Privacy Policy
Last updated: April 29, 2026
Meridian Suite (“Meridian”, “we”, “us”) operates the Outreach OS, Content OS, and related products under the meridiansuite.ai domain. This policy explains what personal information we process, how we use it, and the choices you have.
1. Information we collect
- Account data — name, email, organization details you provide when signing up.
- Connected service data — when you connect a third- party account (LinkedIn, X, Instagram, TikTok, Threads, email providers, CRMs), we store the OAuth access tokens and any data you authorize the provider to share with us, encrypted at rest.
- Usage data — request logs, audit trails, and metrics necessary to operate the service and surface analytics in your workspace.
- Content you create — drafts, posts, contacts, campaigns, and other workspace artifacts.
2. How we use information
- Provide and maintain the Meridian Suite products you sign up for.
- Authenticate you with connected services and post or read content on your behalf, only with the scopes you authorize.
- Operate the publishing-runtime, scheduling, analytics, and AI- assisted features you enable.
- Diagnose and prevent abuse, fraud, and security incidents.
- Comply with legal obligations.
We do not sell personal data. We do not use your content to train third-party models without your explicit opt-in.
3. Sharing
- Service providers — hosting (Coolify on Contabo), database (Supabase Postgres), email/SMS/CRM/social integrations you connect.
- AI providers— when you use AI features, prompts and the necessary context are forwarded to the provider you select (e.g. OpenRouter, OpenAI, Anthropic, Google). We do not retain provider-side prompt logs beyond the provider’s defaults.
- Legal — to comply with court orders, law enforcement requests with valid legal basis, and to protect rights and safety.
4. Data retention
We keep account and workspace data while your account is active and for a reasonable retention window after deletion to handle support and legal obligations. You can request deletion at any time (see Section 7).
5. Security
- OAuth tokens are AES-256-GCM encrypted at rest.
- All transit uses TLS 1.2+.
- Row-level security enforces tenant isolation in the database.
- Access to production systems is restricted and audit-logged.
6. International transfers
Our infrastructure runs in the EU (Contabo, Frankfurt). When data moves across borders we rely on standard contractual clauses and comparable legal mechanisms.
7. Your rights
Subject to applicable law, you can request access, correction, deletion, restriction, portability, or object to certain processing of your personal information. Contact us at privacy@meridiansuite.ai. You also have the right to lodge a complaint with your local data-protection authority.
8. Children
Meridian Suite is a B2B product not directed to children under 16. We do not knowingly collect personal data from children.
9. Changes
We will update this policy when our practices change. Material changes will be communicated to your registered email address.
10. Contact
Questions or requests: privacy@meridiansuite.ai.
See also our Terms of Service.