Privacy Policy
Effective date: September 7, 2026
Who we are and what this covers
Engram Dynamics LLC runs Engram CaaS, the hosted platform at app.engramdynamics.org. This policy explains what we collect, how we use it, and the choices you have. It covers the platform and the marketing site at engramdynamics.org. With Engram CaaS you connect or upload your documents into a private workspace, we read each document once into the model's memory, and we answer your questions from that memory.
Information we collect
- Account details. Your name, email, and password. The password is stored only as a hash, never as readable text.
- Your documents. The files you upload or import from connected sources such as Google Drive and SharePoint, held in your workspace as your document base.
- Connection tokens. OAuth tokens for the sources you connect. We encrypt these at the application layer before they are stored.
- Usage and performance metrics. Operational data such as query counts, latency, and cost, so we can run and improve the service.
- Demo requests. The contact details you give us through the form on the marketing site.
How we use information
We use your information to run your workspace, answer your questions from your documents, keep your account secure, and operate and improve the service. Our commitments here are true by design:
- Your documents power only your own workspace's AI.
- They are never used to train shared models.
- They are never used for any other customer.
- They are never sold, and we show no ads.
- Workspaces are isolated per tenant, so one customer's content stays separate from every other.
Google user data
When you import from Google Drive, we use the drive.file scope. The app can only access the specific files and folders you select in Google's own picker, and nothing else in your Drive. The content you select is copied into your document base solely to power your workspace's answers. Your Drive OAuth tokens are encrypted at rest. You can revoke access anytime with the Disconnect button in the app, or from your Google Account security settings.
Engram CaaS's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Microsoft user data
When you connect SharePoint, we get read access to the SharePoint libraries you select, and nothing more. The connection tokens are encrypted, and you can disconnect anytime from the app, which removes them.
Where data lives and how it is protected
We host on Amazon Web Services in a US region. Data is encrypted in transit with TLS and encrypted at rest in both the database and file storage. Connector OAuth tokens carry an additional application-layer encryption on top of that. Every workspace is isolated per tenant.
Service providers
We use a small set of trusted providers to run the service. Each handles only what its role needs:
- Amazon Web Services: hosting and storage.
- Lambda Cloud: GPU compute that processes documents during onboarding and answering.
- Google: sign-in and Drive import.
- Microsoft: SharePoint import.
- Cloudflare: DNS and delivery.
- Amazon SES: transactional email.
Data retention and deletion
You stay in control of your content. Deleting a document or a document base removes that content. Disconnecting a source deletes its stored tokens immediately. To delete your account, email us at the address below and we will remove it.
Cookies and browser storage
We keep a session token in your browser storage so you stay signed in. We use no advertising or cross-site trackers. The marketing site loads fonts and styles from content delivery networks.
Children
Engram CaaS is a business tool and is not directed at anyone under 16. We do not knowingly collect information from children.
Changes to this policy
Engram CaaS is in an invite-only beta and features may change. When we update this policy, we will change the effective date above and, for material changes, let account holders know.
Contact
Questions about privacy or a request about your data go to will.stephenson@engramdynamics.org.