Skip to main content

StartOps legal

Privacy Policy

Last updated July 22, 2026

Who we are

StartOps is operated by Curate Labs AI ("StartOps," "we," "us"). The product website is https://startops.sh. This policy covers the StartOps web console, Model Context Protocol (MCP) server, ChatGPT app integration, and Claude connectors.

What we collect

Depending on how you use StartOps, we may process:

  • Account identity from our authentication provider (Clerk), such as name, email address, and organization membership.
  • Workspace data you or your teammates confirm into StartOps: initiatives, evidence and sources, decisions, relations, readiness state, drafts, proposals, and related operating records.
  • Assistant / MCP activity needed to fulfill authenticated tool calls from Claude, ChatGPT, or other MCP clients, including workspace context you authorize StartOps to read or write.
  • Billing metadata for paid workspaces (plan, seats, subscription status) via Clerk Billing and its payment processor. We do not store full payment card numbers.
  • Operational telemetry such as request identifiers, error signals, and security logs. We design logging to avoid raw prompts, source documents, tokens, and payment details.

Why we use this data

We use the data above to:

  • Provide durable founder operating memory across your connected AI assistants and the web console.
  • Authenticate users, authorize workspace access, and enforce plan limits.
  • Process subscriptions and seat changes for paid workspaces.
  • Secure the service, debug failures, prevent abuse, and respond to support requests.

We do not use your raw source material or private business records for marketing, public demos, or model training without your explicit consent.

Who can access workspace records

Workspace records are scoped to the workspace. Members of that workspace can access its StartOps data according to their role. StartOps operators may access records only as needed for support, security, reliability, or legal compliance, and only with least privilege.

Subprocessors

We rely on service providers that process data on our behalf, including:

  • Clerk — authentication, organizations, and billing orchestration.
  • Stripe (through Clerk Billing) — payment processing for paid plans.
  • Convex — application database and backend compute.
  • Vercel — web hosting and edge delivery.
  • Redis-compatible session storage — MCP session continuity where configured.
  • OpenAI / ChatGPT — only when you connect StartOps inside ChatGPT; StartOps does not send your workspace to OpenAI outside that user-driven integration.
  • Anthropic / Claude — only when you connect StartOps inside Claude; StartOps does not send your workspace to Anthropic outside that user-driven integration.

Retention, export, and deletion

Confirmed product records are kept until a workspace admin deletes the workspace or requests deletion through support. Operational logs are retained only as long as needed for security, abuse prevention, debugging, billing, and support evidence.

Workspace admins can export durable workspace data or delete the workspace in product at any time: open the workspace switcher, choose Manage workspace, then use Export data or Delete workspace. The export download is a JSON archive of profile, membership, initiatives, evidence metadata, workspace objects, relations, history, capability runs, and audit records. Binary file contents attached to evidence are not embedded in that archive.

To request deletion through support, or help with an incomplete export, email startops@curatelabs.ai. We may need to verify that you are a workspace admin or otherwise authorized before fulfilling the request.

Security

We use industry-standard controls appropriate to an early-stage SaaS product, including encrypted transport, provider access controls, and authenticated MCP/API boundaries. No method of transmission or storage is perfectly secure; please use strong account security and limit who you invite into a workspace.

Children

StartOps is intended for business and founder use. It is not directed to children under 13, and we do not knowingly collect personal information from children.

Changes

We may update this policy as the product evolves. The "Last updated" date at the top will change when we do. Material changes may also be communicated through the product or by email when appropriate.

Contact

Privacy and support requests: startops@curatelabs.ai.