Legal

Privacy Policy

Effective date: June 04, 2026 · Last updated: June 04, 2026

This Privacy Policy explains how Easentic, Inc. (“Easentic”, “we”, “us”, or “our”) collects, uses, shares, and protects information, including personal information (collectively, “Information”), when you use the Easentic service — including the Easentic app on the Slack App Directory and Microsoft Teams App Source (where the bot’s mention handle is “@Elisa”) and the web application at https://app.easentic.ai, as well as the Easentic website (collectively, the “Service”).

By accessing, registering or using the Easentic Services, you agree to this Privacy Policy and the practices described herein. If you do not agree, do not install the app and do not use the Service. Please note that the Services is not intended for use by anyone under age of 16 and we do not knowingly collect personal information of persons under 16.

1. Who we are

Easentic is a workplace AI assistant for software-engineering teams. It connects to your project tools (Jira, ClickUp, and similar), your Slack workspace or Microsoft Teams tenant, and your meeting tools, and produces standups, reports, and answers to project questions on demand. The Easentic Service is operated by Easentic, Inc., a Delaware corporation in the United States.

For privacy questions, contact us at privacy@easentic.ai.

2. Information we collect

2.1 Information you provide when you request information through the website, communicate with us or sign up for the Service

  • Your name, work email address, and the name of your organization.
  • Your Easentic user role within your organization (admin, member).
  • Authentication information (OAuth identifier from Google, Microsoft, or our email-based sign-in). We do not store passwords.
  • Billing contact information, where applicable.
  • Other information you may provide when communicating with us.

2.2 Information from messaging integrations (Slack and Microsoft Teams)

When an admin installs the Easentic app from the Slack App Directory or Microsoft Teams App Source, we receive and process:

  • Workspace / tenant identifiers (Slack workspace ID, Azure AD tenant ID) and workspace / tenant display names.
  • Bot OAuth tokens issued by Slack at install time. For Microsoft Teams we do not store a per-tenant bot token — we acquire short-lived tokens on demand using our own application credentials and the tenant identifier you have consented to.
  • Channel identifiers and names that you choose to bind to Easentic’s app during onboarding. We do not read channels you have not bound.
  • Messages and reactions in channels you bind to Easentic. We do not read messages in channels the bot is not a member of.
  • User profile information for users who interact with the bot (display name, real name, email address, and Slack profile time zone where available). We use email addresses to map a Slack/Teams user to an Easentic user when running write actions that require confirmation.
  • Installer identity (the user who clicked “Add to Slack” / “Add to Teams”) for audit purposes.

2.3 Information from issue-tracker integrations

If you connect a project-tracker integration such as Jira or ClickUp:

  • Issue and ticket data that the connection has access to: titles, descriptions, status, assignees, comments.
  • Project and board metadata.
  • Sprint information.
  • The credentials you provide (API tokens, OAuth refresh tokens), stored in our database referenced from the integration connection.

2.4 Information from meeting integrations

If you connect a meeting integration such as Microsoft Calendar, or Google Calendar:

  • Calendar metadata (event titles, times, attendees) for events your account has access to.
  • Meeting transcripts and recordings, where you have explicitly granted Easentic permission to capture them via the integration.

2.5 Information collected automatically

When you use the service we automatically collect certain technical information:

  • Service logs (recorded server-side, not via cookies): request timestamps, user identifiers, IP address, browser user-agent, the API endpoints called, status codes, and durations. Logs do not include any secrets, tokens, credentials, or full message bodies.
  • Diagnostic and error data, used to debug failures and improve reliability.

Cookies and similar technologies:

  • In the application (app.easentic.ai): We use only strictly necessary cookies — a session cookie that keeps you signed in. We do not use advertising or tracking cookies in the application.
  • On our public website (easentic.ai): We use analytics cookies, including Google Analytics 4, to understand how visitors use and navigate our site. Through these cookies we collect the pages you visit and the order you visit them in, how you arrived at our site (referring website, search terms, or campaign link), time spent and interactions on each page, your approximate geographic location (country/region/city, derived from your IP address), your device type, operating system, browser, screen size, and language preference, and a pseudonymous identifier stored in the analytics cookie that lets us recognise repeat visits. We do not use this information to identify you personally or for cross-site advertising.

