DRAFT: needs legal review before launch.
This is a working draft, not yet in force. Items marked [TODO] are open. Do not rely on it.
Privacy Policy
Draft of October 6, 2026
This policy explains what Night Forge Studios ("we", "us") collects when you visit the Full Plate website or use Full Plate, and what we do with it. Full Plate is a staffing board sold to agencies (our "customers") and used by their teams.
Who we are
Full Plate is made and sold by Night Forge Studios. [TODO: entity type, state of registration]
Contact: support@tryfullplate.com. Night Forge Studios, c/o Travis Mahoney, 1875 Mission St Ste 103 #842, San Francisco, CA 94103
Two kinds of data, two roles
- Workspace data is what an agency puts into Full Plate: the people on its board, projects, deliverables and time off. The agency controls it, and we process it on the agency's behalf as its service provider. Questions about it are best sent to your agency; we will help them answer.
- Account, billing and website data is information we decide how to use, as described below.
What we collect
Accounts
Your name, email address and profile image from your sign-in method (Google, Microsoft or an email link), and your role in each workspace.
Workspace data
Names, work email addresses, job titles, and country and state or region of the people on the board (used for public holidays); projects and client names; deliverables, due dates and load levels (Very Heavy to Low); and time off as a date plus "full day" or "half day".
We deliberately do not collect reasons for time off, hours worked, pay or rates, or performance reviews. Please do not put health or medical-leave information anywhere in Full Plate.
HubSpot, if your agency connects it (once the sync ships)
The deal details needed to create and update projects (deal name, pipeline and stage), and access tokens, which will be stored encrypted. You will be able to disconnect at any time.
Billing
Payments are handled by Stripe. We receive your plan, billing status and billing contact, not full card numbers.
Ask
When someone uses Ask, the question and a snapshot of the workspace's board data are sent to Anthropic's API to write the answer. We do not use workspace data to train AI models. [TODO: confirm and cite Anthropic's current commercial terms on retention and training]
Website, logs and analytics
Server logs (IP address, browser, pages requested, errors) for security and debugging. If we adopt a product analytics tool, it will record usage events such as "import completed" to see where people get stuck. [TODO: analytics tool settings and cookie notice once chosen]
Marketing email
If you ask for the free template, your email address and (optionally) first name, kept in Kit, plus whether you open or click our emails. You receive marketing email only after confirming your address, and every email has a one-click unsubscribe.
How we use it
- To run Full Plate: sign-in, the board, the Monday digest, trial and billing notices.
- To keep it secure: rate limits, abuse prevention, audit logs, error reports.
- To support you when you ask for help.
- To improve the product, from usage events and aggregated statistics.
- To send marketing email you opted into.
We do not sell or rent personal information, and we do not share it for cross-site advertising.
Service providers
We plan to use these providers to run Full Plate. None is live yet: Full Plate has not launched. Each will get only the data its job needs, under a written agreement, and this list will be kept current. [TODO: final list, each provider's data processing terms and hosting region]
Vercel
- What for
- Hosting the app and this website
- Data
- All app traffic; request logs
- Status
- At launch
Neon
- What for
- Database
- Data
- Account and workspace data
- Status
- At launch
Clerk
- What for
- Sign-in and team invitations
- Data
- Name, email, sign-in method, profile image
- Status
- At launch
Stripe
- What for
- Payments and billing
- Data
- Billing contact, payment details (held by Stripe)
- Status
- At launch
Postmark
- What for
- Product email (Monday digest, trial notices)
- Data
- Name, email, email content
- Status
- At launch
Anthropic
- What for
- Answers to Ask questions
- Data
- The question and a snapshot of board data
- Status
- At launch
Kit
- What for
- Marketing email you opted into
- Data
- Email, first name, opens and clicks
- Status
- At launch
Cloudflare R2
- What for
- Import files and encrypted backups
- Data
- Uploaded spreadsheets, backups
- Status
- Planned, if adopted
Inngest
- What for
- Scheduled jobs (digest, snapshots, billing notices)
- Data
- Workspace identifiers
- Status
- At launch
Upstash
- What for
- Rate limiting
- Data
- IP addresses, user and workspace identifiers, hashed email addresses
- Status
- At launch
Sentry
- What for
- Error reports
- Data
- Technical data, workspace identifiers (no names or emails)
- Status
- Planned, if adopted
PostHog
- What for
- Product analytics
- Data
- Usage events, device data
- Status
- Planned, if adopted
| Provider | What for | Data | Status |
|---|---|---|---|
| Vercel | Hosting the app and this website | All app traffic; request logs | At launch |
| Neon | Database | Account and workspace data | At launch |
| Clerk | Sign-in and team invitations | Name, email, sign-in method, profile image | At launch |
| Stripe | Payments and billing | Billing contact, payment details (held by Stripe) | At launch |
| Postmark | Product email (Monday digest, trial notices) | Name, email, email content | At launch |
| Anthropic | Answers to Ask questions | The question and a snapshot of board data | At launch |
| Kit | Marketing email you opted into | Email, first name, opens and clicks | At launch |
| Cloudflare R2 | Import files and encrypted backups | Uploaded spreadsheets, backups | Planned, if adopted |
| Inngest | Scheduled jobs (digest, snapshots, billing notices) | Workspace identifiers | At launch |
| Upstash | Rate limiting | IP addresses, user and workspace identifiers, hashed email addresses | At launch |
| Sentry | Error reports | Technical data, workspace identifiers (no names or emails) | Planned, if adopted |
| PostHog | Product analytics | Usage events, device data | Planned, if adopted |
Where data lives
Full Plate is offered to US businesses, and data is stored in the United States. [TODO: confirm the hosting regions of every provider]
How long we keep it
- Workspace data: while the subscription is active. Deleted items can be restored for 30 days.
- A deleted workspace is purged 30 days after deletion.
- An expired trial becomes read-only, gets email reminders, and is purged after 90 days.
- Backups will be encrypted and kept for 30 days, so purged data will leave the backups within 30 more days.
- Marketing contacts: until you unsubscribe. We then keep only your address on a do-not-email list, so you are never emailed again.
Security
Data is encrypted in transit. Each agency's data is kept separate by the database itself (row-level security), integration tokens will be encrypted once integrations exist, and staff access is limited to what support needs.
Your choices and rights
- Agency owners and admins can export their workspace at any time. Owners can ask us to delete it.
- You can ask us to access, correct or delete personal information we control.
- You can unsubscribe from marketing email in one click.
[TODO: California (CCPA/CPRA) and other state-law sections after legal review]
Children
Full Plate is a business tool and is not meant for anyone under 16.
Changes
We will post changes here and, for material changes, email workspace owners before they take effect.