Privacy Policy

Last updated: July 2026

Checksit ("Checksit," "we," "us") is operated by Sevensapps. This policy explains what data we collect when your organization installs Checksit into Slack, why we collect it, and how it's protected.

What we collect

  • Slack workspace information: your workspace/team ID and name, and a bot access token issued when you install Checksit (encrypted at rest with AES-256-GCM — never stored in plaintext).
  • Connected source credentials: if you connect Google Drive, Notion, or Confluence, we store the OAuth tokens needed to sync your content, encrypted the same way as your Slack bot token.
  • Document content and metadata: titles, URLs, and text content from the sources you connect, so we can index and search them. This content is embedded into vector representations and stored in an isolated, per-workspace namespace — it is never shared across workspaces.
  • Questions and answers: the text of questions asked in Slack, the answers Checksit generates, which sources were cited, and 👍/👎 feedback, so we can measure and improve answer quality.
  • Billing information: handled directly by Stripe. We store your plan tier and Stripe customer/subscription IDs, not your card details.

How we use it

We use your data only to operate Checksit for your workspace: to answer questions, keep your connected sources in sync, enforce your plan's usage limits, and provide support. We do not sell your data, and we do not use your documents or questions to train models for any other customer.

Subprocessors

To provide the service, we share data with the following processors, each bound by their own data protection terms:

  • Anthropic and OpenAI — process your questions and document content to generate embeddings and answers.
  • Pinecone — stores vector representations of your documents, namespaced per workspace.
  • Supabase — hosts our Postgres database, with row-level security enabled.
  • Stripe — processes billing and payment information.
  • Fly.io and Vercel — host our application infrastructure.
  • Sentry — error monitoring; may capture technical error details but is not used to log document content.

Data retention and deletion

We retain your workspace's data for as long as Checksit remains installed and your account is active. If you uninstall Checksit or want your data deleted sooner, contact us at support@sevensapps.com and we will delete your workspace's stored data, including connector credentials and indexed content.

Security

OAuth tokens and bot credentials are encrypted at rest. Data in transit is encrypted via TLS. Each workspace's document index is isolated from every other workspace.

Changes to this policy

We may update this policy as Checksit evolves. Material changes will be posted here with an updated effective date.

Contact

Questions about this policy or your data? Email support@sevensapps.com.