Novo North Privacy Policy
How North handles personal information, providers, sharing, and privacy requests.
Last updated: September 18, 2026
Privacy Policy
Effective date: September 18, 2026
Novo Industries, Inc. ("Novo," "we," or "us") operates Novo North. This notice explains how we handle personal information from visitors, members, meeting participants, and others whose information is used in the service. It describes our practices; it is not consent to every form of processing.
We use information to provide the workspace, carry out requested work, maintain security and reliability, and administer accounts. We do not sell personal information or share it for cross-context behavioral advertising. We do not use customer inputs, outputs, conversations, or uploaded files to train models that we develop or fine-tune. Provider practices are described below.
When an organization uses North, it determines the work and information it supplies. Where we process that content on its instructions, its agreement with us and its own privacy responsibilities also apply. Novo is responsible for the processing it determines, including account administration, billing, security, and product operations.
1. Information we process
| Information | Sources and examples |
|---|---|
| Account and workspace information | You, your organization, and sign-in providers supply names, email addresses, profile details, timezone, membership, workspace name, website, and billing information. Stripe processes payment details; North does not store full card numbers. |
| Work and content | You and authorized colleagues supply task messages, files, business records, app content, Memory, repository material, and instructions. We also store generated results, tool interactions, usage, and relevant context needed to continue work. Content may include personal or sensitive information. |
| Meetings | Participants supply live audio/video, invitations, and meeting content. North saves transcripts and recaps, not meeting audio/video recordings. Uploaded audio and video files are processed and stored separately as files. |
| Connections and saved information | Connected services provide authorized records and connection metadata. Saved information can include logins, keys, and private values you supply. Helper browser sessions process visited pages, cookies, and login state during the task. |
| Technical and usage information | Requests and devices provide network, browser, operating-system, timing, and usage information. Native apps also report app version, installation identifiers where needed, network state, and launch, deep-link, permission, or biometric-confirmation outcomes. These outcomes are not fingerprint or face templates. |
Optional onboarding research sends your workspace name and public website to search and AI providers to draft context. Accepting the draft during onboarding saves it as workspace context; provider processing and diagnostics can occur before onboarding is completed.
Workspace business tables, app documents, and original files use dedicated workspace infrastructure. Account records, task conversations, extracted content, Memory, permissions, and operational records also use shared infrastructure with workspace and member access controls.
2. Purposes and legal bases
We process information to deliver helper work, files, apps, meetings, search, and Workflows; preserve useful context; manage subscriptions and usage; provide support and service communications; prevent abuse; diagnose errors; and improve service usability and reliability.
Where EEA or UK data-protection law applies and Novo determines the processing, the basis depends on the purpose:
- Contract: Information needed to provide a service you contract for, including account access, requested work, and billing. Without required information, we may be unable to provide the relevant feature.
- Legitimate interests: Operating the service for organizational customers and their members, protecting accounts, responding to support requests, and improving reliability and usability, where permitted. You may object to processing based on these interests.
- Legal obligations: Keeping required accounting records and responding to binding legal requirements.
- Consent: Processing for which consent is required. Acknowledging this notice does not supply that consent, and consent can be withdrawn without affecting earlier lawful processing.
North uses AI to generate and analyze content, and automated systems administer usage limits and service access. These processes can produce errors. Contact us about a disputed account decision or to exercise rights concerning automated processing under applicable law.
3. Service providers and other recipients
Helper runtime
Your helper runs on Novo Agents, Novo's own hosted runtime. It processes task context, messages, files, tool interactions, and managed computer and browser activity. Its model, media, search, browser, and infrastructure providers are identified in the Novo Agents subprocessors disclosure, incorporated into this notice. Not every task uses every provider. Provider retention and training restrictions depend on the applicable service terms and configuration; this notice does not promise that all providers retain no data.
North service providers
| Provider | Information and purpose |
|---|---|
| Google (Vertex AI) | Workspace content and search queries for content analysis, enrichment, embeddings, retrieval, and meeting recaps. |
| ElevenLabs | Uploaded audio and video content for transcription during file processing. Helper media generation is covered by the Novo Agents disclosure. |
| AssemblyAI or Deepgram | Meeting audio sent through LiveKit Inference for real-time transcription. |
| Perplexity | Workspace name and public website in onboarding searches. |
| Fireworks AI | Public website text and search results for onboarding drafts; the first task message for generating a task title. |
| Vercel | Requests, application data, and execution state for hosting, durable workflows, isolated code execution, and AI Gateway routing of Workflow checks. |
| TypeSafe AI (through Vercel AI Gateway) | Workflow-selected text or JSON evidence, questions, and evaluation criteria for condition checks, choices, and scores. |
| Supabase | Account and workspace records, content, and files for database and storage services. |
| WorkOS | Sign-in identity, authentication events, and session state for authentication and account access. |
| Merge | Connected-service credentials, metadata, and authorized requests and responses for integrations. |
| Google Cloud Storage | Temporary staging of larger files for Vertex AI processing; cleanup is attempted after processing. |
| LiveKit | Meeting audio/video transport, session metadata, transcription infrastructure, and webhooks. |
| Stripe | Payment, subscription, and billing information. |
| Google and Microsoft | Identity and profile information when you choose those sign-in methods. |
| ConvertAPI | Document and image content for conversion, previews, and thumbnails. |
| Reducto | Document and image content accessed through short-lived signed URLs for parsing and extraction. |
| Resend | Email addresses, message content, and delivery status for transactional communications. |
| Sentry | Errors, diagnostics, and performance traces, including selected AI input and output text for onboarding drafts and task titles. |
| PostHog | Account identifiers, email and display name, workspace metadata, usage events, feature flags, and masked session replay for product operations and diagnostics. |
Independent third-party services
Google Maps Platform receives map areas, zoom levels, coordinates, referrers, and place-search text directly from your browser when you use map-enabled apps. Google acts as an independent controller under its Controller–Controller Data Protection Terms and Privacy Policy.
