, snapshots, analysis history, and stored OAuth token from our systems.
Deleting a workspace permanently and immediately purges all of its connected orgs, metadata, snapshots, and related records.
Deleting your account (Settings → Profile → Delete Account) permanently and immediately deletes your account, the workspaces you solely own and all of their data, and cancels any active subscription. This is a hard delete, not a soft flag — once complete, the data cannot be recovered.
We do not impose a fixed retention window: your data lives only as long as you keep the org, workspace, or account connected. Routine encrypted infrastructure backups are rotated on a short cycle, after which deleted data ages out of them as well.
7. Cookies
We use a single essential session cookie to keep you signed in. We do not use advertising cookies or cross-site tracking. See our Cookie Policy for details.
8. Security
Data is encrypted in transit (TLS) and at rest. OAuth refresh tokens are encrypted with AES-256-GCM. Authentication uses HMAC-signed tokens with short expiry windows, and passwords (when used) are stored only as Argon2id hashes. No system is perfectly secure, but we work to protect your data using industry-standard practices.
9. Your Rights
Depending on where you live (including under the GDPR and CCPA), you may have the right to:
- Access: Request a copy of the personal data we hold about you.
- Deletion / erasure: Delete your account and all associated data, self-serve, at any time.
- Portability: Export your analysis data in CSV or JSON.
- Correction: Update your account information in Settings.
- Objection: Object to or restrict certain processing.
We do not sell personal information. To exercise any right, email admin@getorgsage.com.
10. Children's Privacy
OrgSage is not intended for individuals under 16, and we do not knowingly collect data from children.
11. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated via email. Continued use of the service after changes take effect constitutes acceptance.
12. Contact
Questions about privacy, or to exercise your rights? Contact AUR Ventures LLC at admin@getorgsage.com.