Privacy Policy

Private by design. Clear by policy.

Effective August 6, 2026 · Version 2026-08-06 · Applies to PrivateChief Personal, Business, and combined service.

The short version

The working private memory for each Personal or Business Chief is designed to live on a PrivateChief appliance at the customer’s authorized premises. Limited account, agreement, billing, service, security, support, and integration records are kept centrally, and encrypted recovery backups protect against device loss. We do not sell Customer personal information, use private Customer content to build advertising profiles, or show targeted advertising inside PrivateChief.

Who operates PrivateChief

PrivateChief is operated by Archieboy Holdings, LLC, 771 Boston Post Rd STE 11 #1006, Marlborough, MA 01752. Questions and privacy requests may be sent to hello@privatechief.com. For Business service, the Business customer ordinarily determines why its employee, contractor, prospect, customer, and other business data is processed; PrivateChief acts as its service provider or processor as described in the Data Processing Addendum.

Information we receive

Website and consultation data includes name, email, telephone number, role or organization, area of interest, referral and campaign information, preferred meeting or contact method, inquiry text, browser or device data, IP address, and security logs. We use it to respond, answer questions, evaluate fit, arrange requested appointments, prevent abuse, and measure our marketing.

Account, contract, and service data includes authentication records, customer and member roles, intake answers, agreement and order acceptance evidence, service addresses, equipment and installation choices, billing identifiers, support requests, system health, versions, and diagnostic or security events.

PrivateChief content may include conversations, commands, transcripts, summaries, memories, preferences, tasks, calendars, documents, contacts, projects, business records, communications, connected-account content, and bookkeeping transaction data, depending on features Customer enables.

Voice and camera information may include microphone audio, transient camera frames, reference images, voice profiles, recognition signals, and interaction context. Recognition references are designed to remain on the customer-site appliance. Limited audio, images, text, and relevant context may be sent to contracted AI providers to answer or act.

Financial-connection information may include institution name, account type, account mask, balances, holdings, and transactions received through Plaid or another Customer-authorized provider. PrivateChief does not receive the credentials entered in Plaid Link. We use this data to provide Books, reporting, reconciliation, and Customer-requested financial organization—not to initiate transfers unless a separate feature and authorization expressly permit it.

How information is used

We use information to provide and personalize the Service; authenticate people and enforce permissions; operate requested integrations; communicate with Customer-authorized people; prepare and carry out approved tasks; maintain Books and other records; install, monitor, secure, support, back up, and recover systems; process billing; prevent fraud and abuse; comply with law; and improve reliability and usability using appropriately minimized service data.

We do not use private household or business content to advertise to Customer or others. We may use de-identified or aggregated service measurements that are not reasonably capable of identifying a customer, household, business, or person.

AI and service providers

To generate answers, speech, summaries, and requested actions, limited Customer content may be processed by approved AI providers, which may include OpenAI, Anthropic, and Google. Business customers connect and pay for a compatible OpenAI or Anthropic subscription unless an order summary says otherwise. Other providers may include Plaid, cloud hosting and storage, email and messaging delivery, application distribution, monitoring, customer support, and payment processing. These providers receive information only for contracted or Customer-requested purposes and are governed by their own applicable terms.

Content itself may contain identifying details; we therefore do not promise that an AI request is anonymous. We configure and use providers for service processing rather than targeted advertising and seek to send only the context reasonably needed for the task.

Public-site measurement

The public marketing site may use the Meta Pixel and campaign parameters to record page views and completed consultation requests. A person may also submit a Meta Instant Form containing their name, email address, telephone number, preferred meeting method, and an optional question; Meta sends that submitted form data to PrivateChief so Higgins can respond and arrange the requested consultation. Meta may receive and process form, browser, cookie, device, referral, and event information under its own privacy terms. PrivateChief conversations, memories, contacts, documents, camera images, connected-account content, and app activity are not sent to the advertising pixel. Browser privacy controls may limit measurement.

Where data is stored

The primary working memory, recognition references, permissions, documents, and local integration state are designed to remain on the customer-site appliance. Central PrivateChief systems hold the minimum records needed for accounts, agreements, billing, device routing, notifications, service health, support, secure integration, and operations. Encrypted recovery backups may contain selected appliance data. Some connected providers process information in their own systems.

Remote access and support

Authorized PrivateChief personnel and service accounts may remotely access a customer appliance to install, configure, monitor, secure, diagnose, update, back up, recover, and support it. Connections are authenticated, limited to authorized purposes, and logged where technically feasible. Access is revoked during completed offboarding.

Household members, children, and guests

Personal service is purchased and administered by adults and is not marketed directly to children. A parent or legal guardian decides whether a minor may participate, provides any child profile or reference information, and may request access, correction, or deletion. PrivateChief seeks parental or guardian authorization before creating a child profile. Voice, images, and persistent identifiers can be personal information; children’s data is collected only for enabled service features and retained only as reasonably necessary.

The subscribing adult must obtain permission from participating adults before enrolling their face, voice, private account, or personal memory and must give visitors clear notice where microphone- or camera-enabled features operate. PrivateChief may not be used for secret surveillance or in areas where a person reasonably expects seclusion.

Business members and other people

The Business customer manages member access and is responsible for workplace, employee, contractor, customer, communications, recording, retention, and industry notices or consents. Business service should not be used for regulated or unusually sensitive information unless PrivateChief has approved the use in writing and the appropriate controls and contract terms are in place.

Security

We use reasonable administrative, technical, and physical safeguards appropriate to the Service, including access control, encrypted connections, protected credentials, system monitoring, security updates, encrypted backups, and incident procedures. No system is perfectly secure. If a security incident requires notice, we will notify affected customers, people, and authorities as applicable law requires.

Retention

Live Customer content is retained while needed to provide the Service and according to Customer settings. Routine household recovery snapshots are retained on a rotating basis, currently fourteen snapshots per appliance, and protected weekly recovery copies expire under the applicable immutable-storage schedule. Billing, agreement, tax, fraud-prevention, security, and legal records may be retained longer where reasonably necessary or legally required.

After completed offboarding, centrally held live Customer content will ordinarily be deleted or de-identified within thirty days. Backup copies age out rather than being selectively rewritten and are not restored for ordinary access after a completed deletion request.

Your choices and rights

Customer administrators select enabled features, members, permissions, recognition, memory, cameras, and connected accounts. Mute or silence controls stop ordinary conversational audio processing. Depending on the person’s relationship to the Service and applicable law, a person may request access, correction, export, deletion, withdrawal of optional participation, or disconnection by contacting hello@privatechief.com. We may verify identity and authority before acting.

We do not discriminate against a person for exercising a legally protected privacy right. A request affecting Business-controlled data may be referred to the Business customer that controls it.

International use and transfers

PrivateChief is presently offered from the United States. Customer should not deploy the Service in another country without written approval. Providers may process data in the United States or other locations under their applicable safeguards and terms.

Changes and contact

We will provide clear notice of a material change and request renewed consent when required. The effective date above identifies the current version.

Archieboy Holdings, LLC · 771 Boston Post Rd STE 11 #1006, Marlborough, MA 01752 · hello@privatechief.com