Privacy

Your operational data stays under your control.

This notice explains what Palyra collects, how it is used, and the information that must stay outside the product.

Effective 8 September 2026

Account and profile information

When you create an account, we collect your email address, workspace name, and the profile details you choose to add, such as your name, role, timezone, and display preferences. We use this information to authenticate you, create your workspace, personalize the product, and keep workspace records separated.

Walkthrough requests

When you ask to speak with Palyra, we collect the contact and business context you choose to submit, which may include your name, email address, company, role, provider setup, and operational challenge. We retain the request details needed to respond and manage the conversation.

Feedback

When you send feedback, we collect the category, message, page path, and your email address only if you choose to provide it and allow a follow-up. Do not include payment data, provider credentials, customer information, or other secrets.

Workspace evidence

Authenticated CSV imports are validated, normalized, and stored as tenant-scoped operational records in your workspace. Palyra retains the normalized fields and import metadata needed for reconciliation, route analysis, and auditability. Raw file contents are not stored in the canonical evidence tables or attached to contact and feedback records.

Data you must not provide

Do not import or submit card numbers or PAN, CVV or CVC, expiry dates, payment credentials, passwords, API keys, access tokens, customer names, email addresses, phone numbers, or postal addresses. The importer blocks recognizable card-data column names and warns about common personal-data columns, but you are responsible for sanitizing exports first.

How we use and share information

We use account and workspace information to provide Palyra, contact information to respond to requests, and feedback to improve the service. We do not sell personal information. Information may be processed by hosting, authentication, database, email, scheduling, and security providers only as needed to operate Palyra, and may be disclosed where legally required.

Retention and security

We keep account and workspace records while your account is active and retain contact, feedback, security, and legal records only as long as reasonably needed. We use access controls and other safeguards appropriate to the current service, but no internet service can guarantee absolute security.

Your choices

You may ask to access, correct, or delete information you submitted, or withdraw from follow-up. Some records may be retained where required for security or legal reasons.

Contact

For privacy questions or requests, email hello@palyra.io.