Privacy Policy.
1. Who we are & scope
pm.gold is a product of Helium Tech LLC ("Helium," "we," "us"), 1910 Pacific Ave, Suite 2000-1947, Dallas, TX 75201. pm.gold is a system of record and intelligence layer for product teams: it captures signals, decisions, and documents as connected, cited knowledge and helps teams generate grounded product artifacts.
This policy describes how we handle personal information on the pm.gold marketing site and in the pm.gold service. It applies to visitors, prospective customers, and users of workspaces provisioned for our customers. It does not replace the commercial agreements — including the Data Processing Agreement (DPA) — that govern customer workspaces; if this policy conflicts with a signed agreement, the agreement controls.
2. Our two roles
As a controller (business): for the marketing site, demo requests, account registration, billing, and support, we decide how and why data is processed.
As a processor (service provider): for Workspace Content — everything your team puts into or connects to a pm.gold workspace — we process data solely on the customer's documented instructions under the agreement and DPA. We do not sell it, share it for advertising, combine it with other customers' data, or use it for any purpose other than providing the service. Under the CCPA/CPRA we act as a "service provider"; under the GDPR, a "processor."
3. Information we collect
Account & identity data
- Name, work email address, and workspace role (owner, admin, member, or viewer).
- Identity provider identifiers when you sign in through your organization's SSO (e.g., a Microsoft Entra ID object identifier or Google account identifier). Authentication happens with your identity provider; we do not receive or store your password.
- Directory membership and group information supplied by your organization via SCIM, used to enforce your organization's own access rules inside pm.gold.
Workspace Content (processed on your organization's behalf)
- Files and documents you upload, text and images you paste, and web pages you import.
- Meeting recordings and transcripts you upload or capture (see Section 6).
- Content ingested from tools your organization connects (e.g., issue trackers, chat, document stores), together with that content's source-level permission information, which we capture and enforce.
- Artifacts derived inside the service: signals, PRDs, scores, decisions, citations, and their version history.
Usage, telemetry & logs
- Product events, feature usage, and performance data. Telemetry is designed to be redacted of personal information from Workspace Content.
- Audit records: every agent action, generation, approval, override, and administrative action is written to an append-only audit log with actor, timestamp, and source. This log is a security feature of the product.
- Model-call metadata (e.g., which model tier was used, token counts, cost, latency).
Support & communications
- Messages you send us, demo and access requests, and feedback you choose to share.
Site data
- Standard log data (IP address, browser type, pages viewed) and any cookies described in our cookie notice. We use only the cookies necessary to operate the site, and we currently use no third-party analytics and no advertising cookies.
4. How we use information
- Provide and operate the service — ingesting, indexing, and retrieving your content; generating grounded outputs; enforcing your organization's permissions; running the human-approval commit gate.
- Security and integrity — tenant isolation, access control, audit logging, abuse and prompt-injection defense, incident response.
- Support and account management — responding to requests, provisioning workspaces, billing.
- Service improvement — using aggregated or de-identified usage data (never the content of your workspace for other customers' benefit; see Section 5).
- Legal compliance — meeting legal obligations and enforcing our terms.
We do not use personal information for advertising, and we do not sell or "share" personal information as those terms are defined under the CCPA/CPRA.
5. AI and your data
Your data is not used to train AI models. pm.gold calls foundation models through commercial APIs whose terms do not permit training on submitted data, and we commit contractually — in our DPA — that neither we nor our subprocessors will use your Workspace Content to train or improve generalized AI models. Any learning pm.gold does from your workspace (for example, calibrating to your team's editing patterns) stays inside your workspace and benefits only your workspace.
- Model-agnostic by design. Models are accessed behind a clean interface; we send a model only the data required for the specific task requested.
- No human review. Our personnel do not read your Workspace Content except when you explicitly ask for support on specific content, or where required by law. Platform operators are structurally prevented — at the database-permission level — from reading workspace content.
