← Taktly

Privacy

What Taktly collects, what we do with it, and what we don't do. Plain language. Last updated May 1, 2026.

Who we are

Taktly is operated by the team behind gettaktly.com. For privacy questions write to privacy@gettaktly.com.

What we collect

  • Account: email, password hash (never the password itself), name, and the company / industry you tell us during onboarding.
  • Project content: everything you type into a project — charters, problem statements, data, observations, CAPA items, and uploads. This is your work product. We treat it that way.
  • Usage: which pages you visit, which buttons you click, errors that occur. Used to fix bugs and improve the product.
  • Billing: if you subscribe, Stripe handles your card. We see your plan and email — never your full card number.

What we don't do

  • We don't sell your data. Ever.
  • We don't use your project content to train public AI models. Your charter is yours.
  • We don't embed third-party advertising trackers. No Facebook pixel, no ad-network beacons.
  • We don't read your project content for any purpose other than running the product (storing it, generating the automated output you requested, showing it back to you).

Automated processing

When you click an action button (sharpen problem statement, generate CAPA, etc.), the relevant inputs are sent to OpenAI's API to generate the response. OpenAI's API has a zero-retention policy: your inputs are not used to train OpenAI models and are not retained after the response is generated. We do not maintain a separate copy of these requests beyond the response we save back to your project.

Subprocessors

We use a small number of vendors to operate Taktly. The current list and what each one does is on our Trust & Security page. If we add or remove one we update that page.

Where data is stored

Data is stored in the United States (AWS US-East via Supabase). Encrypted in transit (TLS) and at rest. Access is restricted to employees who need it to operate the service.

How long we keep it

  • Active accounts: as long as your account is open.
  • Deleted projects: kept in a soft-deleted state for 30 days so you can restore, then permanently deleted.
  • Closed accounts: all project content is permanently deleted within 30 days of closure. Billing records are retained as required by tax law.

Your rights

You can:
  • Export your projects from the Exports page.
  • Delete a project at any time.
  • Close your account by emailing privacy@gettaktly.com. We'll confirm deletion within 30 days.
  • Request a copy of all data we hold on you (GDPR / CCPA right of access).

Cookies

Taktly uses session cookies to keep you signed in. We don't use third-party advertising cookies. We don't need a cookie banner because we don't track you across sites.

Children

Taktly is a B2B product not intended for children under 16. We don't knowingly collect data from anyone under 16.

Changes to this policy

If we change this policy in a way that materially affects your rights, we'll email you before the change takes effect. Minor edits (typos, clarifications) update the date at the top.

Contact

Privacy questions: privacy@gettaktly.com
Security questions: see the Trust & Security page.