Who we are
Amoreg is operated by Amoreg Limited, a company registered in Guernsey under company number 74168. Our registered office is Fairbairn House, Level 5, Rohais, St Peter Port, Guernsey GY1 1FE.
For deletion and other data-rights requests, use our privacy request form. We log requests and their handling, and normally respond within one calendar month. We may need to verify your identity. For complex or multiple requests, we may extend the response by up to two further months and explain the reason within the initial month.
For privacy questions, or if you prefer email, contact us at amir@amoreg.com.
When we are controller or processor
Amoreg Limited is the controller for personal data we collect and decide how to use, including public website visits, sales enquiries, account administration, security logs, billing administration, and support communications.
For customer content processed inside an Amoreg workspace, we generally act as processor or service provider for the customer organization. The customer remains responsible for deciding what personal data is uploaded, connected, searched, retained, exported, or deleted in that workspace, subject to the customer agreement or data processing terms that apply.
Personal data we handle
Depending on how you use Amoreg, we may handle:
- Contact details, such as name, work email, organization, role, and communication preferences.
- Account and authentication data, such as user identifiers, organization membership, roles, session metadata, and sign-in events.
- Workspace content submitted by customers, such as policies, controls, regulatory notes, evidence files, prompts, chat messages, generated outputs, and related metadata.
- Usage, diagnostic, and security data, such as pages visited, device/browser details, IP address, request logs, audit events, error traces, and product interaction data.
- Commercial and support data, such as subscription, billing, contract, invoice, support, scheduling, and customer success records.
- Cookie and analytics data from our public website and product surfaces.
- Learned working preferences: short notes about how a workspace member likes to work with the assistant, derived from their own messages, as described under Learned working preferences below.
Customers should avoid uploading unnecessary special category, criminal offence, payment card, or other highly sensitive personal data unless they have confirmed that the workspace and their agreement support that processing.
Purposes and legal bases
We use personal data for the following purposes:
- Providing, securing, maintaining, and improving Amoreg.
- Creating accounts, authenticating users, managing organization access, and supporting customer workspaces.
- Processing customer-submitted content under the customer's instructions.
- Responding to enquiries, support requests, demos, contract administration, and service communications.
- Monitoring availability, abuse, fraud, and security risk.
- Meeting legal, regulatory, accounting, tax, and corporate record obligations.
- Understanding public website performance and the effectiveness of product communications.
Where Amoreg Limited is controller, we rely on contract performance, legitimate interests, legal obligations, and consent where required. Where we process customer workspace content as processor, we process it on the customer's documented instructions and under the relevant customer agreement or data processing terms.
Subprocessors and third parties
We use subprocessors and service providers to operate Amoreg. These may include providers for:
- Cloud hosting, compute, deployment, and content delivery.
- Authentication, session management, and user administration.
- Databases, object storage, vector storage, queues, and observability.
- AI model providers and retrieval infrastructure used to answer customer requests.
- Email, support, scheduling, analytics, billing, and customer communications.
- Security monitoring, logging, backup, and incident response support.
The application selects its PostgreSQL pgvector table in London as the production vector store. Pinecone Inference remains an external provider for generating embeddings with the llama text embed v2 model. The former Pinecone index in the AWS US East 1 region is retained temporarily for controlled rollback and is not selected for application writes.
We require these providers to process personal data only for the services they provide to us and to apply appropriate security and confidentiality measures. Customer agreements or data processing terms may provide more specific subprocessor commitments for customer workspace processing.
International transfers
Amoreg Limited is established in Guernsey and uses infrastructure and subprocessors that may process personal data in Guernsey, the United Kingdom, the European Economic Area, the United States, and other locations where our providers operate.
Vector storage in London does not by itself establish compliance with GDPR or any other data protection law. Pinecone Inference may process text outside the United Kingdom when it generates embeddings. Where personal data is transferred internationally, we use appropriate safeguards including adequacy decisions, contractual protections, data processing terms, and operational controls as applicable.
Retention
We keep personal data only for as long as needed for the purposes described above, unless a longer period is required for legal, regulatory, security, audit, dispute, tax, accounting, or business continuity reasons.
Customer workspace content is retained according to the customer's configuration, agreement, and deletion instructions, subject to backup, audit, legal, and security retention windows. Security logs and diagnostic records are retained for limited periods appropriate to investigation, reliability, and abuse-prevention needs.
Learned working preferences lapse 90 days after they were last confirmed and are then deleted, and are deleted when a person leaves the organization they were learned in, as described under Learned working preferences.
Privacy-request records are access restricted and used to manage the request, verify handling and demonstrate accountability. After closure, we review the handling record and retain it only as needed for accountability, applicable legal obligations or a documented legal hold. Raw IP addresses are not stored in this log; keyed abuse-prevention digests are removed after 24 hours by scheduled maintenance.
Security
We use administrative, technical, and organizational safeguards designed to protect personal data. These include access controls, organization-scoped authorization checks, encryption in transit, managed cloud infrastructure, logging, backup controls, dependency monitoring, secret scanning, and operational review.