Your choices. You can disable or delete cookies through your browser settings; blocking analytics cookies will not affect your ability to use the Service. Our systems do not currently respond to browser “Do Not Track” signals. You can also opt out of Google Analytics across all websites using Google’s opt-out browser add-on at tools.google.com/dlpage/gaoptout.

3. How we use information

We use the Information described above to:

  • Provide the Service. Generate reports, responds to questions, flag drift in your project deliverables.
  • Operate the bot. Authenticate inbound webhook events from Slack and Microsoft Teams, route them to the correct project, and deliver responses to the correct channel.
  • Improve the Service. Diagnose errors, track usage patterns at an aggregate level, and prioritise product improvements. We do not train AI models on your data without your explicit instruction — see Section 4 on AI processing.
  • Communicate with you. Send service notifications, security alerts, and (with your consent) product updates.
  • Comply with legal obligations. Respond to lawful requests, enforce our Terms of Service, and protect the security of our service and users.

We do not sell personal information or share personal information collected through the Service for cross-context behavioral advertising or targeted advertising. We do not share personal information with third parties for those third parties’ direct marketing.

4. AI / LLM processing of your data

Easentic uses a third-party large language model (LLM) provider to power its assistant capabilities. When you ask Elisa a question, run a report, or run a write action, the content of your request — and, where relevant, the connected data we need to answer (issue summaries, recent messages in bound channels, meeting transcripts) — is sent to the LLM provider for processing.

  • The LLM provider we use is Google (Vertex AI). Google contractually agrees not to retain or train on customer data by default.
  • We do not send your data to the LLM provider for any purpose other than processing the specific request that produced it.
  • Easentic’s AI features generate recommendations and content for your review.

5. How we share information

We share Information only with:

5.1 Sub-processors

We engage companies that process data on our behalf to provide the Service. Each sub-processor is contractually bound to confidentiality and to using the data only for the purposes we direct. We engage sub-processors in the following categories:

Category of Sub-processorPurposeData categories
Cloud infrastructure & hostingApplication hosting, database, object storage, secret and key management, identity/authentication, and loggingAll categories above
AI / LLM inference & embeddingsGenerating reports, answering questions, and producing embeddings for retrievalContent of user requests and the context retrieved to answer them
Meeting infrastructureJoining and capturing meetings, where the calendar/meeting integration is enabledMeeting metadata, transcripts
Speech-to-text & text-to-speechTranscription and voice synthesis for meeting and voice features, where enabledAudio streams and transcripts from meetings/voice sessions you enable

In addition to the sub-processors above, the Service interoperates with platforms you authorize it to connect to (Slack, Microsoft Teams, Jira, ClickUp, Google Workspace, Microsoft 365, and similar). Your use of those platforms is governed by your separate agreements with their providers; they are not Easentic sub-processors.

Material changes are announced at least 30 days in advance. If you reasonably object to a new sub-processor, you may terminate affected services and receive a refund of any pre-paid unused fees.

5.2 Within your organization

  • Other users in your Easentic account may see data attributable to you (e.g. standup posts, reports you’ve generated) according to your organization’s role configuration.
  • Administrators of your Easentic account can view connection details, channel bindings, and disconnect integrations.

5.3 Legal and safety

We may disclose information when we believe in good faith that disclosure is necessary to comply with applicable law, respond to lawful process, enforce our Terms of Service, or protect the rights, safety, or property of Easentic, our users, or the public. We will use reasonable efforts to notify you before disclosure where legally required.

5.4 Business transfers

If we are involved in a merger, acquisition, financing, or sale of assets, including in connection with a reorganization or bankruptcy proceeding, we may transfer information as part of that transaction. Any successor entity is bound by the commitments of this Privacy Policy.

6. Data retention and deletion

We retain Information only as long as needed to provide the Service and for legitimate business purposes or as required by applicable law.

  • Account information: retained while your organization has an active Easentic account; deleted within 90 days of account closure unless retention is required by law (e.g. tax records).
  • Workspace / tenant install records: retained while the integration is connected. When an administrator clicks Disconnect in the Easentic dashboard, the connection record is soft-deleted; bot tokens are revoked where possible (Slack auth.revoke); access stops immediately.
  • Soft-deleted records are hard-deleted from our active databases within 90 days. Backups are retained for up to 35 days and then overwritten in the normal course of backup rotation.
  • Pending install records (unclaimed marketplace installs) expire automatically after 24 hours and are deleted; any Slack bot token they contained is revoked at expiry.
  • Service logs: retained for up to 90 days for operational debugging.
  • Meeting transcripts (if enabled): retained according to your organization’s configuration; default is 6 months.

