Skip to content

Privacy Policy

Last updated: April 3, 2026

This Privacy Policy describes how Sire Run Inc ("Sire", "we", "us", or "our") collects, uses, stores, and shares information when you use our platform and services (the "Service"). We are committed to protecting your privacy and handling your data in a transparent and responsible manner. This policy applies to all users of the Service worldwide, including users protected by the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

1. Information We Collect

We collect the following categories of information:

Account Information

When you create an account, we collect your name, email address, company name, and profile information. If you sign in through Google OAuth, we receive your name, email address, and profile picture from Google.

Payment Data

When you subscribe to a paid plan, payment information (such as credit card numbers and billing addresses) is collected and processed directly by our payment processor, Stripe. We do not store your full payment card details on our servers. We receive and store only a transaction identifier, the last four digits of your card, and billing summary information from Stripe.

Workflow and Execution Data

We collect the workflow configurations, templates, execution logs, approval records, and tool integration settings that you create and store within the Service. This data is necessary to operate the platform on your behalf.

Usage Data

We automatically collect information about how you interact with the Service, including pages visited, features used, actions taken, timestamps, browser type, operating system, device identifiers, and IP addresses.

Communications

When you contact our support team or communicate with us, we collect the content of those communications along with associated metadata such as timestamps and contact information.

2. How We Use Your Information

We use the information we collect for the following purposes:

  • Service Delivery: To provide, operate, maintain, and improve the Service, including processing your workflows and executions
  • Payment Processing: To process transactions, send invoices, and manage your subscription
  • Analytics: To understand how users interact with the Service, identify trends, and improve the user experience
  • Communication: To send you technical notices, security alerts, product updates, and support messages
  • Security: To detect, investigate, and prevent fraudulent, unauthorized, or illegal activity
  • Legal Compliance: To comply with applicable laws, regulations, and legal processes
  • Product Development: To develop new features and services based on aggregate usage patterns

3. Data Storage and Security

Your data is stored on Google Cloud Platform infrastructure located in the United States. All data is encrypted at rest using AES-256 encryption and encrypted in transit using TLS 1.2 or higher. We implement industry-standard security measures including tenant isolation, access controls, audit logging, and regular security assessments. While we strive to protect your data, no method of electronic storage or transmission is 100% secure, and we cannot guarantee absolute security.

4. Third-Party Services

We share information with the following categories of third-party service providers who assist us in operating the Service:

  • Stripe (stripe.com): Payment processing. Stripe receives your payment information directly and is subject to the Stripe Privacy Policy.
  • Google (accounts.google.com): Authentication via Google OAuth. Google receives authentication requests and is subject to the Google Privacy Policy.
  • PostHog (posthog.com): Product analytics. PostHog receives anonymized usage data to help us understand how users interact with the Service.

We do not sell, rent, or trade your personal information to third parties for their marketing purposes. We may disclose information to law enforcement or government authorities if required by law or if we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others.

5. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to maintain your session, remember your preferences, and collect analytics data. Essential cookies are required for the Service to function and cannot be disabled. Analytics cookies help us understand usage patterns and improve the Service. You can control non-essential cookies through your browser settings. Disabling certain cookies may affect the functionality of the Service.

6. Data Retention

We retain your account information for as long as your account is active. Workflow execution data is retained according to the retention period defined by your subscription plan. When you delete your account, we will delete your personal data within 30 days, except where we are required to retain it for legal, regulatory, or legitimate business purposes (such as fraud prevention or financial record-keeping). Anonymized and aggregated data that cannot be used to identify you may be retained indefinitely for analytical purposes.

7. Your Rights

Depending on your location, you may have certain rights regarding your personal data under applicable privacy laws, including the GDPR and CCPA:

  • Right of Access: You can request a copy of the personal data we hold about you.
  • Right to Rectification: You can request that we correct inaccurate or incomplete personal data.
  • Right to Deletion: You can request that we delete your personal data, subject to certain exceptions.
  • Right to Data Portability: You can request a machine-readable copy of your data for transfer to another service.
  • Right to Object: You can object to processing of your data for certain purposes, including direct marketing.
  • Right to Restrict Processing: You can request that we limit how we use your data in certain circumstances.

To exercise any of these rights, contact us at legal@sire.run or use the data management features in your account settings. We will respond to all requests within 30 days. If you are a California resident, you have additional rights under the CCPA, including the right to know what personal information is collected, disclosed, or sold, and the right to opt out of the sale of personal information. We do not sell personal information.

8. International Data Transfers

If you access the Service from outside the United States, your data will be transferred to and processed in the United States. We take appropriate measures to ensure that international data transfers comply with applicable data protection laws, including the use of Standard Contractual Clauses where required by the GDPR.

9. Children's Privacy

The Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected personal data from a child, we will take steps to delete that information promptly.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on our website and updating the "Last updated" date. For changes that materially affect how we use your personal data, we will provide at least 30 days' advance notice via email.

11. Contact

For privacy-related inquiries, data subject requests, or complaints, please contact us at legal@sire.run or write to: Sire Run Inc, San Francisco, CA, United States. If you are in the European Economic Area and believe we have not adequately addressed your concerns, you have the right to lodge a complaint with your local data protection authority.