Fyve Labs Privacy and Data Retention Policy
TL;DR
Here's what you need to know:
What We Do
- We're Fyve Labs. We do two things:
- 1. Help companies with tech consulting (Services)
- 2. Create software and AI products (Products)
Your Data
- For Services: We keep client information to do our job and store it safely.
- For Products: We collect data to make our products work and improve them, but we don't sell your data.
Your Rights
- You can ask what data we have about you
- You can ask us to delete your data
- You can opt out of certain data collection
- We protect your data using strong security in US-based locations
Important Points
- We don't sell your personal data
- We keep data only as needed
- We follow US and European privacy laws
- You can email legal@fyve.dev at any time
Definitions
- Services: Professional consulting, technical advisory, implementation assistance, and other professional services provided by Fyve Labs to its clients.
- Products: Software, AI models, applications, platforms, or other technical solutions developed and maintained by Fyve Labs.
- Client: An organization or individual engaging Fyve Labs for Services.
- End User: An individual using Fyve Labs Products.
Services
Data Collection
- Client business information
- Employee contact information
- Project documentation
- Client systems access credentials
- Meeting recordings and transcripts
- Work products and deliverables
Retention Periods
- Active Project Data: Duration of engagement plus 2 years
- Client Communications: 5 years
- Contract Documentation: 7 years
- Work Products: As specified in client agreements
Products
Data Collection
- User account information
- Usage telemetry
- Performance metrics
- AI training data
- User-generated content
Retention Periods
- Active Account Data: Account duration plus 90 days
- System Logs: 30 days
- Performance Metrics: 12 months
- Training Data: 24 months
Security Measures
Technical Controls
- TLS 1.3 encryption in transit
- AES-256 encryption at rest
- Role-based access control
- Multi-factor authentication
- Regular security scanning
Compliance Frameworks
- SOC 2 Type II
- GDPR
- CCPA/CPRA
Data Rights
US Rights
- Right to Know
- Right to Delete
- Right to Opt-Out
- Right to Non-Discrimination
GDPR Rights
- Right to Access
- Right to Rectification
- Right to Erasure
- Right to Restrict Processing
- Right to Data Portability
- Right to Object
Contact Information
- Email: legal@fyve.dev
- Response Time: Within one business week
- Security Incidents: legal@fyve.dev
- Press Inquiries: info@fyve.dev
Version History
Current Version
- Version: 1.0
- Last Updated: December 16, 2024
- Effective Date: December 16, 2024
This policy is maintained by Fyve Labs Legal and Privacy Team.
