Privacy Policy
Last updated: March 1, 2026
SIGNUL (“we”, “our”, or “us”) operates the SIGNUL platform, a legislative risk intelligence service. This Privacy Policy explains how we collect, use, store, and protect your information when you use our website and services.
1. Information We Collect
Account Information: When you create an account, we collect your name, email address, and organization name. If you sign in via Google OAuth, we receive your name, email, and profile picture from Google.
Usage Data: We automatically collect information about how you interact with our platform, including pages visited, features used, search queries, and dashboard configurations.
Payment Information: If you subscribe to a paid plan, payment processing is handled by our third-party payment provider. We do not store full credit card numbers on our servers.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the SIGNUL platform
- Personalize your experience, including tailored bill alerts and executive briefings based on your role and industry preferences
- Send service-related notifications and daily digest emails
- Respond to support requests and communicate about your account
- Analyze usage patterns to improve our AI analysis pipeline and product features
- Comply with legal obligations
3. Data Storage and Security
Your data is stored on infrastructure provided by Supabase, which uses Amazon Web Services (AWS) data centers. We employ industry-standard security measures including encryption in transit (TLS 1.3), encryption at rest (AES-256), and row-level security policies on all database tables.
AI-generated analyses are processed through our multi-model pipeline and stored in our database. Bill text and analysis outputs are associated with your organization account. We do not share your custom analysis configurations or proprietary briefings with other users.
4. Third-Party Services
We integrate with the following third-party services:
- Supabase: Database hosting, authentication, and real-time data synchronization
- Google OAuth: Optional single sign-on authentication
- AI Model Providers: Bill text is sent to AI model providers (Anthropic, Google, OpenAI) for analysis. These providers process data per their respective data processing agreements and do not use your data for model training.
5. Data Retention
We retain your account information and analysis data for as long as your account is active. If you delete your account, we will remove your personal information within 30 days. Aggregated, anonymized usage data may be retained indefinitely for product improvement.
6. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate information
- Request deletion of your personal information
- Export your data in a portable format
- Opt out of non-essential communications
To exercise any of these rights, contact us at privacy@signul.com.
7. Cookies
We use essential cookies to maintain your session and authentication state. We do not use third-party advertising or tracking cookies. Analytics cookies may be used to understand platform usage in aggregate.
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting a notice on our platform or sending an email to your registered address. Continued use of the service after changes constitutes acceptance of the updated policy.
9. Contact Us
If you have questions about this Privacy Policy, contact us at: privacy@signul.com