Privacy Policy

Effective Date: September 12, 2026Last Updated: September 12, 2026

This Privacy Policy describes how amaraREPS LLC ("we," "us," or "our") collects, uses, and protects information you provide when using Arora ("the Service"). By using Arora, you agree to the practices described in this policy.

1. Who We Are

Arora is a product of amaraREPS LLC, a company based in the United States. If you have questions about this policy, contact us at privacy@aroramcp.com.

2. Information We Collect

Account Information

When you create an account, we collect your name and email address. Authentication is handled via magic link or Google SSO. We do not store passwords.

Payment Information

When you subscribe to a paid plan, we collect billing information including your name, billing address, and payment card details. Payment processing is handled by Stripe. We do not store full card numbers on our servers.

Connector Credentials

To connect third-party tools (such as HubSpot, Google Workspace, ClickUp, Shopify, Slack, and others), we store OAuth tokens on your behalf. These tokens are encrypted at rest using AES-256 encryption with managed encryption keys and used only to perform actions you authorize through the Service. Tokens are deleted immediately when you disconnect a connector.

Connector Context

When you connect a tool, Arora stores workspace-level metadata such as workspace IDs, portal IDs, timezone, and default preferences. This data is scoped to your account and used only to make your AI interactions accurate. It is cleared when you disconnect a connector.

Document Content (Transient Processing)

When you, or your AI assistant at your direction, ask Arora to read a document (for example, a PDF attached to an email in your connected mailbox, stored in your connected drive, hosted at a link you provide, or uploaded by you directly), Arora fetches that document using your own connected-account credentials and extracts its text in memory to answer your request.

Extracted document text is held only in a private, per-customer working area for the duration of active use and is automatically discarded after 30 minutes of inactivity. It is never written to our database, never used for any purpose other than answering your request, and never used to train any model. Document content never appears in our operational logs: logs record only metadata such as page counts, byte counts, and website hostnames, never document text, full file links, or your credentials.

Reading a document does not send its content to any additional service provider: content flows from the source you connected into Arora's existing infrastructure and back to you, and text extraction runs inside Arora itself. Arora does not run a server-side OCR engine. If you ask to view pages as images, Arora renders the selected pages to image files so your assistant can read them visually. Rendered page images are held in private, access-controlled temporary storage for approximately one day: access expires within 24 hours, and the files themselves are automatically deleted by a daily storage lifecycle (within roughly 24 to 48 hours of creation). Rendered images are never made public, and the source document is never modified.

Usage and Compute Data

We collect data about your use of the Service for billing purposes, including the number and type of tool calls made through Arora connectors and token usage associated with AI model interactions.

Memory and Context Data

Arora stores memories, preferences, and context generated during your use of the Service. Memory content is encrypted at rest with keys managed in a cloud key-management service, and the service decrypts it only to serve it back into your own sessions. It is used to improve the continuity and accuracy of your experience across sessions and is never used for any other purpose.

Execution Logs

We maintain logs of which tools were called, whether they succeeded or failed, and which governance rules fired. Before persistence, all logs go through two layers of redaction: credential redaction (API keys, tokens, and secrets are replaced with [REDACTED]) and content field stripping (email bodies, message text, task descriptions, document content, and CRM record details are stripped before database write). Logs are retained for debugging and history.

Migration and Audit Content (Envelope-Encrypted)

Paid plans with team access include full sensitive-action audit logging: an audit record of governed actions, including the request and response content, so your team can review exactly what was done on your behalf. On free accounts, request and response content is simply not stored.

This content is protected with per-organization envelope encryption. Each record is sealed with a one-time key that is itself locked by an encryption key dedicated to your organization in a cloud key-management service. Arora's own servers cannot read this content at rest: the service holds permission to seal records, and it is structurally denied permission to unseal them. Captured content can only be decrypted inside a live, signed-in session of a member of your organization, and one organization can never decrypt another organization's records.

Deleting this data is cryptographic. When your organization's key is destroyed, every record sealed under it becomes permanently unreadable, after a 90-day recovery window that protects against accidental deletion.

3. How We Use Your Information

Your data belongs to you. Arora claims no ownership of your content, your connected accounts' data, or anything your AI assistant creates on your behalf. We use it only to provide the Service.

