Privacy Policy

How Jidoka Group handles data across services and software.

Last updated: September 2026

Who we are

Jidoka Group is a Wyoming company that provides operational consulting, workflow automation, connected dashboards, AI-assisted tools, subscriptions, and SaaS products. Our website is located at jidokagroup.com.

This policy explains how we collect, use, disclose, and protect information when you visit our websites, contact us, use our owner dashboards, connect third-party platforms, buy consulting services, pay service fees, subscribe to a product, or use our software.

Our role with business data

For our websites, marketing, account administration, billing, diagnostics, and direct customer relationships, Jidoka Group generally acts as the business responsible for deciding why and how personal information is used.

For customer, lead, employee, patient, guest, donor, student, transaction, or other business records that a client connects or uploads so Jidoka Group can provide consulting, automation, dashboard, or SaaS services, Jidoka Group generally acts as a service provider or processor for that client. The client remains responsible for having the right permissions, notices, consents, and legal basis for the data it gives us or connects to us.

Information we collect

Contact and account information. We may collect names, emails, phone numbers, company names, job titles, billing details, authentication information, support messages, calendar bookings, and account settings.

Diagnostic and onboarding information. When you complete an assessment, owner workflow, business scan, or onboarding form, we collect your answers, business details, selected workflows, goals, blockers, system preferences, and notes you submit.

Connected platform data. If you connect a third-party account, we may process the records needed to provide the service, such as CRM records, contacts, leads, opportunities, conversations, calendars, bookings, invoices, payment or order signals, forms, spreadsheets, marketing data, restaurant operating signals, support records, and related metadata.

Communications and automation data. We may process message drafts, sent and received messages, call events, voicemail recordings, transcripts, approvals, opt-out records, workflow logs, safe-test evidence, launch status, support requests, and testimonial proof records.

Usage and device data. We may collect log data such as IP address, browser type, device information, pages viewed, referring pages, timestamps, diagnostic events, product usage, error logs, and security events.

How we use information

We use information to:

  • Provide websites, dashboards, consulting services, subscriptions, and SaaS products
  • Generate diagnostics, recommendations, workflows, reports, and safe-test evidence
  • Connect and operate approved third-party integrations
  • Prepare, test, launch, monitor, and improve owner-approved automations
  • Process payments, invoices, service fees, subscriptions, renewals, and account notices
  • Respond to support requests, troubleshoot bugs, prevent abuse, and secure the services
  • Measure product performance, improve our services, and develop new features
  • Comply with legal, tax, accounting, security, dispute, and regulatory obligations

We do not sell personal information. We do not use one client's private connected business data to serve another client.

AI-assisted processing

Some services use AI-assisted analysis, classification, drafting, summarization, recommendations, or automation. We may send limited task-relevant data to AI infrastructure providers so they can process the request for us. We design workflows to use the minimum data needed for the task and to keep owner approvals in place before sensitive automations launch.

Unless we say otherwise in a written agreement, we do not use a client's private connected business data to train general-purpose AI models for other customers.

Connected accounts and OAuth providers

When you authorize a connected platform, you log in through that platform or an integration provider. Jidoka Group does not need your platform password. We may receive tokens, identifiers, scopes, connection status, and the data made available by the permissions you approve. Tokens are used to provide the connected service and should be stored securely by Jidoka Group or its integration provider.

You can revoke connected access through the provider, the integration tool, or by contacting us. Revoking access may limit or stop workflows that depend on that provider.

Who we share information with

We share information with vendors and service providers that help us operate the services, including hosting, databases, authentication, analytics, integrations, payments, email, messaging, calendars, AI infrastructure, support tooling, logging, and security providers. Examples may include Supabase, Netlify, Nango or similar integration providers, Resend, Twilio, Stripe or other payment processors, scheduling providers, and connected business platforms you authorize.

We may also disclose information if required by law, to protect rights and safety, to investigate abuse, to enforce agreements, in connection with a business transaction, or with your direction or consent.

Payments and billing

If you pay Jidoka Group for service fees, retainers, setup fees, subscriptions, renewals, or usage charges, payment information may be processed by our payment processors. We may store billing contact details, invoices, transaction status, subscription status, tax information, renewal dates, and payment history. We do not store full payment card numbers unless a payment provider makes limited tokenized information available for account management.

Cookies and similar technologies

We use cookies and similar technologies for session management, security, product functionality, analytics, preferences, and diagnostics. Some cookies are necessary for dashboards, account access, safe-test workspaces, or SaaS features to work. You can control cookies through your browser, but disabling them may limit parts of the service.

International users and data transfers

Jidoka Group is based in the United States and may process information in the United States and other countries where our vendors, service providers, team members, or infrastructure operate. If you use the services outside the United States, your information may be transferred to and processed in countries with data protection laws different from those where you live or operate.

Where required, we use appropriate contractual, technical, and organizational measures to support cross-border data transfers. Clients are responsible for ensuring they have a lawful basis to transfer their own business data to Jidoka Group and connected providers.

Data retention

We keep information for as long as needed to provide the services, operate accounts, maintain security, comply with legal, tax, accounting, and contractual obligations, resolve disputes, enforce agreements, and maintain audit trails for approved workflows. Retention periods vary based on the type of data, service, client instructions, applicable laws, and operational needs.

Some records, such as opt-out or suppression records, may be retained longer so that we do not accidentally contact someone who asked not to be contacted. When a client relationship ends, we delete or return client data as required by the applicable agreement, except where retention is legally required or reasonably needed for security, billing, disputes, backups, or audit records.

Security

We use reasonable technical and organizational measures designed to protect information from unauthorized access, loss, misuse, alteration, and disclosure. These measures may include access controls, encryption where appropriate, provider permissioning, logging, and workflow approval gates. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

Your privacy rights

Depending on where you live, you may have rights to access, correct, delete, export, restrict, object to, or withdraw consent for certain processing of personal information. You may also have the right to appeal a decision or complain to a data protection authority.

To make a request, email hello@jidokagroup.com. If your data is controlled by one of our clients, we may direct your request to that client or help them respond.

Children

Jidoka Group services are intended for businesses and are not directed to children. We do not knowingly collect personal information from children. If you believe a child has provided personal information to us, contact us and we will take appropriate steps.

Changes to this policy

We may update this privacy policy from time to time. When we do, we will update the last updated date above. If changes are material, we may provide additional notice through the website, dashboard, email, or another reasonable method.

Contact

Questions about this policy? Reach us at hello@jidokagroup.com.