Privacy policy
Last updated September 25, 2026. Haver AI Inc., doing business as Skovos ("Skovos", "we"), operates the Skovos Governance connector. This policy covers data processed through the connector.
What we collect
- Governance records you create: agent registrations (identifier, name, accountable owner, role, permission scopes), permission decisions, audit records and stop events.
- Authentication data: OAuth client registrations and access tokens issued to Claude or ChatGPT on your behalf, and a hash of your organization's access code. We never store the access code itself.
- Operational logs kept by our hosting provider for security and reliability.
What you must not send
The connector is designed for governance metadata, not patient data. Do not submit protected health information (PHI) or other patient identifiers. Audit records that appear to contain patient identifiers are rejected. We do not sign business associate agreements for this connector at this time.
How we use data
Only to provide the service to your organization: storing your registry and audit trail, answering tool calls, and producing signed evidence. We do not sell data, use it for advertising, or use it to train models.
Isolation and retention
Each organization's data is stored separately and is only reachable with that organization's access code. We keep records until your organization asks us to delete them; audit records are append-only by design, so deletion removes an organization's data as a whole.
Subprocessors
Cloudflare, Inc. hosts the service (Workers, D1, KV) in the United States. When you use the connector from Claude or ChatGPT, those providers process your prompts and the tool results under their own terms.
Your choices
You can disconnect the connector at any time in Claude or ChatGPT, which stops further access. To export or delete your organization's data, email will@skovos.ai.
Contact
will@skovos.ai