LEGAL
Privacy Policy
Effective date: January 1, 2026 · Last updated: March 2026
1. Information We Collect
- ›Account information: Email address, company UEI, and subscription tier when you create an account or complete checkout.
- ›Public federal data: Your SAM.gov profile (UEI, NAICS codes, certifications, registration status) is retrieved from public federal databases. We do not store any information that is not already publicly available.
- ›Usage data: Pages visited, features used, and interaction patterns to improve the platform. This data is not sold or shared with third parties.
- ›Payment data: Billing is processed by Stripe. GovBiz.ai does not store credit card numbers or full payment details.
2. How We Use Your Information
- ›To deliver intelligence briefs and platform features matching your subscription tier.
- ›To send transactional emails: account verification, billing receipts, and service notifications.
- ›To improve the platform: aggregate usage patterns inform product development.
- ›We do not sell your personal data. We do not share your data with advertisers.
3. Data We Access from Public Sources
- ›GovBiz.ai accesses public federal procurement databases (SAM.gov, FPDS, USASpending, GSA CALC+, BLS) to generate intelligence. All data retrieved from these sources is already public domain.
- ›Your company's SAM.gov profile, NAICS codes, certifications, and registered UEI are public information. GovBiz.ai reads this data to personalize your intelligence preview and scored outputs.
4. Data Retention
- ›Account data is retained for the duration of your subscription plus 90 days after cancellation, after which it is deleted.
- ›Intelligence outputs and cached narratives are stored for up to 30 days and refreshed when underlying data changes.
- ›You may request deletion of your account and associated data at any time by contacting hello@govbiz.ai.
5. Security
- ›All data is encrypted in transit (TLS 1.2+) and at rest.
- ›Session tokens use HTTP-only cookies with SameSite=Lax to prevent cross-site request forgery.
- ›We do not store passwords. Authentication is handled via magic links sent to your email.
6. Third-Party Services
- ›Stripe: Payment processing. Subject to Stripe's privacy policy.
- ›Anthropic (Claude API): Used for narrative synthesis. Prompts contain pre-computed structured data only — no personally identifiable information is passed to the LLM.
- ›We do not use advertising trackers, Facebook Pixel, or third-party analytics platforms.
7. Your Rights
- ›Access: You may request a copy of your account data at any time.
- ›Deletion: You may request deletion of your account and all associated data.
- ›Correction: You may update your account information at any time from the account settings page.
- ›To exercise any of these rights, contact hello@govbiz.ai.
8. Contact
- ›For privacy questions or data requests: hello@govbiz.ai