We use the information we collect to:

  • Provide, operate, and improve the Service
  • Process payments and manage your subscription
  • Authenticate your identity and manage your session
  • Route your requests to the correct third-party connectors
  • Enforce governance rules (Plays) you have configured
  • Communicate with you about your account, updates, and support requests
  • Comply with legal obligations

4. Data Storage and Security

All data is stored in the United States. We use the following security controls:

  • AES-256 encryption for all data at rest
  • TLS encryption for all data in transit
  • Managed encryption keys with per-environment key separation
  • Row Level Security (RLS) on all database tables enforcing tenant isolation
  • OAuth tokens encrypted at the field level before database storage
  • Two-layer execution log redaction (credential redaction plus content field stripping)

Employee Access

Arora personnel have no standing access to customer content. Operational access to our systems shows only ciphertext, and envelope-sealed audit content cannot be decrypted with any credentials Arora holds. Support access to an organization's content is possible only through a time-bounded grant issued by that organization's own administrator for a stated incident, and every such access is recorded in a log the organization can review.

5. Third-Party Sharing

We do not sell your personal information. We do not share your data with third parties except in the following circumstances:

  • Service providers: We share data with vendors who help us operate the Service, including Stripe (payments), Supabase (database), Google Cloud (infrastructure; also Gemini AI models for the optional image-generation feature only), and Stytch (authentication). Each vendor is bound by data processing agreements.
  • Third-party connectors: When you instruct Arora to take action in a connected tool (e.g., create a task in ClickUp), your request is routed to that tool using your own OAuth credentials. That data transmission is governed by the third party's own privacy policy.
  • Legal requirements: We may disclose information if required by law, subpoena, or to protect the rights and safety of our users or the public.
  • Business transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred. We will notify you before your data is subject to a different privacy policy.

We do not share your data with advertising networks. We do not use your data to train AI models.

Your AI Assistant Is Yours

Arora does not send your data to any AI model. Your AI assistant (Claude, ChatGPT, Copilot, or any other client you connect to Arora) is operated by you, under your own agreement with your AI provider. Your assistant requests actions from Arora; Arora performs them in your connected tools and returns the results to your assistant. The model processes data on your side of that exchange, not ours.

One scoped exception: certain optional features perform AI processing server-side, and we name them. If your organization enables the image-generation feature, the content you submit to that feature is processed by Google's Gemini models under our agreement with Google, used only to fulfill your request, and not used to train models. Features like this are always opt-in per organization, never affect organizations that have not enabled them, and are disclosed here before they launch.

Google User Data (Limited Use Disclosure)

Arora's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. In plain terms: data Arora accesses through your connected Google account (such as Gmail, Calendar, Docs, or Drive) is used only to provide the features you request. It is never sold, never used for advertising, and never used to train AI models.

6. Data Retention

Data TypeRetainedDeleted When
OAuth tokensWhile connector is connectedImmediately on disconnect
Connector contextWhile connector is connectedImmediately on disconnect
Execution logs90 days (automatic daily purge)Account deletion
Migration and audit records30 days (Team) or 90 days (Agency), unless a custom retention is agreedRolling window expiry; crypto-shred on key destruction (90-day recovery window) or account deletion
Account infoWhile account is activeAccount deletion
Memory and contextWhile account is activeAccount deletion or user request
Payment recordsAs required by lawPer legal retention requirements

7. Your Rights and Controls

You have the right to:

  • Access your personal data by contacting us at privacy@aroramcp.com
  • Delete your account and associated data at any time
  • Disconnect any connector at any time, which immediately deletes that connector's tokens and context
  • Request correction of inaccurate personal data

Organization Controls

Organizations have role-based membership (owner, admin, member). Owners and admins can invite and remove members, and members' connectors are their own: each person connects their tools with their own credentials. On plans with audit logging, administrators can review a decrypted audit trail of governed actions taken through Arora, inside a live admin session. On accounts without membership access (free), detailed actions are not collected.

To exercise these rights, contact us at privacy@aroramcp.com.

8. Children's Privacy

Arora is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from minors. If you believe a minor has provided us with personal information, contact us at privacy@aroramcp.com and we will delete it promptly.

9. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last Updated" date at the top of this page and notify active users by email. Continued use of the Service after changes are posted constitutes your acceptance of the updated policy.

10. Contact Us

amaraREPS LLC
Email: privacy@aroramcp.com
Security: security@aroramcp.com (vulnerability reports welcome)
Website: https://aroramcp.com