You're handing us contracts, SOWs, and internal briefs. Here's exactly how we protect them — and what we don't do with them.
Source documents and generated outputs live in private storage buckets. There are no public URLs. Downloads use short-lived signed links that only you can generate.
Every job, file, extracted fact, and output row is gated by your user ID at the database level (Postgres Row-Level Security). Other users — including paying customers on the same instance — cannot see or query your data.
Document text and voice transcripts are sent to Google Gemini, OpenAI, and ElevenLabs through their paid APIs. Per each provider's API terms, paid API inputs are not used to train their models. PlaybookGenerator does not train any models on your data either.
All traffic is HTTPS. Files are encrypted at rest by the storage layer. Database connections are TLS-only.
Uploads, processing, downloads, and the assistant chat all require a signed-in session. Sign-in supports email/password and Google OAuth.
Delete a job and its source files plus generated outputs are removed from storage and the database. There is no soft-delete or hidden archive.
We'd rather be upfront than oversell. PlaybookGenerator is a young product: