Legal
Plain English summary: PitchOS collects only what it needs to work. Your deal data and ICP configuration are stored securely and are only accessible to you. We use the Claude AI API to process your inputs — Anthropic does not use your data to train models. Voice transcription happens on your device where possible. We never sell your data.
This policy applies to the PitchOS iOS app and the website at pitchospro.com. It is written in plain language. The full legal detail follows below.
PitchOS is operated as an independent software product. The data controller responsible for your personal data is the founder and operator of PitchOS, contactable at support@pitchospro.com.
For the purposes of UK GDPR and the Data Protection Act 2018, we are the data controller for personal data collected through the PitchOS iOS app and pitchospro.com.
| Data | Why we collect it | Where it's stored |
|---|---|---|
| Email address | Account creation and authentication | Supabase (auth) |
| Name and job role | Personalising AI outputs in the ICP configurator | Supabase (database) |
| ICP configuration | Product name, industries, buyer titles, methodology, differentiators — used to calibrate AI outputs | Supabase (database) + iOS SwiftData (local) |
| Deal and prospect data | Company names, contact names, roles, notes entered by you for each deal | Supabase (database) + iOS SwiftData (local) |
| AI-generated outputs | Briefs, questions, objection responses, summaries, emails — stored for your output history | Supabase (database) |
| Data | Why we collect it | Where it's stored |
|---|---|---|
| Usage counts | Enforcing the free tier generation limit (50/month) | Supabase (database) |
| Subscription status | Determining which features you have access to | RevenueCat + Supabase |
| Crash and error reports | Diagnosing and fixing app issues | Sentry (anonymised) |
| Anonymous usage analytics | Understanding which features are used to improve the product | PostHog (anonymised) |
When you use the voice note capture feature in Post-Call Summary, your device's microphone is used to transcribe speech to text. On iOS 17 and above, this transcription is performed on-device using Apple's Speech framework — audio is not transmitted to our servers. On older iOS versions, Apple may process audio through its servers per Apple's own privacy policy. We do not store raw audio recordings.
AI generations in PitchOS are processed by the Claude API, operated by Anthropic PBC. When you generate a brief, questions, objection response, summary, or email, the relevant context (your ICP configuration, deal details, and your input) is sent to Anthropic's servers for processing.
Anthropic does not use API inputs to train their models. API data is subject to Anthropic's API data usage policy, available at anthropic.com/legal/privacy.
You should not enter sensitive personal data about third parties (such as private individuals' personal details) into PitchOS beyond what is necessary for professional sales activity.
Your data is stored in Supabase, a managed database platform. All data is encrypted in transit (TLS) and at rest. Row-level security policies ensure your data is only accessible to your authenticated account.
A copy of your ICP configuration and deal data is also stored locally on your device using iOS SwiftData. This enables offline access. This local data is protected by iOS device encryption and is not accessible to other apps.
We take reasonable technical and organisational measures to protect your data against unauthorised access, alteration, disclosure, or destruction. No method of transmission over the internet is 100% secure — if you have concerns, contact us at support@pitchospro.com.
We do not sell your personal data. We share data only with the following third-party processors, under appropriate data processing agreements:
| Processor | Purpose | Location |
|---|---|---|
| Supabase | Database, authentication, storage | EU / UK |
| Anthropic (Claude API) | AI generation processing | United States |
| RevenueCat | Subscription management | United States |
| Apple (App Store / StoreKit) | Payment processing, TestFlight distribution | United States |
| Sentry | Anonymous crash reporting | United States |
| PostHog | Anonymous product analytics | EU |
Where data is transferred to the United States, we rely on Standard Contractual Clauses (SCCs) or equivalent mechanisms to ensure adequate protection under UK GDPR.
We retain your data for as long as your account is active. If you delete your account, your personal data and deal data will be deleted from our systems within 30 days, except where we are required to retain it for legal or financial compliance purposes (typically 7 years for financial records).
Anonymised analytics data (which cannot be linked to you) may be retained indefinitely.
As a UK resident, you have the following rights regarding your personal data:
To exercise any of these rights, email support@pitchospro.com with the subject "Data request". We will respond within 30 days.
If you are not satisfied with our response, you have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.
The PitchOS iOS app does not use cookies. The pitchospro.com website uses no third-party tracking cookies. We use privacy-respecting analytics (PostHog, self-hosted with anonymisation) to understand website traffic. No advertising pixels or third-party tracking scripts are present on this website.
PitchOS is designed for professional use by adults. We do not knowingly collect data from anyone under the age of 16. If you believe a minor has provided us with personal data, please contact us at support@pitchospro.com and we will delete it promptly.
We may update this Privacy Policy from time to time. When we make material changes, we will notify you via the email address associated with your account and update the "Last updated" date at the top of this page. Continued use of PitchOS after changes are posted constitutes acceptance of the updated policy.
For any privacy-related questions, data requests, or concerns:
Email: support@pitchospro.com
Website: pitchospro.com
We aim to respond to all privacy enquiries within 5 working days and will always respond within 30 days as required by UK GDPR.