Who processes your data
Last updated 2026-09-04
The Privacy Policy is the legal document. This page is the specifics behind it: exactly who outside Ambition Business Solutions LLC touches data in Ambition OS, and what the software does and does not collect.
It is kept alongside the code, so a service added to the product is added here in the same change.
1. Companies we rely on
Each of these receives only what its job requires, and each is bound to protect it.
| Company | What for | Where |
|---|---|---|
| Supabase | Database, file storage and sign-in | United States (us-east-1) |
| Vercel | Hosting and delivery of the application | United States |
| Stripe | Card payments, payouts and subscription billing | United States |
| Resend | Sending email on your behalf | United States (us-east-1) |
| Twilio | Sending and receiving text messages, where enabled | United States |
| Anthropic | AI features, and only where you have connected them | United States |
2. Two different relationships
This is the part that makes everything else make sense.
- The business using Ambition OS. We decide what to collect about them — their account, their business details, what they pay. For that we are the one answerable.
- That business’s customers. Their names, addresses, jobs and payments are in the system because the business put them there. We hold that on their behalf. The business is answerable to them; we are the service they chose.
If you are a customer of a business that uses Ambition OS and you want to see, correct or delete what is held about you, contact that business directly — it is their record. If you cannot reach them, write to contact@ambitionos.io and we will help you get to the right people.
3. Location, and only at clock-in
When a member of staff clocks in or out from a phone, the app asks the device for its position once, at that moment, and records it against that entry so hours can be tied to a place.
- It can be refused, and refusing it does not stop anybody recording their hours.
- It is asked for at clock-in and clock-out only.
- There is no background tracking and no continuous tracking, of anyone, at any time.
4. Card details never reach us
Card payments run through Stripe. We never receive or store a full card number. We keep a reference that lets an agreed card be charged again, plus the last four digits and the card type so a person can tell which card it is.
Money from your customers goes to your own connected Stripe account. We never hold it.
5. The AI features send nothing until connected
- If they have not been switched on, no data is sent to any AI provider at all.
- When they are on, only the records needed to answer the question are sent — not a whole database.
- Where a business connects its own provider key, that relationship is between them and that provider.
- Your data is not used to train any model.
6. How businesses are kept apart
Separation between one business and another is enforced by the database itself, not by application code remembering to check. It is tested continuously, and by tests that make a stranger’s request and assert it returns nothing.
Credentials a business connects — payment, messaging or AI keys — are encrypted before they are stored, with the key held separately from the data.