Skip to content
Legal

Privacy Policy

Last updated: September 3, 2026

This policy explains how Fairview collects, uses, and protects your personal data when you use our Operating Intelligence Platform.

1. What we collect

Account data. When you create a Fairview account, we collect your name, email address, and company name. This is required to provide the service.

Usage data. We collect information about how you use Fairview: features accessed, session duration, and interaction patterns. This helps us improve the product.

Integration data. When you connect a data source (CRM, Stripe, QuickBooks, etc.), Fairview reads the data fields necessary to power your operating view — deal data, revenue figures, and cost data. Integration data is used only to deliver the Fairview service. It is never shared or sold.

2. How we use your data

We use the data we collect for the following purposes:

  • Provide the Fairview operating intelligence service
  • Deliver your Weekly Operating Report every Monday
  • Improve the product based on usage patterns
  • Communicate with you about your account, billing, and updates
  • Respond to support requests
We never sell your data. We never use your business data to train AI models.

3. Data storage and security

All data is stored on AWS infrastructure in the US (us-east-1). EU data residency is available on the Scale plan — contact us before connecting your first source if residency matters to your organisation.

Data at rest is encrypted using AES-256. All data in transit uses TLS 1.3. OAuth tokens are stored with minimum-scope access and never expose your source tool credentials to Fairview servers.

We are actively pursuing SOC 2 Type II certification, expected Q3 2026. For a full breakdown of our security posture, see our Security page.

4. Third-party services

Fairview uses a small number of third-party services to operate. Each is governed by its own privacy policy.

Service Purpose
Stripe Billing and payment processing
AWS Cloud infrastructure and data storage
PostHog Product analytics (can be opted out in account settings)

5. How we share, transfer, and disclose your data

We do not sell, rent, or trade your personal data or your connected source data. We do not share it with advertisers or data brokers, and we do not use it to train AI or machine learning models — our own or anyone else's.

We share data only in the specific circumstances set out below, and only to the extent necessary:

  • Service providers (subprocessors). The providers listed in section 4 — Amazon Web Services (hosting and storage), Stripe (billing and payment processing), and PostHog (product analytics) — process data on our behalf. Each is bound by a written agreement that limits them to processing only on our documented instructions, prohibits use for their own purposes, and requires equivalent security. A current subprocessor list is available on request, and account admins are notified of material changes.
  • Other users in your workspace. Data from a source you connect is visible to the members and administrators of your Fairview workspace, according to the roles you assign.
  • Legal and regulatory disclosure. Where we are required to do so by applicable law, a binding court order, subpoena, or lawful government request, or where disclosure is necessary to establish or defend legal claims, enforce our Terms of Service, or protect the rights, property, or safety of Fairview, our customers, or the public. Where we are legally permitted to do so, we will notify you before disclosing.
  • Business transfer. If Fairview is involved in a merger, acquisition, financing, reorganisation, or sale of assets, data may be transferred as part of that transaction. We will notify affected customers, and any acquirer remains bound by the commitments in this policy until it is superseded by a policy you are given notice of.
  • With your consent or at your direction. When you explicitly ask us to share data with a third party, export it, or connect it to another tool.

International transfers. Fairview is operated from, and stores data in, the United States (AWS us-east-1). EU data residency is available on the Scale plan. Where personal data is transferred out of the European Economic Area, the United Kingdom, or Switzerland, we rely on the European Commission's Standard Contractual Clauses and the UK International Data Transfer Addendum, together with the technical measures described in section 3. See our GDPR page for our Data Processing Agreement.

6. Data retention and deletion

We keep personal data only for as long as we need it to provide the service, or for as long as the law requires us to. When a retention period ends, the data is deleted or irreversibly anonymised.

Data How long we keep it
Account data (name, email, company) For as long as your account is open. Deleted within 30 days of account closure.
Integration data from connected sources, including Google user data Only while the integration is connected. Deleted from production systems within 30 days of you disconnecting the source or closing your account.
Usage and product analytics 24 months, then aggregated and anonymised so it can no longer identify you.
Billing and invoice records Up to 7 years after the transaction, where tax and accounting law requires it.
Support correspondence 24 months from the close of the request.
Encrypted backups Purged on a rolling cycle; deleted data is fully removed from backups within 90 days.

How to delete your data. You can delete data yourself at any time:

  • Disconnect a single source in Settings → Integrations → Disconnect. This immediately stops all further access and queues the data collected from that source for deletion.
  • Delete your entire account and workspace in Settings → Account → Delete workspace.
  • Or email privacy@getfairview.com from your account address and ask us to delete your data.

We action deletion requests within 30 days and confirm in writing when the deletion is complete. The only data we keep beyond that point is the minimum we are legally required to retain — principally billing records — and a record of the deletion request itself.

7. Google user data

If you choose to connect a Google account to Fairview, this section explains exactly what we access, who we share it with, and how long we keep it. It applies in addition to the rest of this policy, and takes precedence over it in the event of any conflict.

What we access. Only what you grant through Google's OAuth 2.0 consent screen, and only the minimum scopes needed for the features you use:

  • Basic Google profile information (your name, email address, and profile picture) — used solely to authenticate you and identify your account inside Fairview.
  • Read-only Google Ads reporting data via the Google Ads API — campaign, ad group, and keyword names, spend, impressions, clicks, conversions, and conversion value — used solely to build the operating dashboards, margin analysis, and weekly report you have asked us to produce.

Access is read-only. Fairview never creates, edits, pauses, or deletes campaigns, never changes bids or budgets, and never modifies any setting in your Google account or your Google Ads account.

Who we share Google user data with. We do not sell, rent, or transfer Google user data, and we do not use it for advertising or to serve ads. Google user data is disclosed only to:

  • Amazon Web Services, which hosts and stores the data as our processor under contract, on our documented instructions only.
  • The members and administrators of your own Fairview workspace, according to the roles you assign.
  • A law enforcement or regulatory body, where we are legally compelled to disclose it and after notifying you if we are permitted to do so.

Google user data is not transferred to Stripe or PostHog. It is never used to develop, improve, or train generalised or personalised AI or machine learning models. No human at Fairview reads Google user data except where you give explicit consent for specific messages, where it is necessary for security purposes such as investigating abuse, where we are required to do so to comply with applicable law, or where the data has been aggregated and anonymised so it can no longer identify any individual.

How long we keep it, and how to delete it. Google user data is retained only while your Google connection is active. When you disconnect the integration or close your account, we revoke the OAuth token immediately, delete the associated Google user data from our production systems within 30 days, and purge it from encrypted backups within 90 days. You can trigger this at any time in Settings → Integrations → Google Ads → Disconnect, by deleting your workspace, or by emailing privacy@getfairview.com. You can also revoke Fairview's access directly from your Google Account at myaccount.google.com/permissions; doing so stops all further access and starts the same deletion process.

Limited Use disclosure. Fairview's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

8. Your rights

Under GDPR and applicable data protection law, you have the right to:

  • Access the personal data we hold about you
  • Rectify inaccurate data
  • Request erasure of your data
  • Receive your data in a portable format
  • Object to or restrict processing

To exercise any of these rights, contact privacy@getfairview.com. We respond within 30 days.

9. Cookies

We use functional cookies (required for login and session management) and analytics cookies (PostHog). You can opt out of analytics cookies in your account settings under Privacy. See our Cookie Policy for full details.

10. Contact

For privacy inquiries, email privacy@getfairview.com. We respond within one business day.

Fairview Software Ltd.