Effective date: August 9, 2026

Scope

This Privacy Policy describes how IntraPod handles information through the public IntraPod website and, at a high level, the current IntraPod application and Support features. It does not describe practices of third-party websites or services that operate under their own policies.

Information you provide

The Contact form asks for your name, company, email address, and message. The Schedule Demo form asks for your name, company, business email, company size, industry, preferred timeframe, and optional notes. We use this information to review and respond to inquiries and demo requests.

Please do not submit confidential customer or employee information, credentials, connector data, or other sensitive material through the public forms.

How public form submissions are handled

IntraPod does not intentionally persist Contact or Schedule Demo submission content in its application database as part of the current marketing-form architecture. Form content is transmitted through our configured email-delivery provider and delivered to IntraPod's business email system. The email-delivery provider and recipient mail system may retain messages under their own policies and operational settings.

We use Cloudflare D1 for abuse prevention and rate limiting. Those controls store HMAC-derived identifiers, counters, and expiration information rather than form content, email addresses, or raw client network identifiers.

Application and account information

When the authenticated IntraPod application is enabled and used, IntraPod may process identity and profile information, organization membership and role information, session records, and organization-owned information needed for features such as Projects, Resources, Skills, capacity, allocations, and configured connectors. Authentication may be provided through WorkOS. Necessary cookies support login transactions and application sessions; long-lived access tokens are not intentionally stored in browser storage.

Connector credentials are handled separately from ordinary connector configuration and are protected using implemented credential-encryption controls. Access to organization information is subject to server-side authentication, authorization, and tenant-scoping controls where those application features are enabled.

Support Assistant and transcript email

The Support Assistant processes a question only when an authenticated user invokes that feature and it is enabled. It uses approved Support content to prepare a grounded response and may send the question and relevant Support material to OpenAI for that purpose. IntraPod does not represent that external providers retain no data; their processing remains subject to applicable service settings, agreements, and policies.

A user may optionally request an email containing the current Support question, displayed answer, and related article links. IntraPod constructs that transcript on demand and does not intentionally store it as Support history or in browser storage. Resend and the recipient mail system process and may retain the resulting message. The planned Insight Assistant is not currently implemented, and this policy does not claim that customer organizational data is available to it.

Technical information and site behavior

Cloudflare and other infrastructure involved in delivering and securing the site may process ordinary request information, such as network and device information, in accordance with their services and policies. The public marketing site currently uses no marketing analytics, tracking pixels, tracking cookies, or browser storage. This does not mean that the authenticated application uses no cookies: strictly necessary authentication and security cookies may be used there.

How we use information

We use information to respond to requests, provide and secure current services, authenticate users, enforce access controls, prevent abuse, troubleshoot service operation, and meet applicable business and legal obligations. We do not use the public forms for newsletter, SMS, or unrelated promotional enrollment.

Service providers

We use service providers only where relevant to the requested or configured function. Current provider categories include Cloudflare for website delivery and abuse controls, Resend for configured transactional email delivery, Microsoft 365 for IntraPod business email, WorkOS for configured authentication, and OpenAI for the Support Assistant when that feature is invoked and enabled. Information is not automatically sent to every provider merely because someone visits the public website.

Retention and data minimization

We aim to collect and use only information reasonably needed for the purposes described above. Marketing-form content is not intentionally added to an IntraPod lead database by the current form implementation. Abuse-control records expire according to their configured rate-limit windows. Business email, account, application, security, and provider records may be retained for operational, security, contractual, or legal needs; applicable retention also depends on the systems and providers involved. We do not promise a universal retention period or deletion outcome across independent providers.

Security

IntraPod uses reasonable technical and organizational safeguards appropriate to the current services, including access controls, tenant-scoped application boundaries, protected credential handling, rate limiting, and data minimization where implemented. No online service is completely secure, and we cannot guarantee that information will never be accessed, lost, or misused.

Your choices

You may choose not to submit a public form and may contact us directly instead. Depending on your location and applicable law, you may have rights concerning access, correction, or deletion of personal information. We may need to verify a request before acting on it.

Children's privacy

IntraPod's website and services are intended for organizations and business users. They are not directed to children, and we do not knowingly seek personal information from children through the public forms.

Changes to this policy

We may update this Privacy Policy as our website, services, or legal obligations change. We will publish the revised policy here and update its effective date.

Contact

Questions or privacy requests may be sent to [email protected].