Privacy

Know exactly where your data goes.

At Almero, privacy is built into how the Service operates. Projects are hosted in Almero’s managed cloud using encrypted storage and account-level access controls. This page summarises the principal data flows so IT, security and procurement teams can assess the Service before use.

Your process data is your commercial property. Cycle times, defect rates, yields and supplier performance may be commercially sensitive. Almero applies account and project access controls, does not use project content to train foundation models, and lets you delete projects and files through the app.

Encrypted & isolated

Your files sit in encrypted file storage, protected at rest by Fly.io’s platform-managed encryption and in transit by TLS. Account and project access controls help restrict access to authorised users.

Never used to train

Almero does not use project content to train foundation models. Anthropic handles API inputs and outputs under its commercial terms and data processing agreement with Almero.

Yours to purge

Delete any project or file from within the app at any time. After account closure, data is deleted from active systems within 30 days, subject to legal, fraud, security and dispute holds.
Data flow

How a request travels

1
Managed Cloud

You type a message

The request goes to Almero’s managed cloud, hosted in Sydney, Australia.
2
Anthropic

Agent calls the model

Selected conversation context is sent securely to Anthropic’s commercial API in the United States. Stripe processes payment and billing information separately; project content is not intended to be sent to Stripe.
3
Managed Cloud

Tools run

Statistical tools — charter, SIPOC, capability, MSA, VSM — execute server-side on your inputs.
4
Encrypted

Files stored

Uploads and generated deliverables are held in encrypted file storage on the application host—an encrypted Fly Volume—in Sydney, Australia. Users can delete the active copy through the app.

Almero application and storage · Sydney, Australia

Anthropic commercial API · United States · model inference

Data is protected in transit using TLS and at rest using Fly.io’s platform-managed encryption for production volumes. Account and project access controls help restrict access to authorised users. Almero does not use project content to train foundation models. Anthropic handles API inputs and outputs under its commercial terms and data processing agreement with Almero.
Data retention

How long it's stored — and when it's gone

Projects, files and conversation history are kept while an account is active. In-app deletion removes the active copy promptly. After account closure, data is deleted from active systems within 30 days, subject to legal, fraud, security and dispute holds. Backup and provider-retention details are in the Privacy and Data Flow Brief.
Vendor review

For your IT & Security team

It’s all documented—encryption, access controls, data locations, retention, transfer safeguards and subprocessors—in one brief, written for vendor risk assessments.
For business customers, Almero’s Data Processing Addendum applies when Almero processes personal data on the customer’s behalf. The applicable UK transfer terms are provided with the DPA where required. Questions from your security team? privacy@almero.ai — we’ll answer them, or complete your vendor questionnaire.
Privacy Policy

For the formal legal document, read our full Privacy Policy.

Continue on desktop

The AI Black Belt Agent is a desktop workspace; enter your name & email and we’ll send you a one-click link to start your free trial at your computer.