Customer-directed destinations
Requested work can send information to connected accounts, custom tool services, or websites. These destinations follow their own terms and privacy practices. GitHub receives repository contents, commit metadata, and identifiers through the GitHub App integration when you use connected repositories. A connected service can receive information even when it is not listed as a North service provider.
We may also disclose information to professional advisers, in response to lawful requests, to protect people or legal rights, or in connection with a business transfer. Any successor's processing remains subject to applicable law and notice requirements.
4. Sharing, meetings, and private inputs
Personal task conversations are not shared with colleagues through workspace membership. Members can deliberately share supported files, apps, records, and Memory. Public links to supported content can make it available to people outside the workspace. Sharing an app does not automatically share all linked resources or another member's connected account.
Online meeting notes initially grant access to the host and participating North members. In-person notes are private unless shared; listing a person does not grant access. The person arranging a meeting is responsible for appropriate participant notices and permissions.
Saved information is encrypted at rest and owner-private in North. Authorized delivery infrastructure can decrypt and use it. Enabling a key for code allows authorized programs to read and copy that key. Browser sessions are task-scoped: live sessions can reuse website login state, but North does not configure persistent browser profiles. Removing saved information or access does not erase information already received by an external service.
5. Cookies, analytics, and diagnostics
We use cookies and browser storage for sign-in, preferences, product analytics, and feature operation. These uses are distinct from advertising: North does not use advertising pixels or targeted-advertising technology. Browser controls can limit storage, but blocking necessary cookies can prevent sign-in or other features from working.
PostHog usage analytics can operate on public pages. Session replay starts disabled and begins only after sign-in, subject to project settings. Replay is configured to mask text, input values, and element attributes, omit network bodies and headers, and block saved-information and live-browser surfaces. URLs are sanitized. This masking applies to replay, not every information category sent to analytics or diagnostics.
Sentry uses credential and request-data filters, with default personal-information capture disabled. Selected AI traces still include onboarding source text, first task messages used for titles, and generated output. Operational events and account-linked analytics are not anonymous. Contact us about applicable analytics choices or privacy objections.
6. Retention and deletion
We retain information for the service purposes above, taking account of your use, deletion requests, shared-content ownership, security needs, legal obligations, and provider retention. There is no single retention period for every record.
- Workspace content: Tasks, files, records, Memory, and meeting notes persist until deleted through their applicable lifecycle or workspace deletion. Supported Trash and history features retain recoverable copies. Leaving a workspace does not necessarily delete shared contributions.
- Canceled workspaces: The cancellation lifecycle provides 30 days of limited viewing and export, followed by a paused period. Permanent workspace deletion is scheduled at day 90 unless the workspace is reactivated. This is separate from a privacy erasure request.
- Other records: Billing records may be kept for up to seven years for accounting and legal obligations. Security, audit, diagnostic, backup, and provider records can have different retention periods. Deleting an item from the active workspace does not immediately erase every backup or external copy.
- Saved information and browser sessions: Saved values remain until removed or their owner/workspace is removed. Live browser sessions have limited lifetimes; authorized saved logins may be used again in a new session.
Export available files through the service. Contact us for access, erasure, or portability requests that the interface does not support. We may retain information needed to comply with law, resolve disputes, or protect legal rights.
7. Security and international processing
Our Security page describes access controls, permissions, and recovery. No service can guarantee absolute security.
Novo operates from the United States. Our providers may process information in the United States and other countries. Location and transfer arrangements depend on the provider and service; a provider's certification does not establish a certification for Novo. Contact us for the applicable processing terms and international-transfer safeguards, including any required contractual arrangements. We do not promise a particular data-residency location unless agreed in writing.
8. Your choices and rights
Depending on applicable law, you may request access, correction, deletion, a portable copy, restriction of processing, or object to certain processing. Where relevant, you may withdraw consent and challenge qualifying automated decisions. You may complain to your local data-protection authority, including the UK Information Commissioner's Office.
California and other US state laws may also provide rights to know the categories, sources, purposes, and recipients of personal information; limit qualifying uses of sensitive information; and opt out of sale, targeted-advertising sharing, or certain profiling. We do not sell personal information or share it for cross-context behavioral advertising. The categories we process include identifiers, commercial and professional information, electronic activity, communications and audio/video, and information contained in customer content, which can include sensitive information.
Send requests or appeals to privacy@novonorth.com. We may need to verify your identity or an authorized agent's authority. We respond within applicable legal deadlines and explain permitted extensions or reasons a request cannot be fulfilled. We do not discriminate for exercising privacy rights. For organization-controlled content, we may direct or coordinate your request with that organization.
9. Children, updates, and contact
North is intended for adults aged 18 or older. If you believe a child has provided personal information inappropriately, contact us so we can investigate and take appropriate action.
We will notify you of material changes and explain new processing purposes before they begin, obtaining consent where required by law. Updating this notice does not itself provide consent.
Novo Industries, Inc.
- Email: privacy@novonorth.com
- Mail: 169 Madison Ave, #67931, New York, NY 10016
- Phone: (929) 207-7393