Privacy

How we handle
your data.

Plain-English principles plus the full policy. Last updated April 2026. Questions go to privacy@zoediagnostics.com.

Contents
  1. 01What we collect
  2. 02How we use it
  3. 03How we store it
  4. 04Who we share with
  5. 05Your rights
  6. 06Cookies and tracking
  7. 07International transfers
  8. 08Changes to this policy
01

What we collect

Zoe collects only the metadata required to compute an operational diagnostic. That means: who communicates with whom, how often, in what cadence, and across which channels. We never read message bodies, code commits, document text, or financial line items. We collect basic account information (name, email, company) when you sign up, and we collect technical telemetry (page views, clicks) for product analytics.

02

How we use it

Diligence metadata is used exclusively to compute the Zoe Score and findings for your engagement. Account information is used to operate the service and communicate with you. Technical telemetry is used to improve the product. We do not sell, rent, or share personal data with third-party advertisers, ever.

03

How we store it

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). Each diligence engagement runs in an isolated workspace with its own encryption key. Raw metadata is processed and discarded after the diagnostic ships — only the resulting scores, findings, and aggregated patterns persist. See our /security page for the full data handling spec.

04

Who we share with

Nobody. Zoe does not share customer data with third-party advertisers, data brokers, or affiliates. We use a small number of vetted infrastructure providers (cloud hosting, email delivery, analytics) under strict data processing agreements. We will disclose data only when required by law or to protect against fraud or imminent harm.

05

Your rights

You have the right to access, correct, export, or delete your personal data at any time. To exercise these rights, email privacy@zoediagnostics.com. We respond within 30 days. If you are an EU or California resident, you have additional rights under GDPR / CCPA — we honor those for all users regardless of jurisdiction.

06

Cookies and tracking

We use a minimal set of cookies for authentication and product analytics. We do not use third-party advertising cookies or cross-site tracking pixels. You can disable cookies in your browser settings; the site will continue to work with the exception of features that require login.

07

International transfers

Zoe operates from the United States. If you access the service from outside the US, your data will be transferred to and processed in the US under standard contractual clauses or equivalent safeguards. EU customers can request that diagnostic data be processed in EU regions on request.

08

Changes to this policy

We may update this policy as Zoe evolves. Material changes will be communicated to active customers via email at least 30 days before they take effect. The "last updated" date below reflects the most recent revision.

Questions about this privacy policy?

privacy@zoediagnostics.com
Security & Trust

See the full security architecture.

Our /security page covers encryption, isolation, compliance posture, and the data flow diagram.

Join 200+ firms on the waitlist