Privacy
Privacy notice for the marketing site and beta waitlist.
This page describes the current beta-stage privacy posture for the Council of 5 marketing site and interest forms.
Information we collect
Marketing site: if you register for the beta or contact the team, we may collect your name, work email address, company details, and any information you include about what you want to monitor. We may also collect standard analytics and device data associated with visits (page views, referring sources, high-level browser information).
Platform (app.co5.ai): once you have access, we collect information you provide to configure entities to monitor, your interaction history within the app (page views, alert dismissals, chat messages if applicable), and authentication metadata via our identity provider.
We do not knowingly collect information from anyone under the age of 16.
How we use it
Waitlist information manages the beta waitlist, lets us respond to questions, and helps us understand which pages are driving useful interest.
Platform information is used to deliver the monitoring service you configured, to operate scans and produce intelligence reports for the entities you subscribe to, to authenticate you across sessions, to send transactional alerts and account notifications, and to diagnose issues.
We do not use your information to send unrelated bulk marketing. If that changes, we will offer an explicit opt-in.
Third-party subprocessors
We use a small set of service providers to operate the platform. Each one processes only the data required for its role.
Identity + auth: Clerk (user accounts, org membership, session tokens).
Hosting + database: Railway (backend + Postgres), Vercel (marketing site + user platform frontend).
Transactional email: MailerSend (operator alerts, account notifications). Verified sender domains only.
LLM inference (used by the analysis pipeline): Anthropic, OpenAI. Only the data required to run the analysis flow is sent; we do not include personal information beyond what the entity configuration references.
Analytics: Google Analytics 4 and Microsoft Clarity on the marketing site (page-level analytics, no personal identifiers beyond IP-based approximations).
Retention and deletion
Waitlist and contact information is retained as long as needed for beta operations and record-keeping.
Platform data (your account, entity configurations, scan history, alert interactions) is retained while your account is active. On offboard, we delete account-scoped data (your user record, chat history, entity subscription rows, alert attribution) via a repeatable script; entity-shared analytical outputs (scan reports, intelligence, aggregated mentions) are retained because they belong to the shared entity layer, not the individual account.
You can request deletion at any time by contacting support (see below). Requests are handled promptly during the beta.
Contact
Send privacy questions and deletion requests to support@co5.ai. During the beta phase, requests are handled by the operator personally.
Legal review status
This notice was last updated 2026-07-04. It is written by the product team and has not been formally reviewed by counsel. It will be replaced with a counsel-reviewed version before opening to non-invited users. If you have specific requirements (DPA, GDPR representative, CCPA, industry-specific regulation), contact support and we will discuss.