Aldwin is the AI marketing teammate that runs your whole marketing engine, coordinates every channel into one campaign, and compounds from what actually drove pipeline.

Privacy Policy

Last updated: July 23, 2026 Effective: July 23, 2026

Aldwin, Inc. ("Aldwin," "we," "us") operates the Aldwin website (aldwin.io), the Aldwin application (app.aldwin.io), and related services (the "Service"). This Privacy Policy explains what we collect, why, and the controls we apply.

1. What Aldwin Collects

  • Account data: names, email addresses, workspace membership, roles.
  • Workspace data (Customer Data): playbook rules, campaign plans, briefs, deliverables, generated content, memories, and audit logs you create in Aldwin.
  • Connector data: connected-platform identifiers, granted scopes, and encrypted access credentials for the systems you authorize.
  • Synced marketing data: the CRM, advertising, analytics, and channel records Aldwin retrieves from platforms you connect, at your direction.
  • Usage data: how you interact with Aldwin (conversations, features used, activity timing) and product-analytics events. See Section 3.
  • Billing data: billing contact and payment metadata handled by Stripe.
  • Operational data: application logs, job metadata, and security telemetry.

2. Why Aldwin Processes Customer Data

Aldwin processes Customer Data to:

  • authenticate users and manage workspace access;
  • connect your platforms and synchronize marketing data at your direction;
  • generate reports, plans, investigation output, and content;
  • maintain audit trails, detect abuse, and protect the Service;
  • provide billing, support, and incident response.

We do not sell Customer Data, and we do not share personal information for cross-context behavioral advertising.

3. Usage Analytics, Personalization, and AI Processing

  • Product analytics are consent-gated. On app.aldwin.io, non-essential analytics (PostHog) do not load until you accept the cookie-consent banner; absent acceptance, analytics stay off, and automatic event and page capture is disabled.
  • Personalization profiles ("preference profiles") are derived from how you interact with Aldwin (your conversations, the features and tools you use, activity timing) and your saved preferences. They are built from product-usage signals and your settings, not from your synced CRM or campaign records.
  • AI processing. Aldwin uses the Anthropic API for AI-assisted analysis and content generation, and optionally other AI providers listed in the Sub-processor list (for embeddings, transcription, image, voice, and video generation, translation, and web research) when the related feature is used.
  • Model training. Aldwin does not use Customer Data to train AI models, does not sell it, and does not share it with other customers. Aldwin's primary AI provider is contractually bound to the same: Anthropic's Data Processing Addendum, incorporated into its Commercial Terms of Service and in force for Aldwin, commits Anthropic not to train its models on Aldwin's inputs and outputs and not to sell, share, or retain that data outside providing the service. Zero Data Retention (ZDR), a stronger posture with no provider-side retention at all, is not currently enabled on Aldwin's Anthropic organization, so this Policy does not claim an enterprise ZDR tier.
  • Identifier masking before external prompts. Before third-party records, tool outputs, and other external data are included in prompts sent to Anthropic, Aldwin applies automated pattern-based masking of common identifiers (email addresses, phone numbers, government-ID and payment-card numbers, and structured contact-name fields). This masking applies to external and untrusted data and tool results; it does not apply to all content you author or generate, and it is not a guarantee that every identifier is removed.

Depending on context, Aldwin relies on contract performance; legitimate interests in operating and securing the product; and legal obligations for accounting, fraud prevention, and security response.

5. Data Retention and Deletion

  • Active Customer Data is retained for the duration of the subscription.
  • Deletion has a 7-day cancellation window. When you request workspace deletion, it is scheduled 7 days out; during that window you can both export your data and cancel the deletion. After the window, your workspace data is permanently removed from our primary databases and object storage.
  • Data held by analytics, error-monitoring, and real-time infrastructure providers expires according to each provider's retention schedule; we do not publish a universal backup-purge deadline.
  • We retain limited records, such as billing records and audit logs, as required for accounting, security, and legal obligations.
  • Deleting data within Aldwin does not delete data held in your own connected systems, which you control directly.

6. Data Subject Rights

Customers and authorized users may request:

  • Access and export of workspace data in a portable, machine-readable format (JSON), subject to per-category volume limits surfaced in the export;
  • correction of inaccurate account information;
  • deletion of workspace data through the account-deletion flow;
  • for individual data-subject requests, contact-level access, deletion, correction, or restriction, fulfilled through our data-subject-request process.

Requests: privacy@aldwin.io or legal@aldwin.io. California residents may exercise access and deletion through the same channels (Section 10).

7. Sub-processors

Aldwin uses the sub-processors published at aldwin.io/subprocessors. We commit to at least 30 days' notice before adding a new material sub-processor, effective through the governing customer agreement.

8. Security

Aldwin applies:

  • Tenant isolation enforced at the database level. Every workspace-scoped table has row-level security with a workspace-isolation policy (a single documented exception for transient pre-authentication state), and the production database connects under a role that cannot bypass row-level security. Application authorization is enforced in addition to database-level isolation.
  • Application-layer encryption for integration credentials. Connected-platform access tokens are encrypted with AES-256-GCM using per-workspace keys derived from a master key, so each workspace's credentials are encrypted under a distinct key.
  • Multi-factor authentication freshness (a one-hour re-verification window) is enforced in production on Aldwin's internal administrative interface.
  • Session token-age limit. Authenticated sessions are subject to an application-layer maximum token age (eight hours), after which re-authentication is required.
  • Transport security: TLS 1.2 or later on the public app and production API (TLS 1.3 supported; TLS 1.0 and 1.1 rejected).
  • Audit and integrity controls: append-only audit events with hash-chaining on the agent-execution path.
  • Card details are entered on Stripe-hosted checkout; Aldwin does not store, log, or access full card numbers, retaining only billing contact and payment metadata from Stripe.

Aldwin does not claim universal AES-256 at rest, per-workspace hardware or KMS key isolation, or end-to-end encryption. Managed database, cache, object-storage, log, and backup provider controls follow each provider's current attestations.

9. International Processing

Production is designed around primarily US-hosted managed providers. Actual processing regions and international-transfer mechanisms are confirmed per provider from the configured service and applicable agreement. Object storage is Cloudflare R2; the S3-compatible credentials authenticate to R2, and Amazon Web Services is not a sub-processor.

10. CCPA / US Privacy Statement

  • Aldwin does not sell personal information.
  • Aldwin does not share personal information for targeted advertising.
  • California residents may request access or deletion through the channels above.
  • Trials do not auto-convert to a charge. A free trial suspends paid features at its end until you actively subscribe; there is no automatic renewal or charge.

11. Incident Notification

If Aldwin confirms a security incident affecting your personal data, we will notify affected customers without undue delay per the governing agreement and applicable law.

12. Contact and Legal Entity

Aldwin is operated by Aldwin, Inc., a Delaware corporation
131 Continental Dr, Suite 305
Newark, DE 19713, US
Privacy requests: privacy@aldwin.io or legal@aldwin.io

Aldwin is the AI marketing teammate that runs your whole marketing engine, coordinates every channel into one campaign, and compounds from what actually drove pipeline.

Aldwin, your AI marketing teammate.

Give Aldwin a job description and watch it own the role.

Scroll to Top