Privacy Policy
Last updated: April 2026
ERPOps AI Copilot (“ERPOps,” “we,” “us”) provides AI-powered ERP operations tooling to organizations. This policy describes what information we collect, how we use it, and the choices available to you. It applies to our marketing site, the ERPOps web application, and related services.
1. Introduction & scope
This policy covers personal information processed in connection with our Services. It does not cover ERP source systems (e.g. PeopleSoft, Workday, Oracle, SAP) operated by your organization — those are governed by your own privacy notices.
2. Information we collect
- Account information: name, work email, employer, role, and authentication identifiers.
- Usage data: product interactions, feature usage, performance metrics, and diagnostic logs.
- Integration metadata: connector configuration, run status, and error signatures from your ERP integrations. We do not ingest the underlying business records unless explicitly configured.
- Support communications: messages, attachments, and call notes you share with our team.
3. How we use information
- Deliver, secure, and operate the Services.
- Detect, diagnose, and remediate integration failures on your behalf.
- Provide customer support and respond to inquiries.
- Improve product quality, model accuracy, and reliability.
- Comply with legal obligations and enforce our Terms.
4. Legal bases (GDPR)
Where GDPR applies, we process personal data under the following bases: performance of a contract, our legitimate interests in operating and securing the Services, your consent (where required), and compliance with legal obligations.
5. Sharing & disclosure
We share information only as needed to deliver the Services: with vetted sub-processors, in response to lawful legal requests, and in connection with a corporate transaction (with notice). We do not sell personal data.
6. Sub-processors
We use a small number of sub-processors for cloud infrastructure, transactional email, and product analytics. A current list is maintained and provided on request to customers and prospects under NDA.
7. International transfers
Where personal data is transferred outside the EEA, UK, or other regulated regions, we rely on Standard Contractual Clauses (SCCs) and equivalent safeguards.
8. Data retention
Operational logs are retained according to your subscription plan’s log retention window. Account data is deleted within 30 days of subscription termination, except where longer retention is required for legal, audit, or backup-rotation reasons.
9. Security
We maintain administrative, technical, and physical safeguards designed to protect personal data. See our Security page for details on encryption, access controls, and our compliance roadmap.
10. Your rights
Subject to applicable law (including GDPR and CCPA/CPRA), you may request access, correction, deletion, restriction, portability, or objection regarding your personal data. Most rights are exercised through your account; contact us for anything else.
11. Children's privacy
The Services are intended for business use and are not directed at individuals under 16. We do not knowingly collect personal data from children.
12. Changes to this policy
We may update this policy from time to time. Material changes will be communicated via the Services or by email to account administrators.
13. Contact
Privacy inquiries: privacy@erpops.ai. Sales and procurement: sales@erpops.ai.
This page is provided as a plain-language summary of our practices. Enterprise customers may request our full Data Processing Addendum (DPA), Master Services Agreement (MSA), and security questionnaire responses by contacting sales@erpops.ai.