CoKnow Documentation that corrects itself

Privacy policy

Effective: 4 October 2026

This policy covers CoKnow, a Slack app that answers "what would it take to get this approved?" from a company's own past approvals, and this website. It says what we collect, where it is processed, how long we keep it, and how to have it deleted.

What we collect

From people who book an intro. If you book an intro, Calendly collects your name, work email, company, role, and the tools your team uses, along with the time you choose. This website sets no cookies and runs no analytics or third-party scripts; one small script on the home page runs the interactive examples in your browser and sends nothing anywhere. Its fonts are served from this website, so loading a page makes no request to a third-party font service.

From customers. When a company installs CoKnow, it reads only the sources the company adds to its allowlist:

CoKnow does not join meetings or record audio. It shows each person evidence only from sources they can already read.

How we use it

Customer content is used only to answer that customer's own questions. We never train a model on customer data, and we never use one customer's data to benefit another customer. Booking details are used only to contact you about CoKnow.

Where it is processed

Customer data is stored and processed on Railway (region us-east4-eqdc4a, US East), each customer in its own service and its own storage volume, encrypted at rest by the platform. This website is served by Vercel, which hosts this website only and holds no customer data.

SubprocessorPurposeData
RailwayHosting, storage volume, volume backups, service variables holding credentials (region us-east4-eqdc4a, US East)Customer content, ask log, credentials
VercelServes this website onlyVisitor request logs; no customer data
OpenRouterRoutes model requests to the model hosts below; does not store prompts or responsesText passed to the model for one request
Model hosts (below)Run the language and embedding modelsText passed to the model for one request
CalendlyIntro call scheduling only, under Calendly's own privacy policyBooking details you enter; no customer data

Model hosts

Every model request is sent through OpenRouter with zero-data-retention routing: providers that store or train on inputs are excluded, and a request that cannot be served under those rules fails rather than falling back. Language model requests may be served only by these hosts:

HostRouting id
Google Cloud Vertex AIgoogle-vertex
Amazon Bedrockamazon-bedrock
DeepInfradeepinfra
Together AItogether
Fireworks AIfireworks

Embeddings (the search index) are computed by OpenAI's embedding model, served by OpenAI or Microsoft Azure under the same zero-data-retention routing.

Retention and deletion

Your rights

You can ask what we hold about you, ask us to correct it, or ask us to delete it. For customer content, the company that installed CoKnow controls what CoKnow reads; we will also act on requests from that company's administrators. Depending on where you live, you may have further rights under laws such as the GDPR or the CCPA, and you may complain to your data protection authority.

Changes

If this policy changes, we will update the effective date above and tell customers before the change applies to their data.

Contact

Email michaelhhuang@gmail.com.