1. Scope
This notice applies to the public website at theideaexperience.com, account creation and subscription, our conversations with prospective and current customers, and every TIE application that links to it.
A product-specific notice, customer agreement, or consent screen may provide additional information for a particular service or optional feature. If a product-specific notice or customer agreement conflicts with this notice, that more specific document controls for that service. If another organization gives you access to a TIE application, that organization may also have its own privacy obligations and policies.
This notice does not apply to third-party websites or services that we do not control, even when we link to them.
2. Customer data and app boundaries
As between TIE and a customer, the customer retains its rights in the business records, files, and other content it or its authorized users submit to a TIE application (“Customer Data”). TIE processes Customer Data to provide, secure, support, and operate the subscribed application; follow the customer's documented instructions; comply with law; and enforce applicable agreements.
When we process Customer Data on a customer's behalf, we act as that customer's service provider (sometimes called a “processor”), and our agreement with the customer governs that processing. For information we collect for our own purposes, such as website visits, sales conversations, account administration, and billing, TIE is responsible for the information as described in this notice.
Our products are designed so that each application and workspace has its own authorized access boundary. We do not create a universal customer-data pool or make one customer's content available to another customer, and we do not use Customer Data for advertising or to build profiles for unrelated purposes. Some functions, such as identity, billing, security, or an expressly enabled integration, may use shared services. Those services receive only the information needed for their defined function. A cross-application disclosure occurs only when an authorized customer expressly configures it and the relevant permissions permit it.
3. Information we collect
The information we collect depends on how you interact with us and which application you use. It may include:
- Contact and relationship information, such as your name, email address, organization, role, and the content of messages you send us.
- Account and access information, such as account identifiers, workspace membership, application access, authentication events, and security-related records.
- Customer and application content, such as business records, documents, files, workflow details, bids, project specifications, feedback, or other information you or your organization submit to a TIE application.
- Information about other people. Customers may submit information about their own employees, customers, or contacts, such as scheduling, payroll, or order records. The customer is responsible for having the right to provide that information to us.
- Transaction and subscription information, such as plan, entitlement, invoice, and payment-status information. Payment providers, such as Stripe, may collect payment card or bank details directly under their own privacy notices.
- Technical and usage information, such as IP address, browser or device information, timestamps, service activity, diagnostics, security logs, and feature usage.
- Information from approved integrations, when a customer connects a business system, such as accounting or scheduling software, or asks us to work with data from another provider.
Please do not place passwords, payment-card data, government identifiers, health information, or other unnecessary sensitive information in free-text fields, files, or messages unless the relevant TIE service specifically requests it. When a service does require sensitive information, we limit access to it and apply additional safeguards.
4. How we use it
We use information to:
- provide, operate, support, and improve our website, applications, and customer work;
- create and protect accounts, confirm access, and keep customer workspaces separated;
- understand workflows, configure services, process requested content, and deliver results;
- manage subscriptions, entitlements, billing records, and customer relationships;
- answer questions, respond to requests, and send service-related communications;
- send information about TIE services that may interest you, which you can opt out of at any time;
- monitor reliability, investigate errors, prevent abuse, and protect users and services;
- comply with law, enforce agreements, resolve disputes, and maintain appropriate business records; and
- evaluate and develop features using synthetic, de-identified, aggregated, or appropriately authorized information where practical.
We aim to collect and use only what is reasonably needed for the applicable purpose.
6. AI features
Some TIE services use AI to help with tasks such as understanding submitted material, organizing information, drafting content, or producing a requested analysis. Not every TIE application uses AI.
When an AI feature is used, the content needed for that task and related instructions may be sent to an approved AI service provider. We design workflows to limit the information sent to what the task requires and apply human review before consequential actions where appropriate. AI output can be incomplete or inaccurate and should be reviewed in context.
We do not use Customer Data to train TIE's own AI models. We use AI providers under terms that do not permit them to use Customer Data submitted through TIE services to train their models.
We do not use AI or other automated processing to make decisions that produce legal or similarly significant effects on individuals.
A feature-specific notice or consent screen may explain the provider and processing applicable to that feature. A provider's handling of submitted information depends on the applicable service terms and configuration.
7. Retention
We retain information for as long as reasonably needed to provide the service, maintain security and audit records, meet customer instructions and contractual commitments, comply with legal or accounting obligations, resolve disputes, and maintain ordinary business records.
Retention differs by record type and application. When information is no longer needed, we take steps to delete or de-identify it. Some information may remain for a limited period in protected backups or where law, a dispute, fraud prevention, or security needs require continued retention.
When a customer's subscription ends, we delete or return Customer Data as described in the customer agreement, generally within 30 days, except where we must retain it as described above.
8. How we protect it
We use layered administrative and technical safeguards designed for the nature of our services. Current practices include encrypted connections such as HTTPS/TLS for data in transit, server-side access checks, customer workspace boundaries, protected handling of application credentials, controlled software delivery, backups for applicable managed environments, and security testing.
We review and improve our safeguards as our services, providers, and risks change. Customers may request more information about our security practices.
If we become aware of a security incident that affects your personal information, we will notify affected customers and individuals as required by law and our agreements.
No method of transmission or storage is completely secure. Please protect your account and device, use a strong unique password, and tell us promptly if you believe an account or TIE service has been misused.
9. Your choices
Depending on your location and our relationship with you, you may have rights to request access to, correction of, deletion of, or a copy of certain personal information. You may also ask questions about how information is used. We will not discriminate against you for exercising these rights.
We may need to verify your identity and authority before acting. Some information may be exempt from a request or retained when required by law, contract, security, accounting, or the rights of others. If we process information for your employer or another customer, we may direct your request to that organization and assist it as required. We will respond within the time required by applicable law. If we decline a request, we will explain why, and you may reply to ask us to reconsider.
TIE applications may use cookies or browser storage that are necessary for sign-in, security, preferences, and service operation. The main TIE website does not currently use third-party advertising cookies. We use Google Analytics to understand how visitors use the website in aggregate. Your browser may let you block storage, but doing so can prevent account or application features from working.
You can opt out of optional promotional email at any time by using the unsubscribe link in the message or by contacting us. We may still send necessary account, security, transaction, or service communications.
10. Children
TIE services are designed for businesses and are not directed to children. We do not knowingly collect personal information directly from children under 16. If you believe a child has provided personal information to us, contact us and we will take appropriate steps to delete it.
11. Where information is processed
TIE is based in the United States. We currently host our applications and store Customer Data with a cloud provider in the European Union. Some service providers, such as payment and AI providers, may process information in the United States or other countries. As our services grow, we may add hosting locations, including in the United States, and we will update this notice when we do. Wherever information is processed, we apply the protections described in this notice.
12. Changes
We may update this notice as our services, providers, and legal obligations change. We will post the revised notice here and update the effective date. When a change is material, we may provide additional notice through the relevant service, account contact, or another appropriate channel.
13. Contact us
Contact The Idea Experience LLC with a privacy question or request at [email protected].
Please use “Privacy request” in the subject line and tell us which TIE service or customer organization your request concerns. Do not email passwords or other highly sensitive information.