Privacy Policy
Last updated: October 15, 2025
Fig AI, Inc. ("Fig AI," "we," "us," or "our") values your privacy and is committed to protecting personal and business information entrusted to us. This Privacy Policy explains what data we collect, how we use and share it, and what rights you have regarding your information.
By using Fig AI's products and services, you agree to this Privacy Policy. If you do not agree, please discontinue use of our services.
Fig AI is a U.S.-based technology company providing AI-powered sales and lead-generation tools for food manufacturers, processors, and ingredient suppliers.
Our initial platform helps customers identify and connect with potential business buyers and partners. We are building additional capabilities to support other operations at food manufacturers and processors.
We collect three main categories of data:
A. Information You Provide to Us
When you create an account, upload data, or interact with our services, we may collect:
- •Account registration details (name, company, markets, email, password/auth token, etc.)
- •Product catalog information, certifications, specifications, etc.
- •Feedback on leads and related notes
- •Sales and marketing materials shared by you
- •Communications and support requests
- •List of customers or contacts
B. Information We Collect Automatically
To maintain performance and security, we collect technical and usage information, such as:
- •Log data (IP address, browser type, device identifiers, timestamps)
- •User activity data (clicks, page visits, session duration)
- •Cookies and analytics data (through tools such as PostHog, Datadog, and Google Analytics)
You can manage cookie preferences through your browser settings.
C. Professional B2B Contact Data
Our platform uses business-to-business (B2B) contact information such as names, job titles, company affiliations, business email addresses, and phone numbers sourced from:
- •Trusted third-party data providers
- •Public and proprietary databases curated by Fig AI
We use this data solely to enable legitimate business outreach between professionals in the food manufacturing industry.
We will never sell, share, or disclose the following information to any third party non-subprocessor, except as required by law or with your explicit consent:
- •Any customers or customer lists provided by you
- •Any contacts or contact lists provided by you
- •Any other information indicated by a customer as confidential or proprietary
These data types remain confidential and are used only to operate your account and provide support.
We use the data we collect to:
- •Provide, maintain, and improve Fig AI's platform and services
- •Authenticate and manage user accounts
- •Facilitate legitimate B2B communication between food manufacturers and potential buyers
- •Respond to customer support and service requests
- •Analyze and enhance user experience and platform performance
- •Ensure security, prevent fraud, and comply with legal obligations
We do not sell our users' personal information. For some of these purposes, the information that we use is automatically processed by our systems. But in some cases, we also access and review your information.
To use less information that's connected to individual users, in some cases we de-identify or aggregate information or anonymise it so that it no longer identifies you. We use this information in the same ways we use your information as described in this section.
If you are located in the European Economic Area (EEA) or the United Kingdom, we process your personal data under the following legal bases:
- •Legitimate Interest – Providing B2B sales intelligence and professional networking
- •Contractual Necessity – Fulfilling obligations under our customer agreements
- •Consent – For communications and feedback collection, where required
- •Legal Obligation – To comply with applicable laws and regulations
We share limited information with subprocessors that support our core operations, including:
- •Hosting and database providers: Supabase (AWS-hosted)
- •Infrastructure and deployment: Railway, Cloudflare
- •Analytics and logging: PostHog, Datadog
- •AI LLM: OpenAI API (no customer information is collected or used as training data)
We may disclose data to comply with legal requests, enforce our Terms of Service, or protect our users' rights and safety.
We employ industry-standard safeguards to protect your data, including:
- •Encryption in transit (TLS 1.2+) and at rest (AES-256)
- •Stateless API calls to OpenAI; no model memory or conversation state is retained between sessions unless explicitly stored in the customer's Supabase account.
- •Row-Level Security (RLS) and access control policies in our Supabase database; strict single tenant access
- •Role-based access and least-privilege principles
- •Continuous monitoring and logging of access and changes
- •Regular security reviews and vulnerability scans
While no system is completely immune to risk, Fig AI maintains best-practice controls to safeguard personal and business information.
We retain information only as long as necessary for operational, contractual, or legal reasons:
- •Customer-provided data: retained for the duration of the customer relationship + up to 30 days post-termination
- •Professional contact data: periodically refreshed, validated, and removed when outdated or upon opt-out request
- •Technical logs: retained for up to 30 days for security and troubleshooting
Users and data subjects may request deletion, correction, or access at any time.
Depending on your jurisdiction, you may have the following rights:
- •Access – Request a copy of your personal data
- •Correction – Request corrections to inaccurate or outdated data
- •Deletion ("Right to be Forgotten") – Request deletion of personal data
- •Opt-Out – Opt out of communications or professional outreach
To exercise any rights, please contact us at privacy@growfig.ai. We will respond promptly and within applicable legal timeframes.
All data is stored in the United States. If you access our services from outside the U.S., your information may be transferred and processed in the U.S. We rely on Standard Contractual Clauses (SCCs) and equivalent safeguards for international transfers.
Fig AI's platform is intended for business professionals. We do not knowingly collect or process data from individuals under the age of 16.
We may update this Privacy Policy periodically. If we make significant changes, we will post the revised version here with a new "Last Updated" date. Continued use of our services after updates constitutes acceptance of the revised terms.
If you have any questions, requests, or privacy-related concerns, please contact: