PRIVACY POLICY
Last updated: May 13, 2026
1. Who We Are
SAY, BOSS. (“we,” “us,” or “our”) operates sayboss.com, an AI-powered document generation platform. This Privacy Policy explains what information we collect, how we use it, and the choices you have. If you have questions, reach us at hi@sayboss.com.
2. Information We Collect
Account information. When you sign up we collect your email address. We do not collect your name, phone number, or payment card details directly — payment is processed by Stripe and we only receive a customer identifier.
Usage data. We log which bots you use, when, and the credits consumed. We do not log your full prompts permanently — prompt text is stored only to display your task history in the dashboard and is associated with your account.
Generated files. Files generated by our bots are stored in encrypted cloud storage (Supabase). They are accessible only to you via a time-limited signed URL (7 days). We do not open, read, or share your files.
Device and technical data. We may collect your IP address, browser type, and referrer URL to detect abuse and improve performance. We use no third-party advertising trackers.
3. How We Use Your Information
- To operate the platform, process your tasks, and deliver generated files.
- To send transactional emails (task complete notifications, billing confirmations).
- To manage your subscription and credits through Stripe.
- To detect and prevent fraud, abuse, or violations of our Terms of Service.
- To improve the platform — we may analyze aggregate, anonymized usage patterns.
We do not sell your data. We do not use your prompts or generated files to train AI models.
4. Third-Party Services
We use a small number of trusted third-party services to operate SAY, BOSS.:
- Supabase — database and file storage (EU/US infrastructure).
- Anthropic — AI model inference. Your prompts are sent to Anthropic's API to generate content. Anthropic's API data usage policy applies.
- Stripe — payment processing. We never see or store your full card number.
- Resend — transactional email delivery.
- Vercel — hosting and edge infrastructure.
Each provider is bound by its own privacy policy and appropriate data processing agreements.
5. Data Retention
Your account data and task history are retained while your account is active. Generated files are stored for 30 days after creation, then deleted automatically. You can request deletion of your account and all associated data at any time by emailing hi@sayboss.com. We will process deletion requests within 30 days.
6. Security
We use industry-standard security practices: HTTPS everywhere, encrypted storage, access controls, and time-limited file URLs. No system is 100% secure — if you believe your account has been compromised, contact us immediately.
7. Your Rights
Depending on where you live, you may have the right to:
- Access a copy of the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data.
- Object to or restrict certain processing.
- Data portability (receive your data in a structured format).
To exercise any of these rights, email hi@sayboss.com.
8. Cookies
We use only essential cookies required to keep you signed in (session tokens via Supabase Auth). We do not use advertising cookies or cross-site tracking cookies.
9. Children
SAY, BOSS. is not directed to children under 13. We do not knowingly collect data from anyone under 13. If you believe a child has created an account, contact us and we will delete it promptly.
10. Changes to This Policy
We may update this policy as the product evolves. We'll notify you of material changes by email or by posting a notice on the site. Continued use after changes means you accept the updated policy.
11. Contact
Questions about privacy? Email us at hi@sayboss.com. We aim to respond within 2 business days.