Skip to content
ProsGrow AI
HomePrivacy PolicyTerms of Service

Legal

Privacy Policy

How we handle personal information and enterprise data across our website, AI services, and compute offerings.

Last updated: September 15, 2026

On this page
  1. Scope and responsibilities
  2. Information we collect
  3. How we use information
  4. AI processing and model training
  5. Service providers and disclosures
  6. Workspaces and public information
  7. Cookies and analytics
  8. Retention and deletion
  9. Security and SOC 2 status
  10. Your rights and choices
  11. International processing
  12. Legal bases
  13. Children’s privacy
  14. Third-party services
  15. Policy updates
  16. Contact us

1. Scope and responsibilities

ProsGrow AI, Inc. (“ProsGrow,” “we,” “us,” or “our”) explains in this policy how personal information is collected, used, disclosed, and handled through our websites, applications, and services. Our services include AI workflow analysis and optimization, benchmarks, managed inference and token serving, compute and deployment offerings, and our conference, business discovery, workspace, and communication tools.

For website visitors, individual accounts, billing, and our own business communications, ProsGrow determines how information is used for the purposes described here. When an enterprise customer provides data for us to process on its behalf, that customer determines the purposes of processing and may act as the controller or business; ProsGrow acts as a processor or service provider where applicable.

Enterprise processing is also governed by the applicable service agreement, order, and any data processing agreement (“DPA”). Those agreements govern customer-specific processing instructions, confidentiality, retention, and deployment requirements. This policy does not reduce rights that applicable law gives you.

2. Information we collect

  • Account and contact information: name, email address, company, job title, contact details, authentication-related information, workspace membership, and support or sales communications.
  • Customer content and workload information: prompts, model inputs and outputs, workflow descriptions, configurations, evaluation examples, documents, images, audio, video, transcripts, business cards, notes, contacts, and other material you submit. Model artifacts or technical logs may also be processed where included in an engagement.
  • Usage and technical information: IP address, browser and device details, approximate location, page views, interactions, timestamps, diagnostics, performance measurements, API usage, and resource or token consumption where collected by the service.
  • Billing information: purchase, subscription, credit, invoice, and transaction records. Payment providers collect payment details needed to complete a transaction.
  • Information from other sources: authentication, payment, integration, and data providers; public company or event sources; and users who submit information about other people or organizations.

AI tools may derive summaries, classifications, recommendations, embeddings, and other inferences from these inputs. Derived information can be inaccurate. Business information may still be personal information when it identifies an individual.

3. How we use information

We use information to provide the services you request, manage accounts and workspaces, analyze workflows, run evaluations, optimize and serve models, deliver compute, generate outputs, and operate supported integrations. We also use information to process payments, provide support, diagnose errors, measure service performance, protect against fraud or unauthorized use, and meet legal obligations.

Website and product usage information helps us understand how services are used and improve functionality. We may send service notices and, where permitted, product or marketing communications. Enterprise content remains subject to the processing and training limits below and in the applicable agreement.

4. AI processing and model training

AI processing can involve sending prompts, relevant conversation history, documents, audio, or other context to the model provider or endpoint configured for a feature. The information required depends on the selected service, integration, and deployment. A private deployment has the data flows and access boundaries specified for that deployment.

Enterprise data is not used by default to train shared or general-purpose models. This includes enterprise prompts, workflows, data, and outputs. Any such additional training use requires a separate, explicit agreement with the customer.

Customer-specific evaluation, optimization, or model tuning may be performed according to the customer’s instructions and agreement. Processing an input to produce an inference or evaluate a workload is distinct from using it to train a shared model.

Third-party model processing, retention, and available data controls depend on the provider, endpoint, and contractual configuration used for the service. Enterprise deployment requirements, including provider restrictions and any required retention settings, should be established with us before workload data is transferred. Customer-selected integrations can have their own terms and privacy practices.

5. Service providers and disclosures

Information may be processed by providers that support hosting, storage, authentication, model inference, payments, communications, analytics, and diagnostics. Depending on the feature and configuration, these may include Supabase, OpenAI or Azure OpenAI, Stripe, Resend, Google services, PostHog, Sentry, and hosting providers. This is an overview of service categories, not a deployment-specific subprocessor schedule.

For enterprise workloads, the providers, access, and processing scope are governed by the service arrangement and any applicable DPA. Contact us for information relevant to your proposed or current deployment.

We may also disclose information when you direct us to do so; to authorized workspace members; as required by legal process; to address fraud, security, or rights-protection issues; or in connection with a financing, merger, acquisition, reorganization, or asset transfer, subject to applicable legal and confidentiality obligations.

6. Workspaces and public information

Enterprise administrators and authorized members may manage accounts, permissions, content, and integrations within their organization’s workspace. Visibility depends on the feature and workspace configuration. Information you intentionally publish, share, or send through an integration becomes available to the recipients or audience you select.

