Last updated · May 8, 2026
Orckera ("we", "us", "our") provides AI-driven risk intelligence for construction projects. This policy explains what data we collect, how we use it, who else processes it, and the rights you have over it.
We collect three categories of information.
When you sign in with Microsoft (or, in future, another supported identity provider), we receive your name, email address, and provider-issued user identifier. This information is used to authenticate you and associate your activity with your Orckera tenant.
When you authorize Orckera to connect to a third-party service (currently Microsoft 365 Outlook and Dropbox), we ingest the data you have explicitly scoped to a project. This includes:
We never access content outside the scope you authorize. You can disconnect any integration at any time, after which ingestion stops immediately.
From the connected service data, we generate derived data: extracted entities (people, subcontractors, activities), commitments, schedule references, expectation tracking, and risk items. This derived information is regenerable from your raw data and configuration.
We do not use your data to train AI models. Your data is processed only to deliver risk intelligence to your account. It is never aggregated with other customers' data for training, fine-tuning, or research. This applies to all sub-processors we use for AI features (see Section 4) — we contractually require equivalent guarantees from them.
Construction project communications regularly contain attorney-client privileged material, claim-related correspondence, personnel matters, and pricing-sensitive documents. We classify each artifact at ingestion and quarantine privileged or claim-sensitive content from cross-artifact derivations. You can mark or override classifications at any time. Synthesis outputs inherit the sensitivity of their inputs, and privileged material is excluded from any feature that aggregates content across multiple artifacts.
We use the following sub-processors to operate the Service:
We will provide reasonable advance notice of changes to our sub-processor list when those changes materially affect the processing of your data.
We retain your data for as long as your account is active. When you disconnect a connector, we soft-delete artifacts ingested by that connector and purge the underlying object storage within 30 days unless legal hold or audit requires otherwise.
You can request export or full deletion of your data by emailing [email protected]. We will respond within 30 days.
Depending on your jurisdiction, you may have rights including:
To exercise these rights, contact [email protected].
Your data may be processed in regions where our sub-processors operate, which may include the United States and the European Union. Where transfers occur outside your region, we rely on appropriate safeguards including contractual clauses and equivalent data protection arrangements.
We use a single first-party session cookie (HttpOnly, Secure, SameSite=Lax) to keep you signed in. We do not use third-party advertising cookies, tracking pixels, or cross-site analytics.
We may update this policy. Material changes will be communicated by email to active account owners at least 30 days before they take effect. The "Last updated" date at the top of this page reflects the most recent revision.
Questions about this policy or about how we process your data: