Confidentiality & Trust

Privacy Policy & Data Safeguards

Last Updated: August 2026 • How SegueMeet protects board confidentiality and organizational data.

Security & Privacy Guarantees

AES-256 & TLS 1.3Full encryption across all board papers, database records, and active network connections.
Zero AI TrainingYour board discussions, minutes, and strategic files are never fed into public AI models.
Committee FencingStrict granular access prevents non-committee members from seeing restricted documents.

1. Overview & Commitment to Board Confidentiality

SegueMeet ('we', 'us', 'our') operates the SegueMeet corporate governance and board management platform. We recognize that board packs, strategic deliberations, executive compensation discussions, and minutes represent the most sensitive confidential assets of your organization.

This Privacy Policy describes the specific privacy protections, encryption safeguards, data processing principles, and rights available to organizations and individual directors.

2. Information We Collect

Account & Profile Information: When you create an account or are invited to an organisation, we collect your name, business email address, professional title, and authentication credentials (securely hashed).

Governance Content: Agendas, uploaded PDF board papers, meeting minutes, resolution votes, attendance records, conflict of interest declarations, and action item details provided by authorized users within your tenant space.

Security & Audit Metadata: Timestamps, IP addresses, user agent telemetry, session identifiers, and entity snapshot logs generated during critical governance workflows to ensure statutory auditability.

3. How We Use and Process Information

To provide, maintain, and optimize board management workflows, including automated board pack compilation, live minutes collation, and circular resolution notifications.

To authenticate users, enforce granular Role-Based Access Controls (RBAC), and isolate organization data in strict accordance with tenant boundaries.

To detect, prevent, and mitigate security threats, unauthorized credential use, or malicious platform abuse.

We never sell, rent, or monetize customer data. We never utilize your confidential board documents or transcripts to train public AI models.

4. Multi-Tenant Architecture & Data Isolation

SegueMeet enforces strict database-level and application-level tenant isolation. Queries, permissions, and session tokens are strictly scoped to the active organization ID.

Committee documents (e.g., Audit & Risk, Remuneration, Nomination) are fenced so that only directors formally appointed to those specific sub-committees can view corresponding materials.

5. Encryption & Information Security Standards

Data in Transit: All network communications between browsers and our API endpoints are encrypted using TLS 1.3 with modern, secure cipher suites.

Data at Rest: All stored database records, compiled board packs, and uploaded attachments are encrypted at rest using AES-256 encryption.

Authentication: We employ cryptographically signed JWT tokens with automated token blocklisting on logout and credential revocation.

6. Data Retention, Portability & Deletion

We retain governance records for as long as your organization maintains an active subscription, or as required to comply with applicable statutory recordkeeping obligations.

Organization Admins may export all board records, meeting minutes, resolution registries, and audit logs in standard formats (PDF, CSV, JSON) at any time.

Upon formal account termination, customer data is purged from our production databases within 60 days, followed by scheduled backup lifecycle expiration.

7. Director & User Privacy Rights

Depending on your jurisdiction (such as GDPR in Europe or state privacy laws), individual directors have the right to access, rectify, or request the restriction of their personal profile data.

Because meeting minutes, attendance registers, and formal voting records constitute statutory corporate records of the organization, requests to alter or delete recorded board actions must be coordinated directly through your Organization Administrator or Board Secretary.

8. Data Protection Officer & Privacy Inquiries

For questions regarding this Privacy Policy, enterprise data processing agreements (DPA), or data protection practices, please contact our Data Protection Office at privacy@seguemeet.com.

© 2026 SegueMeet. All rights reserved.