Legal

Privacy Policy

Effective August 13, 2026

Foixar Corporation ("Foixar," "we," "us") provides delivery-governance software to organizations. This policy explains what we collect, why, and the choices you have. Our short version: we collect the minimum needed to run the Service, your code stays in your boundary, and we never train models on your content.

1What we collect

  • Account information — name, work email, organization, role, and authentication identifiers from your identity provider.
  • Customer Content — requirements, transcripts, specifications, decisions, repository metadata, and code context you connect, processed on your organization's instruction to provide the Service.
  • Usage telemetry — feature events, performance metrics, and diagnostic logs, minimized and access-controlled.
  • Support & sales communications — messages you send us, demo bookings, and contact requests.

2How we use it

To provide, secure, and improve the Service; to authenticate users and enforce tenant isolation; to respond to support requests; to send operational notices; and, for business contacts, limited product communications you can opt out of. We do not sell personal information and we do not run advertising trackers.

3Your models, your endpoints

When your organization configures bring-your-own model endpoints, prompts and grounding context are routed to your configured providers under your agreements with them. Foixar does not use Customer Content to train machine-learning models — ours or anyone else's.

4Hosting & subprocessors

The Service runs on Microsoft Azure. Where your plan supports it, deployment can be pinned to your tenant and region. We maintain a current subprocessor list, limited to providers necessary to operate the Service, available on request.

5Retention

Account data persists for the life of the subscription. Customer Content follows your organization's configuration and contract; on termination it is exportable for thirty days and then deleted. Diagnostic logs are retained on a rolling short-term schedule.

6Security

Encryption in transit and at rest, tenant-scoped isolation, least-privilege access with audit logging, and secrets held in managed key vaults. No system is perfectly secure; we notify affected customers of incidents as required by law and contract.

7Your rights

Depending on your location, you may have rights to access, correct, delete, or port your personal data, and to object to or restrict certain processing (including under GDPR and applicable US state laws such as the CCPA/CPRA). Enterprise users should route requests through their organization; individuals can contact us directly and we will respond within the legally required period.

8International transfers

Where personal data crosses borders, we rely on appropriate safeguards such as standard contractual clauses and region-pinned deployments.

9Cookies

We use essential cookies for sign-in and session integrity, and privacy-respecting product analytics. No third-party advertising cookies.

10Changes & contact

We will post updates here and notify customers of material changes. Contact: [email protected] · Foixar Corporation, Houston, TX.