PRIVACY POLICY

How JibeONE handles personal information.

What we collect, why, how long, with whom, and how to exercise your rights.

This Privacy Policy explains how JibeAIs, LLC ("JibeONE", "we", "us") collects, uses, discloses, and protects personal information in connection with the JibeONE platform and this website. JibeONE is a business operating system delivered to organizations ("Customers") on-premises or in a private cloud. This policy covers information we handle as a business; when we process personal information on a Customer's behalf inside their JibeONE instance, we act as a processor and the Customer's own privacy notice and our Data Processing Addendum govern.

1. Who we are and how to contact us

JibeAIs, LLC is the controller of the personal information described in this policy that we collect directly from website visitors, prospects, and account contacts. Questions, requests, and complaints: hello@jibe.one.

2. The personal information we collect

  • Information you give us. Name, business email, company, role, phone, and the content of messages when you request a demo, contact us, or subscribe to updates.
  • Account and platform data. For users of a JibeONE instance we operate, we hold the account identifiers needed to authenticate you (WikiName, email, and authentication metadata such as second-factor enrollment state). Passwords are never stored in readable form; they are held only as bcrypt hashes.
  • Information collected automatically. IP address, browser and device characteristics, pages visited, and referring URLs, collected through server logs and strictly necessary cookies. See our Cookie Notice.
  • Audit and security records. Authentication events and security-relevant actions are logged for the protection of the service and its users.

We do not intentionally collect special-category personal data (health, biometrics, and similar) through this website, and we ask that you not submit it to us.

3. How we use it, and our lawful bases

Purpose Lawful basis (GDPR Art. 6)
Respond to demo requests and enquiries Steps taken at your request prior to a contract; legitimate interests
Provide, secure, and support the platform to Customers Performance of a contract; legitimate interests
Authenticate users and prevent abuse Legitimate interests; legal obligation
Send service and, where permitted, marketing communications Consent, or legitimate interests where an existing business relationship applies
Comply with law and enforce our terms Legal obligation; legitimate interests
Where we rely on legitimate interests, we balance those interests against your rights and can provide our assessment on request.

4. Cookies and similar technologies

We use strictly necessary cookies to run the site and keep you signed in, and limited performance cookies to understand usage. Full detail, categories, retention, and how to refuse or withdraw consent are in our Cookie Notice.

5. How we share information

We do not sell personal information. We share it only with: (a) service providers ("sub-processors") acting on our instructions under contract; (b) professional advisers; (c) authorities where legally required; and (d) an acquirer in the event of a corporate transaction, subject to this policy. Our current sub-processors are listed on the Sub-processors page.

6. International transfers

Where personal information is transferred outside its country of origin, we rely on appropriate safeguards, including the European Commission's Standard Contractual Clauses (2021/914) and equivalent mechanisms, and we assess the destination's protections. Customers deploying JibeONE on-premises or in their own private cloud control the location of their instance data.

7. How long we keep it

We keep personal information only as long as necessary for the purpose it was collected, to meet legal and accounting obligations, and to resolve disputes. Website enquiry records are retained for up to 24 months after last contact unless a business relationship continues; server and security logs are retained for up to 12 months.

8. Your rights

Subject to your jurisdiction, you may request access to, correction of, deletion of, or a portable copy of your personal information; object to or restrict certain processing; and withdraw consent at any time. To exercise a right, email hello@jibe.one. We will verify your identity and respond within the time the law allows (generally one month under GDPR; 45 days under the CPRA). You will not be discriminated against for exercising a right.

9. GDPR addendum (EEA/UK)

If you are in the EEA or UK, JibeAIs, LLC is the controller for the processing described here. You have the rights in §8 and the right to lodge a complaint with your supervisory authority. Where we act as a processor for a Customer, the Customer is the controller and our processing is governed by the DPA.

10. CPRA addendum (California)

California residents have the rights to know, delete, correct, and to opt out of "sale" or "sharing" of personal information. We do not sell or share personal information as those terms are defined by the CPRA. We do not use or disclose sensitive personal information for purposes beyond those permitted. To exercise a right, use the contact in §8.

11. Children

The platform and this website are intended for business use and are not directed to children under 16. We do not knowingly collect their personal information; if you believe we have, contact us and we will delete it.

12. Changes to this policy

We may update this policy to reflect changes in our practices or the law. Material changes will be posted here with a new "last updated" date, and, where required, notified to you.

13. Contact

JibeAIs, LLC — hello@jibe.one. See also the Trust Center for our security and compliance posture.