Privacy Policy

Advisedly Compliance LLC — Last updated March 25, 2026

1. Introduction

Advisedly Compliance LLC ("Advisedly," "we," "us," or "our") operates the advisedly.ai compliance management platform. This Privacy Policy describes how we collect, use, disclose, and protect information when you use our platform, website, and services.

By accessing or using our services, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use our services.

2. Information We Collect

Account Information

Name, email address, company name, phone number, and job title provided during registration or lead capture.

Compliance Data

Vulnerability scans, STIG checklists, POA&M items, policies, evidence files, assessments, and other compliance artifacts you upload or create on the platform.

Usage & Technical Data

Pages visited, features used, session duration, IP address, browser type, and device information. We use session cookies for authentication only — no third-party tracking cookies.

3. How We Use Information

  • Service delivery: processing compliance data, generating AI-powered content, running scans, and producing reports.
  • AI processing:compliance data is processed by a third-party AI service provider (selected at deployment time per your tenant's tier) when you use AI features. The selected provider does not use prompts or responses to train models, per their enterprise terms.
  • Account management: authentication, authorization, and notifications.
  • Product improvement: aggregated, anonymized usage metrics.
  • Security: fraud prevention, access logging, and audit trails.

4. Data Sharing

We do not sell personal data. We share data only with sub-processors necessary to deliver our services (currently Render for hosting and a tier-selected AI service provider for AI processing), or when required by law.

5. Data Retention

Account and compliance data is retained during your active subscription plus a 30-day export window after cancellation. AI interaction logs are automatically purged after 90 days. Lead capture data is retained for up to 2 years or until you request deletion.

6. Data Security

We protect data with encryption in transit (TLS 1.2+) and at rest (AES-256), JWT-based authentication with token rotation, role-based access control, and regular security assessments. All data is stored in the United States.

7. Your Rights

You have the right to:

  • Access, correct, or delete your personal data
  • Export your data in standard formats (JSON, CSV, PDF)
  • Opt out of AI processing features
  • Restrict processing of your data

To exercise these rights, contact us at privacy@advisedly.ai. We respond within 30 days.

8. Changes to This Policy

We may update this policy with 30 days' notice via email or platform notification. Continued use after changes constitutes acceptance.

9. Contact Us

Advisedly Compliance LLC
1309 Case Rd, Prospect, TN 38477
privacy@advisedly.ai