Privacy Policy

Last updated: 13 September 2026

1. Introduction

Pensieve ("we", "our", "us") operates the website at pensieve.uk and the Pensieve application. This policy explains how we collect, use, and protect your personal data when you use our services.

2. Data We Collect

We collect the following categories of data:

  • Company brain requests: your name, email address, company website, campaign source and submission time when you request a company brain. We also keep notification delivery status and a temporary hashed network identifier to limit repeated submissions. That identifier is removed after one day by our scheduled cleanup.
  • Account information — name, email address, and authentication credentials when you create an account.
  • Context data — context name, membership details, and role information.
  • Connected service data — when you connect third-party services (such as Notion, Google Drive, or Slack), we access and process content from those services on your behalf. This may include documents, messages, pages, and associated metadata.
  • Uploaded content — files and documents you upload directly to the platform.
  • Usage data — in-app activity, chat interactions with the AI agent, and general platform usage patterns. When you connect an AI agent to your context layer, we keep the search and read requests it sends for 90 days to measure the saving the layer provides. Results and content the agent writes are not kept for this purpose. A context owner or admin can turn this off or delete what has been kept in Settings.

3. How We Use Your Data

  • To provide, maintain, and improve the Pensieve service.
  • To fulfil company brain requests and contact you about the brain you requested.
  • To process your content through AI models to generate insights, build your context's context layer, and power the AI agent.
  • To synchronise data from connected third-party services.
  • To communicate with you about your account and service updates.

4. Third-Party Services and Sub-processors

When you connect external services through OAuth (such as Notion, Google Drive, or Slack), we store encrypted access tokens to interact with those services on your behalf. We only request the minimum permissions necessary to read content. You can disconnect any service at any time through your context settings.

To run the service we share data with a small set of vetted sub-processors — covering infrastructure, AI models, and analytics. Some (in particular our AI model providers) are based in the United States; where data is transferred outside the UK/EU we rely on Standard Contractual Clauses. The current list is published on our sub-processors page, and we give 30 days' notice of changes.

For data you connect from your own business systems, your context is the data controller and Pensieve acts as your processor under a data processing agreement, available to business customers on request.

5. Google API Services — Limited Use

Pensieve's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.

When you connect Google Drive, we access your files only to provide Pensieve's features — synchronising the content you choose into your context's private context layer and making it available to the AI agent you interact with. We process this content through third-party AI models solely to deliver these features to you.

Gmail is connected one inbox at a time, by a member who can sign into that inbox. For each connected inbox we read the messages within the history window chosen for it, in order to distil what they say into the same context layer. We keep the text of the conversations we read and the references saved from them; attachments are listed by name and never downloaded, and drafts and bulk mail are skipped. Each inbox is shown in the context's settings and can be disconnected at any time, with the option to delete everything it saved.

We do not use data obtained through Google Workspace APIs to develop, improve, or train generalised or non-personalised artificial-intelligence or machine-learning models, and we do not permit our AI sub-processors to do so — this data is sent to model providers under API terms that prohibit training on it. We do not sell this data, transfer it to third parties for advertising purposes, or allow humans to read it except where required for security, to comply with applicable law, or where you have given your affirmative consent.

6. Data Storage and Security

Your data is stored using industry-standard measures. Access tokens and other sensitive credentials are encrypted at rest, and data stored on disk is encrypted at rest by our infrastructure providers. Each context's data is isolated — PostgreSQL row-level security plus a dedicated, isolated database per context. We use Supabase (EU region) for authentication, database, and file storage, and connections to it use TLS.

7. Data Retention

We retain your data for as long as your account is active. When you delete your context or account, the associated data is removed from active systems promptly and purged from backups within 30 days. You can also request deletion by contacting us.

8. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your data.
  • Export your data in a portable format.
  • Withdraw consent for data processing.
  • Lodge a complaint with a supervisory authority — in the UK, the Information Commissioner's Office (ICO).

9. Cookies

We use essential cookies for authentication and session management, a preference cookie to remember your appearance choice across our sites, and a product-analytics cookie from PostHog (hosted in the EU) to understand how Pensieve is used. With your consent, we also load the LinkedIn Insight Tag on our marketing site to measure and improve our LinkedIn advertising (and, once audiences are large enough, for retargeting). These marketing cookies are set only if you accept them — never before — and you can change your choice at any time from the Cookie settings link in the footer. We do not sell your data.

10. Changes to This Policy

We may update this policy from time to time. We will notify you of any material changes by posting the updated policy on this page with a revised date.

11. Contact

If you have questions about this privacy policy or your data, contact us at euan@pensieve.uk.