Privacy Policy
Last updated: June 28, 2026
What we collect
When you sign in with Google, we receive your name and email address. We also store which frameworks you subscribe to, your notification preferences, and, if you submit a support request, the content of that request. If you connect Slack or Microsoft Teams, we store the webhook URL you provide so we can deliver updates there. Billing is handled entirely by Stripe — we never see or store your card details.
How we use it
We use this information solely to operate ComplianceScope: authenticating you, showing you updates for the frameworks you've subscribed to, sending notification emails (which you can disable at any time), delivering updates to Slack/Teams if configured, processing payments, and responding to support requests. We do not sell your data, and we do not use it for advertising.
Who we share it with
We rely on a small number of service providers to operate the product: Auth0 (authentication), Amazon Web Services (hosting, database, and email delivery), Stripe (payment processing), and Atlassian Jira (support ticket tracking). Each only receives the data it needs to perform its function. If you configure Slack or Microsoft Teams, update notifications are sent to the webhook URL you provided — that data goes directly to the channel you specified.
Your choices
You can unsubscribe from any framework, disable email notifications from Settings → Notifications, or remove a Slack/Teams integration at any time. To request deletion of your account and associated data, contact us and we'll process the request.
Data retention
We retain your data for as long as your account is active. If you cancel your subscription, your account data is retained in case you resubscribe, and deleted on request.
Contact
Questions about this policy or your data? Contact us.