Privacy Policy
This policy explains what the Oroe Suite collects, why, and what you can ask us to do about it. It covers the portal at my.oroe.ai and the modules reached through it.
What we collect
Account data: your name, email address, hashed password, and the workspaces you own or belong to.
Usage data: which modules you open, plan-limit counters (such as number of workspaces, team members, storage and API calls), and timestamps of sign-in activity.
Content you create: whatever you store in the modules - contacts and deals in Nest, appointments in Cue, monitors in PinWatch, messages in Relay and Pulse.
Technical data: IP address, browser user agent and server logs, kept for security and debugging.
Why we use it
- To authenticate you and keep a single sign-on session across modules.
- To enforce the limits and module access of your plan.
- To operate, secure, debug and improve the service.
- To contact you about security, billing and material service changes.
We do not sell your personal data, and we do not use your content to advertise to you.
Cookies and sessions
We set a session cookie for the portal and a refresh-token cookie scoped to oroe.ai so that signing in once works across the modules. Both are httpOnly and, in production, secure.
Signing out clears the session and revokes the refresh token. These cookies are strictly necessary to operate the service - we do not use advertising or cross-site tracking cookies.
Where your data goes
Data is stored on infrastructure we operate, and is processed by a small number of service providers strictly for hosting, email delivery and error monitoring.
Some modules can send data to third parties at your instruction - for example an AI model provider when you use Pulse, or your own mail provider when you connect an account to Relay. That happens only because you connected it.
How long we keep it
Account and content data is kept while your account is active. After closure we delete or anonymise it within a reasonable period, except where we must retain records to meet a legal obligation.
Server and security logs are kept for a short retention window and then discarded.
Security
Passwords are stored hashed, never in plain text. Access tokens are short-lived and sessions are held server-side.
No system is perfectly secure. If a breach affects your data we will tell you and the relevant authority as required by law.
Your rights
You can ask us to give you a copy of your data, correct it, delete it, or restrict how we use it. Email support@oroe.ai and we will respond within one month.
If you are in a workspace owned by someone else, that owner controls the content in it; we will point you to them where your request concerns their workspace.
Children
The Oroe Suite is a business tool and is not directed at children under 16. We do not knowingly collect their data.
Changes and contact
We will update this page when our practices change, and revise the date at the top.
Privacy questions and requests: support@oroe.ai.