Privacy policy
The short version: your work belongs to your workspace, your personal data belongs to you, we host it in the EU, and you can export or delete all of it yourself. The longer version follows, in plain language.
Last updated: July 18, 2026
What we store
Account data: your email address, display name, a password hash (never the password itself), and an optional avatar image you upload.
Workspace content: the work your team puts into StrideP — projects, tasks, comments, custom fields, attachments, forms, and the activity history around them. It belongs to your workspace and is only visible within it.
Operational data: application error reports (with volatile identifiers stripped), audit events (who did what, when), and short-lived rate-limiting counters that protect the service from abuse.
Where it lives
StrideP Cloud runs in the European Union: the application and its PostgreSQL database are co-located in the Netherlands. Data travels over TLS and is encrypted at rest by our infrastructure provider; integration credentials carry an additional layer of application-level encryption. Prefer your own infrastructure? StrideP can be self-hosted, in which case no data reaches us at all.
What we never do
- We never sell or share your personal data.
- We never run ads or advertising trackers.
- We never train AI models on your workspace content.
- We never read your workspace content except when required to operate the service or when you explicitly ask for support.
Subprocessors
Our hosting provider (Railway, EU region) processes data for every workspace. Everything else is opt-in: a subprocessor only touches your data if your workspace enables the integration that uses it.
- Stripe — payment processing, only if you subscribe to a paid plan. We never see or store card numbers.
- Email delivery provider — transactional email (invites, notifications), only when email sending is configured.
- AI model provider — AI features, only while AI is enabled for your workspace; requests are not used for model training.
- Slack / GitHub / GitLab — only if your workspace connects those integrations, and only the events those integrations need.
Your rights and your controls
- Export — a full workspace export (JSON + CSV) is self-serve in workspace settings, any time.
- Deletion — deleting your workspace removes its content; deleting your account removes your personal data.
- Access & correction — your profile and workspace data are directly visible and editable in the product.
- AI off switch — workspace admins can disable all AI features with one toggle.
- Audit — the workspace audit log shows who accessed and changed what, exportable as CSV.
Retention
Workspace content is kept for as long as the workspace exists and is removed when the workspace is deleted. Account data is kept until the account is deleted. Operational records (error reports, audit events) are retained only as long as they serve their security and reliability purpose and are pruned on a rolling basis.
Contact
Privacy questions, data requests, or a signed DPA: privacy@stride.app. We answer data-rights requests regardless of where in the world you are.