Privacy notice
InsideGuy reads construction documents on behalf of the companies that quote from them. Doing that means we hold documents that are not ours, and a small amount of information about the people who use the service. This notice says what we collect, what we do with it, who else sees it, and how long we keep it. If anything in it is unclear, write to privacy@insideguy.ai.
- The documents your company uploads belong to your company. We read them to do your work and for nothing else.
- Nothing you upload is used to train any model, ours or anyone else’s.
- We collect the minimum an account needs: an email address, a name, and what you do in the product.
- We set no advertising or analytics cookies, and we do not sell information about anyone.
- You can delete documents yourself. Ask us and we delete your account or your whole workspace.
The full text below is what applies. The short version is here to help you read it.
1. Who this notice covers
This notice covers three kinds of people:
- People who use InsideGuy at a customer company, such as estimators, application engineers, and workspace admins.
- People who visit insideguy.ai or write to us through it.
- People whose details appear in what a customer brings into InsideGuy: the contractor who sent a bid invitation, the engineer named on a drawing, the manufacturer’s representative named in a schedule.
“InsideGuy”, “we”, and “us” mean Intentional Platforms, Inc., a Delaware corporation. The terms of service are the agreement this notice sits under.
2. Who decides what happens to a document
Most of what InsideGuy holds is content a customer company put there. For that content, the customer decides what it is for, and we act on the customer’s instructions. If you are a contractor or an engineer and your details are in a document a customer uploaded, the customer is the one who chose to upload it. You can write to us and we will pass your request to them, or act on it ourselves where the law says we should.
Some information is about our own users and visitors rather than about a customer’s documents, such as the email address on an account. For that, we decide, and this notice says how.
3. What we collect
You give us
- Your account
- Your email address, the name you enter, and the workspace you belong to. Sign-in links go to that address.
- What you do in the product
- The projects you open, the decisions you confirm, the lessons and notes you write, the products and prices you add to your library, and the quotes you prepare.
- Your documents
- The drawings, specifications, schedules, and other files you upload, forward, or connect, and every page and figure InsideGuy reads out of them.
- Connected accounts
- If you connect a file service such as Dropbox, we store the connection’s id and the account’s name and email address so you can see what is connected. The sign-in token that lets us read the files is held by the connection service described in section 7, and our servers never receive it.
- Messages you send us
- If you use the “Talk to sales” or “Send us a bid set” form, we receive what you typed. That is your name, work email, company, phone number, your message, and any link to documents you include. Documents you send us this way are treated as your content under this notice.
Arrives by email
Every workspace has its own address for bid invitations. When a message arrives there, we receive the sender’s name and address, the subject and body, the attachments, and any document links in it. We check the message’s signature to confirm who forwarded it. The sender’s name and address are recorded as a contact in the workspace that received the message, so the team can see who is asking.
We collect automatically
- Sign-in records
- When you signed in and from what address, kept by our sign-in provider.
- Server logs
- The address a request came from, the browser, and the time, kept for a limited period by the providers that host the service. We use them to keep the service working and to spot abuse.
- Records of each reading
- Which document was read, by which model, how many tokens it took, how long it ran, and what it cost. The text itself lives only in the three-day troubleshooting log described in section 11.
From public sources
- Company lookups
- When you add a company to your directory, InsideGuy can look it up on the web to fill in its website, what it does, and its offices. The search uses the company’s name. Everything it finds is marked as an assumption until a person confirms it.
- Logos
- Company logos are loaded by your browser from a logo service or from the company’s own site. Either one sees the standard request data any image host sees.
4. How we use it
- To run InsideGuy: store your documents, read them with the models we use, draft selections and quotes, and show where each number came from.
- To sign you in and send the emails the service needs: a sign-in link, a note that a set has arrived, a note that a quote is ready.
- To answer you when you write to us.
- To keep the service secure, and to find and stop abuse.
- To bill your company, where there is a paid agreement.
- To meet our legal obligations and respond to lawful requests.
We do not sell personal information, and we do not use it for advertising. Every email we send is about something you or your workspace asked for. If we ever start sending product news, it will carry an unsubscribe link, and opting out will not affect the emails the service needs.
5. Your documents are not training data
This is the promise customers ask about most, so here it is on its own.
We do not use your documents, your library, your decisions, or your quotes to train, fine-tune, or build any machine learning model. Not our own, and not a model belonging to anyone else. We do not use them to build data sets or benchmarks, and we do not use one customer’s content to do another customer’s work.
The models that read your documents belong to outside companies. We use each one through its business API, under terms that do not allow the provider to use what we send to train its models. A provider may hold what it received for a short period to check for abuse, as its own terms describe, and no longer.
InsideGuy does learn from your own workspace. When your team confirms a decision or writes a lesson, InsideGuy applies it to your later projects. That knowledge is stored with your workspace, is shown to no other customer, and is deleted with the workspace.
6. Who else sees it
People in your workspace
Everyone in your workspace can see its projects, documents, and quotes. The owner or an admin decides who is in it.
People you send things to
When you choose to send something out of InsideGuy, it goes where you sent it, with what you chose to include.