- Grounded outputs. Generated claims cite their sources, so your team can verify rather than trust blindly.
- Bring-your-own-key. If your organization supplies its own model API key, model calls are governed by your organization's own agreement with that provider.
6. Meeting recordings
pm.gold can process meeting recordings and transcripts that your organization uploads or captures. Recording laws vary by jurisdiction, and some require the consent of every participant. Your organization and its users are responsible for providing any required notice and obtaining any required consents before recording or uploading a meeting. Where the product provides consent-acknowledgement features, we store the resulting consent records for your organization's compliance purposes.
7. How we share information
We share personal information only with the subprocessors needed to run the service, under contracts that bind them to protections consistent with this policy and our DPA:
| Subprocessor | Purpose | Location |
|---|---|---|
| Supabase | Cloud database, storage, and authentication infrastructure | United States |
| Anthropic | Foundation-model API for AI generation (no-training API terms) | United States |
| Voyage AI | Embeddings API for retrieval (no-training API terms) | United States |
Application hosting runs on managed cloud infrastructure in the United States. Billing is not enabled in the current early-access release, so we use no third-party payment processor and do not collect or store payment-card data. We maintain a current subprocessor list — authoritative and available to customers on request — and will provide notice of additions as described in the DPA. We may also disclose information when required by law (we will notify the affected customer unless legally prohibited) and in connection with a corporate transaction, subject to this policy.
Your identity provider and connected tools (e.g., Microsoft, Google, Atlassian) receive and process data under your organization's own agreements with them; they are your providers, not our subprocessors.
8. Retention & deletion
- Workspace Content is retained while your organization's workspace is active, subject to retention settings available to workspace administrators.
- Deletion on instruction or offboarding: when content is erased, pm.gold quarantines it immediately (revoking access) and destroys the verbatim content — including stored text, embeddings, and cached citation snippets — across version history, writing a content-free tombstone to the audit log. Deletion propagates to backups on a defined schedule, within 30 days.
- Account data is retained for the life of the account and for 24 months after closure, as needed for legal and accounting purposes.
- Audit records are retained as a security feature; audit entries are content-free (they record that actions occurred, not the content acted upon).
9. Security
pm.gold is built on enforced, fail-closed tenant isolation; permission-faithful retrieval; a human-in-the-loop commit gate; append-only audit; and encryption in transit and at rest. The full description of our controls — including what is built today and what is on our certification roadmap — is on our Security page.
10. Your rights
Depending on your location, you may have rights to access, correct, delete, export, or restrict the processing of your personal information, and to object to certain processing (GDPR), or rights to know, delete, correct, and opt out of sale/sharing with non-discrimination (CCPA/CPRA — we do not sell or share personal information).
If your data is in a customer workspace, we act as processor: please direct your request to your organization (the workspace administrator), and we will support their response — including locating, exporting, correcting, and erasing an individual's data. For data we control (site, marketing, account records), contact us at privacy@pm.gold and we will respond within the time required by applicable law. You may also lodge a complaint with your local supervisory authority.
11. International transfers
We are a U.S. company and process data in the United States. Where we receive personal information from regions with data-transfer requirements (such as the EEA, UK, or Switzerland), we rely on appropriate safeguards, including Standard Contractual Clauses incorporated into our DPA. Per-region hosting is on our roadmap for customers with data-residency requirements.
12. Children
pm.gold is a business product. It is not directed to, and may not be used by, anyone under 18, and we do not knowingly collect information from children.
13. Changes & contact
We will post any changes to this policy here and update the date above; for material changes affecting customer workspaces we will provide direct notice. Questions or requests: privacy@pm.gold, or write to Helium Tech LLC, 1910 Pacific Ave, Suite 2000-1947, Dallas, TX 75201.
This policy is published and effective as of the date above and reflects our current practices. We are finalizing our legal documentation with counsel and may refine the wording; any material change will be posted here with a revised effective date and, where required, advance notice. It is provided for transparency and is not legal advice.