Data Protection & Privacy

Privacy Policy

Effective Date: September 2, 2026 • Version 2.4

1. Our Commitment to Your Privacy

At HereYouGo ("we", "us", or "our"), protecting the confidentiality, integrity, and security of your organization's data is our highest priority. This Privacy Policy describes how we collect, process, store, and protect your information across our Document Vault, Team Chat, AI Co-Pilot, Support Portal, and Discussion Forum.

2. Multi-Tenant Organization Isolation

HereYouGo enforces strict multi-tenant database partitioning. All workspace resources—including uploaded documents, folder trees, team channels, private direct messages, and support tickets—are cryptographically partitioned by Organization ID:

  • No user outside your organization can view, search, or access your workspace documents or chat messages.
  • Role-based access control (Org Admin, Org Manager, Org Member, Org Viewer) governs intra-organization permissions.
  • Cross-organization queries are blocked at the application routing and database query layers.

3. AI Co-Pilot Privacy Promise

We know how sensitive your business documents and financial sheets are. We uphold a strict AI Privacy Standard:

Zero Foundation Model Training

Your uploaded documents, spreadsheets, text excerpts, and prompt queries are never used to train, retrain, or improve public AI foundation models. Document processing uses stateless vector retrieval (RAG) that operates strictly during your active session.

4. Information We Collect

We collect only the information necessary to provide and secure your workspace experience:

  • Account Identity: Name, work email address, hashed passwords, and assigned organization code.
  • Workspace Content: Uploaded vault documents, folder structures, team channel posts, and support tickets.
  • Billing Information: Transaction IDs, order identifiers, and plan tier records processed through Razorpay. We do not store full credit card numbers on our servers.
  • Technical Logs: IP addresses, browser types, and session timestamps used for security audits and fraud prevention.

5. Global Discussion Forum Visibility

Unlike your private Document Vault and Team Chat, the Discussion Forum is a platform-wide community space.

  • Forum posts, questions, and comments are visible to all registered HereYouGo members.
  • Posts display your chosen username and your organization code badge (e.g. @ACME). Your internal organization role is not exposed.
  • Never post proprietary intellectual property, passwords, API tokens, or customer data in the Discussion Forum.

6. Support Portal & Ticket Confidentiality

Support tickets, billing dispute submissions, and SLA communications submitted through the Support Portal remain strictly private to your organization and our authenticated technical support engineering team.

7. Security & Encryption Standards

We implement industry-standard technical and organizational safeguards:

  • Data in Transit: Encrypted using TLS 1.3 with modern cipher suites.
  • Data at Rest: Stored on encrypted SSD storage volumes with AES-256 encryption.
  • Authentication: Secure JWT tokens with HTTP-only session cookies and password hashing using Argon2/Bcrypt.

8. Automated Data Retention & User Rights

Workspaces have full control over their data lifecycle. Organization Admins can configure message expiration policies or permanently delete organization data upon account termination. Under GDPR and CCPA, you have the right to access, export, or request the deletion of your personal data by contacting our support team.

9. Privacy Questions & Data Inquiries

If you have any questions or data access requests regarding this Privacy Policy, please contact our Data Protection Officer at privacy@hereyougo.io.