You can request deletion of your data at any time by contacting privacy@easentic.ai — see Section 8. We will process such request as required by law, which may provide certain exceptions to a delete request.

7. Security

We use commercially reasonable efforts to implement administrative, technical, and physical safeguards designed to protect your Information:

  • Transport encryption. TLS 1.2+ for all data in transit between your browser, Easentic, and Slack / Microsoft / other sub-processors.
  • At-rest encryption. Production databases and object storage are encrypted using Google Cloud’s at-rest encryption.
  • Access controls. Production access is limited to authorised Easentic personnel; access is logged.
  • Secret management. Application secrets (API keys, signing secrets) are bootstrapped from Google Cloud Secret Manager at startup.
  • Webhook signature verification. Inbound webhooks from Slack and Microsoft are cryptographically verified before any destructive action is taken.
  • Incident response. We maintain a written incident-response procedure and will notify affected customers without undue delay if a security incident affecting their data is confirmed.

No security control is perfect; no service can be guaranteed 100% secure. If you believe your Easentic account has been compromised, contact security@easentic.ai immediately.

8. Your rights

Depending on your jurisdiction, you may have the following rights with respect to personal information we hold about you:

  • Access — request a copy of the personal information we hold about you.
  • Correction — request that we correct inaccurate or incomplete information.
  • Deletion / erasure — request that we delete your personal information, subject to retention obligations.
  • Restriction — request that we limit how we process your information.
  • Portability — receive your information in a portable, machine-readable format.
  • Objection — object to certain processing on legitimate-interest grounds.
  • Withdraw consent — where processing is based on consent, withdraw that consent at any time.

To exercise these rights, contact us at privacy@easentic.ai. We will respond within the time period required by applicable law. We may need to verify your identity before fulfilling certain requests.

8.1 California (CCPA / CPRA) and other US state privacy laws

If you are a California resident, you may have the right to:

  • Know what categories of personal information we collect and how it is used.
  • Request access to or deletion of your personal information, subject to certain exceptions.
  • Request that we correct inaccurate personal information.
  • Limit the use of sensitive personal information.
  • Opt out of any “sale” or “sharing” of personal information.

Easentic does not sell or share personal information for cross-context behavioural advertising as those terms are defined under CCPA/CPRA or use your sensitive personal information to infer characteristics about you, and therefore does not provide such opt-out rights.

Residents of other US states with applicable privacy laws (including Colorado, Connecticut, Texas, Utah, and Virginia) may have similar rights under their state laws; we will respond to verifiable requests to the extent required by applicable law.

To exercise your rights contact privacy@easentic.ai. We may need to verify your identity before fulfilling certain requests. In addition, you may have the right to make a request through an authorized agent, subject to verification of that agent as permitted by applicable law. In some states, you may have the right to appeal a decision regarding your request; to make an appeal, please contact us at privacy@easentic.ai.

8.2 International users

Easentic is a United States company; we process all Information in the United States. If you access the Service from outside the United States, by using the Service you consent to processing in the United States, which may have less protection for personal information than your jurisdiction of residence.

You may have additional rights under the laws of your jurisdiction not specified above, including the right to access, correct, or delete personal information about you, and the right to lodge a complaint with your local data-protection authority. To exercise any such rights, contact privacy@easentic.ai and we will respond to your request to the extent required by applicable law.

9. Third Party Links

Our Services may contain links to third-party websites and services. Any access to and use of such linked websites or services is not governed by this Privacy Policy, but instead is governed by the privacy policies of those third party websites or services. We are not responsible for the information practices of such third party websites or services.

10. Changes to this Privacy Policy

We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page and, where the change is material, notify affected users via email or an in-product banner at least 30 days before the change takes effect.

11. Contact us

For questions about this Privacy Policy or our privacy practices:

Privacy / Grievance Contact: Easentic Privacy Team — reachable at privacy@easentic.ai.

Easentic, Inc. 10823 E Estates Dr, Cupertino, CA 95014, United States

If you have a complaint we have not resolved to your satisfaction, you may have the right to lodge a complaint with your local data-protection authority.