Privacy Policy
This policy describes what Trood collects, why, and what you can ask us to do about it. It is written to be read rather than to be survived, and it describes what our systems actually do today.
Who we are
Trood is operated by Rizq Management Software LTD, 9 Al Khatem Tower, Abu Dhabi Global Market. Where this policy says "we", that is the company. You can reach us at info@trood.com about anything in this document.
What this policy covers
This policy covers trood.com and the Trood products reached from it: Product Engine (engine.trood.com), Growth (growth.trood.com), Settlers (settlers.tech), Launchpad, People (people.trood.com), Spreddit, Lead Energy, Creative Pipeline, Agentic, Tree and Mentors.
Some pages on trood.com are still served from our previous website platform while we move them. Those pages may set their own cookies and are covered by this policy in the same way.
Where a product has its own terms for a paid service, those terms sit on top of this policy and do not replace it.
What we collect, and when
We do not require an account to read trood.com. Most visitors give us nothing at all.
When you use the self-service adviser on the home page, we store the description of your goal that you typed, the products we suggested in response, the time, a one-way hash of your IP address and your browser's user-agent string. We store this whether or not you go on to leave a contact, because knowing what people ask for is how we decide what to build.
The IP address is hashed with a secret and never stored in a form we can reverse. It exists so we can recognise a flood of automated submissions, not so we can identify a visitor.
If you then choose to leave a contact, we store the email address or phone number you give us and the fact that you chose email or WhatsApp. We send the same information to an internal Trood chat so that a person sees it.
If you book a call, that booking is handled by Calendly and is subject to their privacy policy as well as this one.
If you create an account in one of the products, that product collects what it needs to run: your name, email, and whatever you put into the product itself. Payment details, where a product takes payment, are handled by the payment provider and are not stored by us.
Artificial intelligence, and what happens to what you write
Two parts of Trood send your text to a language model. We would rather tell you exactly which.
The self-service adviser on trood.com sends the goal you typed to OpenAI, which returns a list of our products it considers relevant. We send only the text you wrote. We do not send your contact details, and we do not attach an identifier.
Trood Profile includes an AI assistant called Boris. We store your conversations with Boris, both the messages you send and the responses you receive. Authorized personnel may review that content for support, quality, safety and abuse prevention. Access is restricted to named staff and every read is logged.
A member of our team may reply to you directly inside the same conversation, in place of or alongside Boris. Any such message is clearly identified in the product as sent by a human, and is never presented as coming from Boris or any other AI feature.
Conversation data is kept in line with the retention practice described below. You can ask us to delete it.
Why we are allowed to hold it
Where the law requires us to have a lawful basis, ours is one of the following. You gave it to us and asked us to do something with it, which is consent or the performance of a contract. Or we need it to run the service safely, which is our legitimate interest, and we have weighed that against your interests rather than assuming it wins.
We do not sell personal information. We do not rent it. We do not use it to build advertising profiles.
Who else sees it
We use a small number of service providers, and each one sees only what it needs:
Vercel hosts the website. Railway hosts our database. OpenAI processes the adviser text described above. Telegram carries the internal notification when you leave a contact. Calendly handles call bookings. Google handles documents we link to.
Some of these are outside the jurisdiction you are in. Where the law requires safeguards for that transfer, we rely on the standard contractual protections the provider offers.
We will also disclose information where we are legally required to, and to protect our rights or someone's safety. If we are ever compelled to hand over your data and are permitted to tell you, we will.
Cookies
The pages we serve ourselves set no cookies and load no third-party trackers. There is no analytics script on them.
Pages still served from our previous website platform do set their own cookies, including ones used for security and traffic filtering. Those will go as those pages are replaced.
How long we keep things
Adviser submissions and contact details are kept while they are useful for the conversation you started, and for our own record of what people ask us for. We review them rather than keeping them indefinitely by default.
Product account data lives for as long as the account does. When an account is deleted, conversation history and content attached to it are deleted with it.
If you would like something removed sooner, ask.
What you can ask for
You can ask us for a copy of what we hold about you, to correct it, to delete it, to restrict what we do with it, or to object to it. You can withdraw consent at any time, which does not undo what was lawful before you withdrew it.
Write to info@trood.com. We will answer within 30 days. We may need to check who you are first, which we will do using information we already hold rather than by asking for new documents.
If you think we have handled your data badly, you are entitled to complain to your local data protection authority, and we would rather you told us first so we can fix it.
Children
Trood is for business use and is not directed at children. We do not knowingly collect personal information from anyone under 16. If you believe a child has given us information, write to info@trood.com and we will delete it.
Security
Access to personal data is limited to people who need it. Administrative access to conversation content is restricted to named staff and logged. Credentials are held in managed secret stores rather than in code, and connections to our database are encrypted.
No system is perfectly secure, and we would rather say that than imply otherwise. If we discover a breach affecting your data, we will tell you and the relevant authority as the law requires.
Changes
We will post any change on this page and update the date below. If a change materially affects your rights, we will do more than post it quietly.
Questions about this document: info@trood.com. See also the Privacy Policy and User Agreement.