The services we rely on
The providers listed in section 7, each bound by contract to use information only to provide its service to us.
Our staff
Our staff can open a workspace to help you when you ask, or to look into a problem with the service, and for no other reason.
The law
We disclose information when a subpoena, court order, or law requires it. We also disclose it when we believe in good faith that doing so is needed to protect someone’s safety or our rights. Where the law allows, we tell the customer first.
A change of ownership
If Intentional Platforms, Inc. is part of a merger, acquisition, or sale of assets, information may transfer with it, under the same protections this notice describes. We tell customers before it does.
7. The services we rely on
We rely on a small number of outside services to run InsideGuy, each for one purpose. Every one of them is bound by contract to use information only to provide its service to us. Write to privacy@insideguy.ai for the current list by name.
- Hosting
- The servers that serve the site, and the workers that read documents.
- Database, sign-in, and file storage
- Where your account, your workspace, and your documents live.
- Models
- The models that read documents, classify pages, find requirements, and draft selections and quotes. Prompts are sent from our servers and include the content being worked on. Section 5 says what these providers may and may not do with it.
- Delivering the email the service sends, and receiving the bid invitations forwarded to a workspace’s address.
- Connected file services
- When you connect an account such as Dropbox, a connection service holds the sign-in token and relays our requests for the files you point us at. The file service itself sees those requests under its own terms.
- Company lookups and logos
- A web search, run through a model provider’s search tool, to fill in a company’s public details, and a logo service your browser loads company logos from.
8. Cookies
Until you sign in, insideguy.ai sets no cookies. Signing in sets the cookies that keep you signed in and remember which workspace you are working in. That is all. We set no advertising cookies and no analytics cookies, and there is no third-party analytics script on the site.
9. Your choices and your rights
See and correct
Your account details and everything in your workspace are visible in the product, and most of it can be edited there.
Delete
You can delete a document from the product. To delete a project, your account, or your company’s whole workspace, write to privacy@insideguy.ai from the address on your account and we do it. Section 11 says what remains, and for how long.
Export
Ask us, and we give your company a copy of its content in a standard format.
If your details are in someone else’s documents
Suppose you are a contractor, an engineer, or a manufacturer’s representative, and your name or address is in a document a customer uploaded. That customer decides what happens to it. Write to privacy@insideguy.ai and we will pass your request to them, or act on it ourselves where the law requires.
State law rights
If you live in California, Colorado, Virginia, or another state with a comprehensive privacy law, you may have additional rights. They include the right to know what we hold, to correct it, to delete it, and to opt out of certain processing. We do not sell personal information or use it for targeted advertising, so there is nothing to opt out of on that front. To exercise any other right, write to privacy@insideguy.ai from the address on your account. We reply within the time the law gives, and usually sooner.
10. Security
Every connection to InsideGuy uses TLS. Documents and database records are encrypted at rest. Each workspace’s data is separated from every other’s at the database level. A workspace’s files are reached only through links that are signed for one operation and expire.
Sign-in is passwordless, so there is no password of yours for us to lose. Keeping your email account secure is the most important protection for your InsideGuy account. Email that arrives at a workspace’s address is checked for a valid signature. A sender the workspace has not authorized cannot add documents until someone in the workspace approves the request.
The keys that reach outside services are held on our servers and never sent to the browser. No system is perfect. If you find a weakness, write to security@insideguy.ai and we will answer quickly.
11. How long we keep things
We keep your content for as long as your workspace is active. When you delete a document, it is removed from the product at once and from our storage promptly. When a workspace is deleted, everything in it goes with it. Some records have their own limits:
- The troubleshooting log. What InsideGuy sent to each model and what came back is kept for three days, then deleted. It exists so our staff can look into a reading that went wrong, and only our staff can read it.
- Totals of what a reading cost, without the text, stay with the project.
- Server logs are kept by our hosting providers for a limited period and then discarded.
- Sign-in records are kept by our sign-in provider while the account exists.
- Messages sent through the site stay in our sales inbox until we have answered them and no longer need them.
Copies of the database are kept for a short, fixed period so we can recover from a failure, and then overwritten. Deleted content can remain in a backup until its turn comes. We do not use a backup to bring deleted content back, except to recover from a failure of the service.
Counts and totals that cannot be tied to a customer or a document, such as how many pages were read in a month, may be kept indefinitely.
12. Children
InsideGuy is a business tool and is not intended for anyone under 18. We do not knowingly collect information from children. If you believe a child has given us information, write to privacy@insideguy.ai and we delete it.
13. Where information is processed
Intentional Platforms, Inc. operates in the United States. The services we rely on process information in the United States and may process it in other countries. If you use InsideGuy from outside the United States, your information is processed here under United States law.
14. Changes to this notice
When we change this notice, we post the new version here with a new effective date. If a change is material, we email the owner of every workspace at least 14 days before it takes effect.
Questions about privacy go to privacy@insideguy.ai. We aim to reply within two business days. For help with the product, write to support@insideguy.ai. Notices by mail go to:
Intentional Platforms, Inc.2810 N Church St STE 89843
Wilmington, DE 19802