No system is completely secure. This notice does not claim that Amoreg has completed SOC 2 certification, an independent penetration test, database row-level security, or any other control unless expressly stated in a separate executed agreement or current security documentation.
Cookies and analytics
Our website and product may use cookies, local storage, and similar technologies to keep sessions working, remember preferences, measure website usage, understand product performance, and protect the service.
Some cookies are necessary for authentication, security, load balancing, or requested functionality. On the marketing website and production workspace, optional browser analytics start only after you accept analytics. You can reject analytics and continue using the service. Use Privacy choices in the marketing website footer or on the workspace sign-in page to change your choice, or use Settings → Security → Product analytics when signed in to the workspace. Withdrawing consent stops future browser analytics collection; it does not automatically delete events already collected.
Your analytics choice is stored on the current website in local storage as amoreg.analytics-consent.v1, with its purpose and timestamp, for up to 180 days. The marketing website and workspace maintain separate choices. If browser storage is unavailable, your choice applies only to the current page session.
When enabled, PostHog receives browser usage information through its EU endpoint. Marketing analytics use a browser identifier without attaching your account identity or recording sessions. Workspace analytics may include your account identifier, work email, organization, grouped page paths and masked session recordings. PostHog uses a ph_*_posthog cookie, configured for 180 days, and corresponding browser storage for analytics identifiers. Withdrawal removes these browser identifiers; the SDK may retain an opt-out preference. Vercel Web Analytics on the marketing website is also gated by this choice. Operational server logs and model usage records are separate from optional browser analytics and remain subject to the purposes described above.
Sentry receives scrubbed error diagnostics through our German ingestion endpoint to help us maintain reliability. Optional performance tracing and masked Sentry session replay require the same analytics consent. Automatic release-health visit counting is disabled. Sentry replay uses sentryReplaySession in session storage while recording; withdrawal stops recording, discards its buffer and clears that session record. Closing the tab also clears session storage.
Our documentation site is hosted by Mintlify. Mintlify visitor telemetry is disabled. The documentation host still sends page location and browser timing information through a Cloudflare performance beacon, separately from the analytics choices on the marketing website and workspace. Documentation content also loads from Mintlify, Google Fonts and CloudFront.
Booking controls load a third-party scheduling service when you activate them. Review that service's privacy information before providing appointment details. Browser controls can also block or delete cookies, but some essential functionality may stop working correctly.
Learned working preferences
The workspace assistant can learn how each person prefers to work with it, so they do not have to repeat the same instructions in every conversation. For example, it may note that someone wants comparisons presented as a table with the conclusion first. These notes are used only to tailor how the assistant responds to that person. They are not used to evaluate, monitor or make decisions about anyone.
- What is kept: short notes about answer format and style, working steps and standing preferences, such as preferred spelling or citation habits. Notes are refused if they contain contact details, long reference numbers, links or instructions directed at the assistant, and the review is instructed to leave out facts about clients, cases, deals or documents.
- How notes are made: about 30 minutes after a conversation goes quiet, the messages the person typed in it are reviewed automatically, together with a short excerpt of each reply they responded to. Documents, search results and tool output are not included. The review is carried out by one of the AI model providers described under Subprocessors and third parties.
- Scope: notes belong to one person within one organization. Notes learned in one organization are never used in another, and other members, including organization administrators, cannot see them in the product.
- Retention: a note lapses 90 days after it was last confirmed, either by the person's later work or by them editing it. Lapsed notes are deleted, and all of a person's notes in an organization are deleted when they leave it.
- Your control: under Settings → Your context, each person can see every note kept about them in the current organization, reword or delete any of them, or use Forget everything. Turning off Learn from my conversations stops new learning and stops existing notes being used. Access and erasure requests made through our privacy request form include these notes.
Where we provide this feature as part of a customer workspace, we process these notes as processor under the customer agreement or data processing terms. To the extent we act as controller, we rely on our legitimate interest in providing an assistant that adapts to how each person works, balanced by the controls described above.
Your rights
Subject to applicable law and any limits that apply, you may have rights to:
- Access personal data about you.
- Correct inaccurate or incomplete data.
- Request erasure.
- Restrict or object to processing.
- Request data portability.
- Withdraw consent where processing is based on consent.
- Object to direct marketing.
- Complain to a supervisory authority.
You can view, correct and delete your own learned working preferences directly under Settings → Your context, and object to further learning by turning off Learn from my conversations.
If your data is inside a customer workspace, we may need to direct your request to the customer organization because they control that workspace processing. We will still help route or support the request where appropriate.
Complaints
Please contact us first at amir@amoreg.com so we can review and respond.
You may also complain to the Office of the Data Protection Authority in Guernsey, the Bailiwick's independent supervisory authority for data protection. The ODPA publishes complaint guidance at odpa.gg/individuals/make-complaint and contact details at odpa.gg/contact. Its listed contact details include info@odpa.gg, +44 (0)1481 742074, and Block A, Lefebvre Court, Lefebvre Street, St Peter Port, GY1 2JP.
Changes to this notice
We may update this notice as Amoreg, our providers, our infrastructure, or legal requirements change. The last-updated date above shows when this public notice was most recently changed.