Conference and business discovery features may display public business information, contact information, and event listings obtained from public sources, providers, or user submissions. Some discovery features are paid services. Such information can be incomplete or outdated; correction and removal requests may be sent to our contact address below.

If you submit information about another person, including contact details, recordings, or documents, you are responsible for having the rights, notices, and permissions required for that use.

7. Cookies and analytics

Our services use cookies, browser storage, and similar technologies for authentication, preferences, analytics, and diagnostics. Website analytics can include Google Analytics and PostHog. Diagnostic and session-replay tools may capture page activity and interaction details; masking and collection settings vary by tool and feature.

You can manage cookies and stored website data through your browser. Blocking some storage may affect sign-in or other functionality. Browser “Do Not Track” signals do not currently change service behavior automatically. You may contact us to exercise applicable privacy or opt-out rights; any additional consent or choice required by law must be provided for the relevant processing.

8. Retention and deletion

We retain information for the purposes for which it was collected, including delivering the service, maintaining account and transaction records, handling support and disputes, and meeting legal or security obligations. Retention depends on the data type, product, account status, deployment, and applicable agreement; there is no single retention period for all services.

You may request access, return, or deletion through the contact address below. For enterprise data, any agreed return or deletion schedule, backup handling, and post-termination access are set out in the applicable agreement. Requests may be subject to identity or authority verification, legal retention duties, and technical limitations that we explain in our response.

Deleting an uploaded raw file does not necessarily delete separately stored transcripts, notes, outputs, logs, or records. Please identify the scope of your request so related information can be considered. Ask us to confirm a required retention or deletion schedule before submitting data that depends on that schedule.

9. Security and SOC 2 status

We use reasonable administrative, technical, and organizational safeguards to protect information. Service features include authenticated access and authorization checks; the controls and operating responsibilities applicable to a managed, dedicated, or customer-hosted deployment depend on its configuration and agreement. No service can guarantee absolute security.

ProsGrow is preparing for SOC 2; a SOC 2 examination has not been completed. Our policies and readiness activities are not an independent assurance report. Enterprise security requirements and any commitments on availability, confidentiality, or processing are established in the applicable written agreement.

If a security incident requires notice, we will notify affected customers or individuals as required by applicable law and our agreements. Report a suspected security issue to contact@prosgrow.ai; please avoid including credentials or unnecessary personal information in the initial report.

10. Your rights and choices

Depending on your location and the law applicable to the processing, you may have rights to access or receive a copy of personal information; correct it; request deletion; restrict or object to processing; withdraw consent; and opt out of certain marketing, sale, sharing, or targeted-advertising uses where those rights apply. You may also have rights to appeal a decision or complain to a privacy regulator.

Send requests to contact@prosgrow.ai. We may verify your identity, your authority to act for someone else, and the scope of the request. Where we process information for an enterprise customer, we may direct you to that organization or assist it with your request. We will not discriminate against you for exercising rights protected by applicable law.

To opt out of marketing emails, use any unsubscribe link provided or contact us. Necessary account, transaction, and security communications may still be sent.

11. International processing

Information may be processed in the United States or other locations where the services and relevant providers operate. Data protection rules vary by location. A specific residency, transfer mechanism, or private-environment requirement must be addressed in the applicable deployment arrangement and agreement.

Where international-transfer safeguards are legally required, the relevant processing must follow those requirements. Contact us to discuss the locations and safeguards applicable to your service; use of a private deployment does not by itself describe every support, billing, or diagnostic data flow.

12. Legal bases

Where applicable law requires a legal basis, processing may be based on providing a contractually requested service, complying with legal obligations, consent where required, or legitimate interests such as service operation and security, subject to the rights and interests of the individuals concerned. Enterprise customers are responsible for the legal basis and instructions for data they provide on behalf of others.

Withdrawing consent does not affect processing lawfully carried out before withdrawal or processing that has another applicable legal basis.

13. Children’s privacy

Our services are intended for adults and are not directed to children. If you believe a child has submitted personal information, contact us so we can investigate and take appropriate action. Account eligibility is described in our Terms of Service.

14. Third-party services

When you choose an independent third-party service, such as a scheduling page, event website, or external integration, its privacy policy governs its own processing. This is distinct from providers we engage to process information as part of delivering our services under our agreements.

15. Policy updates

We may revise this policy as services and practices change. The current version and its last-updated date will be posted here. We will provide additional notices or obtain consent when required by law. A policy update does not itself authorize a new use of enterprise content that requires a separate agreement.

16. Contact us

For privacy requests, enterprise data-processing questions, corrections, or security reports, contact:

ProsGrow AI, Inc.
contact@prosgrow.ai

© 2026 ProsGrow AI, Inc.
HomePrivacy PolicyTerms of ServiceContact