Privacy Policy
Last updated: July 10, 2026
Safety Insight Hub is currently in beta. This policy describes the data we handle and how we handle it today. If a specific privacy programme (GDPR/CCPA data subject request workflow, signed DPA, subprocessor list with change notice, breach notification SLA, etc.) is a prerequisite for you, please contact us before uploading production data — we will tell you honestly whether we can meet it today.
What we collect
Account information (name, email), the safety data you and your team submit (incidents, near misses, observations, audits, training records, and similar records), and basic operational information such as sign-in events, needed to operate and secure the Service.
How we use it
To operate the Service, provide AI-assisted features, secure your account, and comply with legal obligations. We do not sell your data.
Data isolation
Your organization's data is isolated by row-level security policies in the database. Other organizations cannot read your records.
Subprocessors we use
Hosting and database: Lovable Cloud (built on Supabase / AWS). AI features: Google Gemini and OpenAI models, accessed via the Lovable AI Gateway. Email delivery is performed via our hosting platform's transactional email service. We may add or change subprocessors as the product evolves.
Requesting access, export, or deletion
Contact us at reviews@safetyinsightapp.com to request a copy of, correction of, or deletion of your personal data. These requests are handled manually today — there is not yet a self-service data export or self-service account deletion inside the app. We will do our best to respond in a reasonable timeframe, but we do not currently commit to a specific SLA while the product is in beta.
Security incidents
We do not currently guarantee a specific breach notification window. If we become aware of a security incident that affects your data, we will notify affected workspace admins as soon as reasonably possible.