Infralo Office Privacy Policy
Summary: Our Core Privacy Commitments
Your spreadsheets (.xlsx), Word documents (.docx), presentations (.pptx), and PDFs stay stored and processed locally on your hardware. We do not store or mirror your private documents on our servers.
When you sign in with Google, we request only your basic profile (email, name, avatar) for identity authentication. We never request or access Google Drive, Gmail, or Google Docs.
We never sell your data, monetize prompts, or use your files and instructions to train public or foundational artificial intelligence models.
You can delete your account and request complete purge of all associated profile records at any time by emailing admin@infralo.com.
1. Introduction
Infralo Inc. ("Infralo", "we", "us", or "our") develops and operates Infralo Office (the "Application" or "Service"), available as a desktop client and companion web services at office.infralo.com.
This Privacy Policy describes our practices concerning the collection, use, protection, and disclosure of personal data when you use Infralo Office. By creating an account, downloading the software, or authenticating through Google Single Sign-On (SSO), you acknowledge and understand the terms of this Privacy Policy.
2. Information We Collect
We deliberately design Infralo Office under principles of data minimization. We only collect the minimal information necessary to authenticate your account, maintain subscription credits, and provide software updates:
- Account and Authentication Information: When you sign up or log in via email or Google Single Sign-On (Google SSO), we collect your email address, primary name, and profile picture provided by Google.
- Subscription & Credit Usage Records: We maintain a ledger of your available and consumed AI credits, subscription tier (e.g. Starter, Professional), and payment status processed securely through our third-party billing providers. We do not store raw credit card numbers.
- Operational Telemetry & Diagnostics: Anonymous or pseudonymous technical information such as application version, operating system (Windows, macOS, Linux), crash logs, and network connection status for troubleshooting.
3. Google Single Sign-On (SSO) & Google API User Data Policy Compliance
Infralo Office supports Google Single Sign-On ("Sign in with Google") to allow streamlined, passwordless authentication for users.
Our Google SSO Scope Limits:
- We only request standard OpenID / profile scopes:
openid,email, andprofile. - We NEVER request, access, read, or modify your Google Drive files, Gmail inboxes, Google Docs, calendar entries, or contact lists.
- Your Google password is never seen or stored by Infralo; authentication tokens are validated through cryptographic standards.
Google API Services User Data Policy / Limited Use Statement:
Infralo Office's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
4. On-Device Local File Processing (Your Documents)
Infralo Office is engineered around a local-first file processing architecture:
- Files Stay on Your Machine: The spreadsheets, Word memos, presentations, and PDF audit files that you open in Infralo Office are read directly from your local filesystem.
- Zero File Retention: We do not upload, mirror, duplicate, or persistently index your document library in our cloud databases.
- Ephemeral Prompt Synthesis: When you invoke AI assistance (e.g. cross-referencing audit figures with an Excel model), only the specific extracted context necessary to answer your instruction is passed to the AI inference engine over an encrypted TLS connection. This context is discarded immediately after generating the response.
- No Model Training: Under no circumstances are your proprietary business files, contracts, financial models, or conversational prompts used to train or fine-tune public artificial intelligence foundation models.
5. How We Use Your Information
We use collected account information solely for the following legitimate purposes:
- Authenticating your user identity across devices and desktop sessions;
- Maintaining, crediting, and debiting your monthly compute credit balances;
- Sending critical transactional updates (e.g. receipt confirmations, security advisories, or breaking policy updates);
- Diagnosing fatal software crashes, resolving bugs, and optimizing app performance;
- Complying with statutory accounting and legal obligations.
6. No Sale or Commercial Exploitation of Data
Infralo does not sell, lease, rent, trade, or monetize your personal information, document contents, or Google user data. We do not disclose personal information to advertising networks, consumer data brokers, or marketing aggregates.
We only share information with trusted operational infrastructure sub-processors strictly required to run the service (e.g., authentication providers, billing processors, and secure cloud servers). All such vendors are bound by strict contractual data processing agreements.
7. Security & Encryption Standards
We apply robust technical and organizational security controls to safeguard your data:
- Encryption in Transit: All data transmissions between the Infralo desktop client, web dashboard, and API endpoints are encrypted using TLS 1.3.
- Encryption at Rest: Cloud account data and billing metadata are encrypted at rest using AES-256 standards.
- Token Safety: Session tokens and authentication secrets are stored securely in system credential vaults (e.g. Windows Credential Manager, macOS Keychain) on your client machine.
8. Data Retention & Your Right to Deletion
We retain your account records (name, email, credit balances) only for as long as your account remains active or as required by applicable tax and legal statutes.
How to request data deletion:
You have the absolute right to request the complete, permanent deletion of your Infralo Office account and all associated personal data at any time. Simply send an email to admin@infralo.com with the subject line "Account and Data Deletion Request" from your registered email address.
We verify and fulfill deletion requests within thirty (30) days, purging your account identifier, Google profile cache, and usage records from our active systems.
9. International Data Transfers
If you access Infralo Office from outside the United States, please note that authentication metadata and credit usage counters may be processed and stored on servers located in the United States and other compliant cloud regions. We implement Standard Contractual Clauses (SCCs) to ensure equivalent data protection regardless of geographic location.
10. Children's Privacy
Infralo Office is an enterprise and professional productivity tool and is not intended for or directed at children under the age of 16. We do not knowingly collect personal information from children. If we discover that a child has provided us with personal information, we immediately delete such records.
11. Updates to this Policy
We may update this Privacy Policy from time to time to reflect modifications in software architecture, regulatory standards, or Google API policy requirements. Any material changes will be announced on our website, through in-app notifications, or via email before they take effect. The "Last Updated" timestamp at the top of this page indicates the date of the latest revisions.
12. Contact Information
If you have questions, feedback, or concerns regarding this Privacy Policy, our compliance with the Google API Services User Data Policy, or data handling practices, please contact us at:
Infralo Inc. — Privacy & Data Protection
Email: admin@infralo.com
Website: https://office.infralo.com