Privacy Policy

Last updated: October 15, 2025

Fig AI, Inc. ("Fig AI," "we," "us," or "our") values your privacy and is committed to protecting personal and business information entrusted to us. This Privacy Policy explains what data we collect, how we use and share it, and what rights you have regarding your information.

By using Fig AI's products and services, you agree to this Privacy Policy. If you do not agree, please discontinue use of our services.

1. Who We Are

Fig AI is a U.S.-based technology company providing AI-powered sales and lead-generation tools for food manufacturers, processors, and ingredient suppliers.

Our initial platform helps customers identify and connect with potential business buyers and partners. We are building additional capabilities to support other operations at food manufacturers and processors.

2. Information We Collect

We collect three main categories of data:

A. Information You Provide to Us

When you create an account, upload data, or interact with our services, we may collect:

  • Account registration details (name, company, markets, email, password/auth token, etc.)
  • Product catalog information, certifications, specifications, etc.
  • Feedback on leads and related notes
  • Sales and marketing materials shared by you
  • Communications and support requests
  • List of customers or contacts

B. Information We Collect Automatically

To maintain performance and security, we collect technical and usage information, such as:

  • Log data (IP address, browser type, device identifiers, timestamps)
  • User activity data (clicks, page visits, session duration)
  • Cookies and analytics data (through tools such as PostHog, Datadog, and Google Analytics)

You can manage cookie preferences through your browser settings.

C. Professional B2B Contact Data

Our platform uses business-to-business (B2B) contact information such as names, job titles, company affiliations, business email addresses, and phone numbers sourced from:

  • Trusted third-party data providers
  • Public and proprietary databases curated by Fig AI

We use this data solely to enable legitimate business outreach between professionals in the food manufacturing industry.

3. Data We Will Not Share

We will never sell, share, or disclose the following information to any third party non-subprocessor, except as required by law or with your explicit consent:

  • Any customers or customer lists provided by you
  • Any contacts or contact lists provided by you
  • Any other information indicated by a customer as confidential or proprietary

These data types remain confidential and are used only to operate your account and provide support.

4. How We Use Your Information

We use the data we collect to:

  • Provide, maintain, and improve Fig AI's platform and services
  • Authenticate and manage user accounts
  • Facilitate legitimate B2B communication between food manufacturers and potential buyers
  • Respond to customer support and service requests
  • Analyze and enhance user experience and platform performance
  • Ensure security, prevent fraud, and comply with legal obligations

We do not sell our users' personal information. For some of these purposes, the information that we use is automatically processed by our systems. But in some cases, we also access and review your information.

To use less information that's connected to individual users, in some cases we de-identify or aggregate information or anonymise it so that it no longer identifies you. We use this information in the same ways we use your information as described in this section.

5. Legal Basis for Processing

If you are located in the European Economic Area (EEA) or the United Kingdom, we process your personal data under the following legal bases:

  • Legitimate Interest – Providing B2B sales intelligence and professional networking
  • Contractual Necessity – Fulfilling obligations under our customer agreements
  • Consent – For communications and feedback collection, where required
  • Legal Obligation – To comply with applicable laws and regulations
6. How We Share Information

We share limited information with subprocessors that support our core operations, including:

  • Hosting and database providers: Supabase (AWS-hosted)
  • Infrastructure and deployment: Railway, Cloudflare
  • Analytics and logging: PostHog, Datadog
  • AI LLM: OpenAI API (no customer information is collected or used as training data)

We may disclose data to comply with legal requests, enforce our Terms of Service, or protect our users' rights and safety.

7. Data Security

We employ industry-standard safeguards to protect your data, including:

  • Encryption in transit (TLS 1.2+) and at rest (AES-256)
  • Stateless API calls to OpenAI; no model memory or conversation state is retained between sessions unless explicitly stored in the customer's Supabase account.
  • Row-Level Security (RLS) and access control policies in our Supabase database; strict single tenant access
  • Role-based access and least-privilege principles
  • Continuous monitoring and logging of access and changes
  • Regular security reviews and vulnerability scans

While no system is completely immune to risk, Fig AI maintains best-practice controls to safeguard personal and business information.

8. Data Retention

We retain information only as long as necessary for operational, contractual, or legal reasons:

  • Customer-provided data: retained for the duration of the customer relationship + up to 30 days post-termination
  • Professional contact data: periodically refreshed, validated, and removed when outdated or upon opt-out request
  • Technical logs: retained for up to 30 days for security and troubleshooting

Users and data subjects may request deletion, correction, or access at any time.

9. Your Privacy Rights

Depending on your jurisdiction, you may have the following rights:

  • Access – Request a copy of your personal data
  • Correction – Request corrections to inaccurate or outdated data
  • Deletion ("Right to be Forgotten") – Request deletion of personal data
  • Opt-Out – Opt out of communications or professional outreach

To exercise any rights, please contact us at privacy@growfig.ai. We will respond promptly and within applicable legal timeframes.

10. International Data Transfers

All data is stored in the United States. If you access our services from outside the U.S., your information may be transferred and processed in the U.S. We rely on Standard Contractual Clauses (SCCs) and equivalent safeguards for international transfers.

11. Children's Privacy

Fig AI's platform is intended for business professionals. We do not knowingly collect or process data from individuals under the age of 16.

12. Updates to This Policy

We may update this Privacy Policy periodically. If we make significant changes, we will post the revised version here with a new "Last Updated" date. Continued use of our services after updates constitutes acceptance of the revised terms.

13. Contact Us

If you have any questions, requests, or privacy-related concerns, please contact:

Fig AI, Inc.

General Privacy Contact

privacy@growfig.ai

Data Protection Contacts

Jackson Polatnick, CEO

jackson@growfig.ai

Brendan Kim, CPO

brendan@growfig.ai