Privacy policy
Effective September 9, 2026
Francolin is an AI business assistant operated by Thunkle. This policy explains how we handle personal information when you use francolin.ai. For privacy questions or requests, contact jacob@thunkle.ai.
Information we collect
- Account information: your email address, account identifier, workspace membership, and profile details. If you sign in with Google, we receive your Google account identifier, email address, and available basic profile information, such as your name and picture.
- Content you provide: messages, uploaded documents, imported conversations, client and contact records, project details, proposals, rates, and other business information.
- Information created while providing the service: drafts, summaries, extracted facts, stored memories, and numerical representations of text used to find relevant content (embeddings).
- Operational information: usage records, audit events, background-job status, and technical information such as IP addresses, browser information, and error logs handled by our application and infrastructure providers.
How we use information
We use this information to sign you in, manage access to workspaces, remember relevant business context, retrieve documents, generate drafts and research, run requested workflows, measure usage, provide support, and investigate failures or abuse. Only upload information you are authorized to share, including information about your clients and other people.
Google sign-in
Google sign-in requests basic identity permissions only. It does not give Francolin access to your Gmail messages, Google Drive files, or Google Calendar. We use Google account information for account creation, authentication, and your profile, not advertising. You can revoke Francolin's access in your Google account settings; revoking access does not itself delete information already stored in Francolin.
AI processing and research
AI features send your instructions and relevant business context to Anthropic to produce responses, summaries, and extracted information. Document processing and search send text to Voyage AI to create embeddings. Relevant context can include uploaded documents, messages, stored memories, and client or project records. These providers process the data under their applicable service terms and data-handling policies. Do not assume that AI processing happens only on your device or that every provider retains data for the same period.
Research features can retrieve external web pages. Those websites may receive request information, including the requested URL and the requesting server's network address. Avoid including confidential information in URLs. AI output can be inaccurate; review it before using it for client work or consequential decisions.
Who can receive information
Resend delivers sign-in emails and service notifications. It processes recipient email addresses, message content, and delivery information. Sign-in messages contain a temporary access link; do not forward them to anyone else.
Content may be available to other authorized members of your workspace according to their access. Service providers process information needed to host the application, authenticate users, store data, and deliver AI features. Our service-provider list describes the current core providers. We may also disclose information when required by law or when reasonably necessary to address fraud, security incidents, or threats to people's rights or safety.
Where information is processed
Our Supabase project stores the application database and uploaded files in Canada Central. The application and background workers run on Render in the United States. AI providers and other provider operations may process information outside Canada. Choosing a Canadian database region does not mean that all processing stays in Canada. Information processed abroad may be subject to the laws of those countries.
Cookies and security
We use authentication cookies and related browser storage to maintain sessions and support sign-in. Blocking these can prevent the service from working. We use measures including encrypted connections, private file storage, and account and workspace access controls to protect information. No system can guarantee complete security.
Retention, export, and deletion
Workspace information is stored to provide ongoing memory and business-assistant features until it is removed or the relevant workspace is deleted, subject to operational and legal needs. Settings provides export and account-deletion options. Workspace ownership and membership can affect whether deletion is available; contact us if you need help.
Deletion runs in the background and may take time to finish. Removing an account does not instantly erase every backup, operational log, or copy already processed by a service provider. Those copies are subject to the relevant retention schedules and any applicable legal obligations. Contact us for information about a specific deletion request.
Your choices and requests
You can update available profile and workspace information in the app. You may also contact us to request access, correction, export, or deletion of personal information, raise a privacy concern, or withdraw consent where applicable. We may need to verify your identity and your authority over a workspace. Some requests may be limited by legal obligations or the rights of other people. If a client or employer supplied your information, contact that organization as well so it can direct how its workspace information is handled.
Changes to this policy
We will post updates here and change the effective date. For material changes, we will provide additional notice or seek consent where required by applicable law.
Privacy contact: jacob@thunkle.ai.