ClientFlowApply for pilot
Open menu

Privacy

Privacy policy for Notion-powered delivery automation.

This policy explains the data ClientFlow reads and stores to connect Notion, validate mappings, preview delivery plans, execute approved work, and retain Delivery Receipts.

What ClientFlow accesses

ClientFlow accesses only Notion pages and databases selected during OAuth authorization. The product reads mapped client, project, task, and service metadata needed to preview and execute delivery workflows.

What ClientFlow stores

ClientFlow stores account identity, workspace identifiers, encrypted Notion OAuth tokens, database role mappings, schema hashes, templates, rules, preview runs, action records, and Delivery Receipts.

Token security

Notion access tokens are encrypted at rest with AES-256-GCM and are never exposed to the browser.

Data minimization

ClientFlow is designed to retain operational identifiers and execution evidence, not a full copy of customer workspace content.

Deletion requests

Customers can request disconnection and deletion of retained workspace data through support. Disconnecting a workspace pauses automation and keeps rules for recovery until deletion is requested.

Current stage

ClientFlow is in a private/founding pilot stage. Enterprise controls such as SOC 2, regional residency, and a public status page are roadmap items, not current claims.