Legal
Privacy Policy
Version 2026-08-28 · Effective August 28, 2026
Livegoal is a client-onboarding platform. Software vendors (“vendors”) use it to run onboarding for their own customers; a vendor’s customers and their team members (“end users”) use the portal a vendor sets up. This policy explains what data we collect, how we use it, who we share it with, and how long we keep it. It applies to livegoal.ai and the livegoal application.
What we collect
We collect user data. Specifically:
- Account & identity data — company name, your name, work email, password (stored hashed), and job title.
- Onboarding content — the client accounts, phases, tasks, target dates, notes, knowledge base articles, and messages you and your users create in the product.
- AI conversations — the questions asked of the AI Assistant / Compass and the replies generated, stored as chat history.
- Billing data — your subscription tier, billing interval, and payment method details (held by Stripe, not by us).
- Usage & technical data — activity logs of actions taken in an account, notification records, IP address, browser type, and similar request metadata.
How we use it
To provide and operate the service (run onboarding journeys, generate AI answers, send notifications), to process billing, to provide support, to keep the service secure and prevent abuse, to comply with legal obligations, and to improve the product. We do not sell personal data, and we do not use it for advertising.
Our use of AI
The AI Assistant (for a vendor’s clients) and Compass (for a vendor’s own team) are powered by large language models provided by Anthropic. When you send a message to either feature, we send Anthropic that message together with the context needed to answer it: the relevant knowledge base articles, the account’s current phases and tasks, the participants’ names and titles, and — for a vendor staff member on a plan that includes it — that account’s computed risk signals. Prior messages in the same conversation are included so follow-up questions make sense.
Anthropic processes this data to generate a response and does not use it to train their models. We do not use your data to train any model. If you would rather not use the AI features, simply don’t send messages to them — the rest of the product works without them.
To find the most relevant knowledge base articles for a question, we also generate numeric “embeddings” of knowledge base article text and of the questions asked to the AI Assistant and Compass, using OpenAI’s embeddings API. OpenAI processes this text to return the embedding and does not use it to train their models.
Third parties we share data with
We use the following service providers (“sub-processors”) to run livegoal. We share only the data each one needs for its purpose.
| Provider | Purpose | Data shared |
|---|---|---|
| Supabase | Database, authentication, and file storage — the core of the service. | Essentially all account data: vendor and user records, client accounts, phases, tasks, messages, knowledge base content, activity history. |
| Vercel | Application hosting and delivery. | Request metadata (IP address, user agent) and anything you submit while using the app. |
| Stripe | Subscription billing and payment processing. | Your company name, email, and payment details. Card numbers are entered directly into Stripe and are never stored on our servers. |
| Anthropic | The large language model behind the AI Assistant and Compass features. | See “Our use of AI” below. |
| OpenAI | Generates the vector embeddings that power semantic knowledge base search. | Knowledge base article text, and the text of questions asked to the AI Assistant and Compass. Processed via OpenAI’s API and not used to train their models. |
| Resend | Transactional email (client invitations, lead notifications, account emails). | Recipient email addresses and the contents of those emails. |
| HubSpot / Salesforce | CRM sync — only if a vendor explicitly connects their CRM. | Client account names and onboarding status, written to the connected CRM. Nothing is sent unless the integration is connected. |
We may also disclose data if required by law, to enforce our terms, or to protect the rights and safety of our users.
Deletion vs. archival
These are different, and it matters:
- Archival — when a client account is archived, its data is retained in our database but hidden from active views and no longer billed. It can be restored.
- Cancellation — when a vendor cancels their subscription, access continues until the end of the paid period. After that the workspace becomes inactive but its data is retained for 90 days, in case you return, then permanently deleted.
- Deletion on request — you can ask us to delete your workspace and its data at any time by emailing [email protected]. We will do so within 30 days.
- Records we must keep — invoices and transaction records are retained by us and by Stripe for up to 7 years to meet tax and accounting requirements, even after deletion of everything else.
Your rights
You can access, correct, export, or delete your personal data. Most of this you can do directly in the app; for anything else, email [email protected] and we’ll help. If you are in a region with specific data-protection rights (such as the EEA or UK), those rights apply and you may also complain to your local supervisory authority.
Security
Data is encrypted in transit (HTTPS) and at rest. Access within an account is enforced at the database level so one vendor cannot see another’s data. We restrict internal access to what is needed to operate and support the service.
Cookies
We use a small number of strictly necessary cookies to keep you signed in and to remember lightweight UI preferences. We do not use third-party advertising or cross-site tracking cookies.
Children
Livegoal is a business tool and is not directed to anyone under 16. We do not knowingly collect data from children.
Changes to this policy
If we make a material change, we will update the version number and effective date above and, where appropriate, notify vendor admins by email. Continued use after a change means you accept the updated policy.
Contact
Questions, requests, or complaints about privacy: [email protected].