This policy describes how DecisionLR ("we," "us") handles information in connection with Pericope, our deal-intelligence application, currently offered as an invite-only private beta.
Who this applies to
Pericope is not publicly available. It is used only by individuals we have explicitly authorized. If you do not have an authorized account, we do not collect information about you through the application.
How you sign in
Access to Pericope is gated by Google Cloud Identity-Aware Proxy (IAP). To sign in, you authenticate with your Google account. We request only the following OAuth scopes at sign-in:
- openid — to confirm your identity
- email — your Google account email address
- profile — your basic Google profile (name)
These are used solely to authenticate you as an authorized user and to attribute actions you take within the application to your account for audit purposes. We do not request access to your email inbox, files, contacts, calendar, or any other Google service or data beyond this basic identity information.
How Google user data is used
The email address and profile name obtained through Google sign-in are used exclusively to (a) authenticate that you are an authorized user of Pericope, and (b) attribute your in-application activity in audit logs for security and accountability. This information is never shared with third parties, never sold, never used for advertising, and never used for any purpose beyond authentication and audit attribution described here. Our use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
What we store
Application data — including deal-related content you or your organization enter into Pericope, and records of your sign-in identity for audit purposes — is stored in Google Cloud infrastructure, specifically a Cloud SQL database hosted in the us-west3 region. We do not run advertising on Pericope and we do not sell or rent any data to third parties.
Audit logging
Because Pericope is used for confidential deal work, we maintain audit logs that record the signed-in identity (email address) associated with actions taken in the application. This is a security and accountability measure, not a marketing or profiling activity.
Data retention
We retain account and application data for as long as the private beta is active and your account remains authorized. If you would like your data deleted, or your access revoked, contact us using the information below and we will act on your request.
Who can access your data
Access to Pericope, and to the data within it, is limited to accounts we have explicitly authorized through Google Cloud Identity-Aware Proxy. There is no public access to the application or its data.
Changes to this policy
We may update this policy as the beta evolves. The effective date above will be updated whenever we make a material change.
Contact
Questions about this policy, or requests regarding your data, can be sent to james.scerbo@decisionlr.com.
Governing law
This policy is governed by the laws of the State of Idaho, United States.