Privacy Policy
Effective July 14, 2026
What we collect
- Account and billing information, including name, email, organization, subscription state, and payment-provider identifiers. Card details are handled by Stripe and are not stored by us.
- Brand settings you provide, such as voice, audience, guardrails, approved examples, and feedback.
- Slack installation metadata: workspace, channel, thread, user, app, and installer identifiers; granted scopes; encrypted bot credentials; installation and uninstall timestamps.
- App-generated meme drafts, captions, approval or rejection decisions, and operational usage/cost metadata.
- Security and reliability logs such as request time, error code, and truncated network identifiers.
Slack data and zero-copy processing
When a user messages the app or invokes “meme the room,” we request only the bounded thread or channel context needed to answer. That message text is sent to the configured AI inference service and held in process memory for the request. We do not write raw Slack message bodies, the reconstructed thread transcript, or synthesized channel situation into our conversation, run, event, share, or approval records. Slack remains the transcript system of record.
We retain tenant-scoped workspace/channel/thread identifiers so we can route replies and decisions correctly. Generated meme captions and images, brand settings, and approval outcomes are Meme the Situation product data and may be retained as described below.
How we use data
We use data to authenticate and operate the service, apply brand context, generate and render drafts, present approval controls, learn from explicit customer decisions, meter usage, prevent abuse, debug failures, and comply with law. We do not use customer Slack messages to train our own models or sell them to advertisers.
AI providers and subprocessors
Meme generation uses Google Gemini through Google Cloud Vertex AI. Requested text may be transmitted to Google for inference under our configured Google Cloud service terms. The service also uses Render for application hosting, Supabase for tenant-scoped data storage, Stripe for billing, and Slack for the integration surface. AI output may be inaccurate or unsuitable and always requires human review.
Tenancy, residency, and security
Customer records are logically separated by server-injected organization identifiers and database row-level controls. OAuth tokens are encrypted at rest and access is limited to service operation. Service providers may process or store data in the United States and other regions in which they operate; our Vertex AI inference path is currently configured in the United States. Contact us for current subprocessor or residency details.
Retention
- Slack message text: not durably retained by Meme the Situation.
- Slack credentials and installation metadata: retained while installed; credentials are revoked or deleted on uninstall, with security backups expiring through the normal backup cycle.
- Generated drafts, brand settings, and approval history: retained while the customer account is active or until deletion is requested.
- Operational and security logs: generally retained for up to 30 days, unless a longer period is needed to investigate abuse, meet legal obligations, or protect the service.
- Billing records: retained as required for tax, accounting, and fraud-prevention obligations.
Your choices and requests
Workspace owners and authorized users may request access, correction, export, restriction, or deletion by emailing hello@memethesituation.com. Include the workspace and account email so we can verify authority. You can uninstall the Slack app at any time; uninstall revokes its ability to read or post in the workspace. We aim to acknowledge support and privacy requests within two business days.
Changes and contact
We may update this policy as the product or legal requirements change. Material changes will be dated here. Questions may be sent to hello@memethesituation.com.