Skip to content
Brine
Platform
Solutions
Who we serveFinancial ServicesRegional banks, RIAs, fintechs, insurersHealthcarePayers, providers, digital healthManufacturingPrecision shops, OEMs, contract manufacturersDefense & GovernmentCMMC L2 subs, primes, AI-native defenseManaged Agent ProvidersConsultancies, agencies, specialist firms
PricingResources
About
About BrineOur StoryHow Brine beganMeet the TeamThe people behind Brine
Scope a pilot
Back to BrineLegal

Privacy Policy

Version 2.0 · Draft · August 17, 2026

Summary

This policy replaces the version dated March 31, 2026. It describes how Brine collects, uses, and shares personal data across our websites (including brine.ai), our sales and marketing activities, and the accounts through which customers and partners access the Brine platform.

When customers or their end customers submit content to the platform, Brine’s handling of that content is governed by our Data Processing Addendum and the applicable customer agreement, not by this policy.

This Privacy Policy describes how Brine AI, Inc., a Delaware corporation (“Brine,” “we,” “us”), collects, uses, and shares personal data. It covers our websites (including brine.ai), our sales and marketing activities, and the accounts through which customers and partners access the Brine platform (the “Platform”).

One important distinction up front. When we operate our websites and manage your account, Brine decides how and why personal data is used; we act as a “controller” (or “business”). When customers, Managed Automation Providers, or their end customers submit content to the Platform, Brine processes that content on the customer’s behalf and under its instructions; we act as a “processor” (or “service provider”). Our processing of platform content is governed by our Data Processing Addendum and the applicable customer agreement, not by this policy. If your data is in a Brine customer’s tenant, direct privacy requests to that customer; we assist them under the DPA.

1. Personal Data We Collect

Account and contact data. Name, business email, organization, role, and login credentials when you create an account, register as a partner or referrer, or contact us.

Commercial data. Order details, subscription tier, and billing contact information. Payment card data goes to our payment processor; we do not store card numbers.

Usage and device data. Log data, IP address, browser type, pages viewed, and interactions with our websites and the Platform’s administrative surfaces.

Communications. Messages you send us, including support requests and marketing responses.

Partner program data. Deal registrations, including prospect business contact details submitted by referrers and partners, and tax documentation (W-9/W-8) required for payouts.

We do not collect personal data from the contents of customer tenants for our own purposes, and we do not use Customer Content to train AI models.

2. How We Use Personal Data

We use personal data to provide and secure the websites and the Platform, administer accounts and subscriptions, process payments and partner payouts, respond to inquiries, send service and administrative notices, market our services to business contacts (with opt-out honored), comply with law, and protect our rights. Where GDPR applies, our legal bases are performance of a contract, legitimate interests (such as securing our services and B2B marketing), compliance with legal obligations, and consent where required.

3. How We Share Personal Data

We share personal data with: service providers and subprocessors that host and support our services (see the subprocessor list at brine.ai/subprocessors), under contracts restricting their use of the data; partners or referrers involved in your purchase, limited to what the relationship requires; professional advisors; authorities where required by law; and a successor in a merger, acquisition, or asset sale.

We do not sell personal data and we do not share it for cross-context behavioral advertising.

4. Cookies and Analytics

We use cookies and similar technologies for authentication, security, and preferences, and analytics to understand how our websites and services are used. We do not use advertising cookies or tracking pixels for cross-context behavioral advertising. You can control cookies through your browser settings; essential cookies are required for the services to function.

5. Data Retention

We retain account data for the life of the account plus twenty-four (24) months, billing records as required by tax law, and marketing contact data until you opt out. Platform content retention follows the customer agreement and DPA, including the fifteen (15) day post-termination export window.

6. Security

We maintain administrative, technical, and organizational safeguards including encryption in transit and at rest, tenant isolation, role-based access controls, multi-factor authentication for administrative access, and audit logging. Details live in our Trust Center at brine.ai/trust. No system is perfectly secure; we notify affected parties of breaches as required by law and the DPA.

7. International Transfers

Brine is based in the United States and processes data there. Where we transfer personal data from the EEA, UK, or Switzerland, we rely on Standard Contractual Clauses and equivalent safeguards, as described in our DPA.

8. Your Rights

Depending on your jurisdiction, you may have rights to access, correct, delete, or receive a copy of your personal data, to object to or restrict processing, and to opt out of marketing. California residents have the rights provided by the CCPA/CPRA; residents of Colorado, Connecticut, Virginia, Utah, and other states with comprehensive privacy laws have analogous rights; EEA/UK residents have GDPR rights, including complaint to a supervisory authority. Exercise rights by emailing privacy@brine.ai. We verify requests and respond within the time required by law. We do not discriminate against you for exercising your rights.

9. Children

Our services are for business use and are not directed to anyone under 18. We do not knowingly collect personal data from children.

10. Changes and Contact

We will post updates at this URL with a new effective date and notify account holders of material changes at least 30 days in advance. Questions and requests: privacy@brine.ai or Brine AI, Inc., 382 NE 191st St, Suite 82136, Miami, FL 33179.

Version History

VersionEffective Date
1.0March 31, 2026
2.0 (draft)TBD
Your tenant·Your keys·Your data
Brine

The agentic orchestration platform for regulated industries.

SitePlatformCompareCustomersPricingResources
SolutionsFinancial ServicesHealthcareManufacturingDefense & GovernmentManaged Agent Providers
AboutOur StoryMeet the TeamMAP Program
LegalPrivacy PolicyTerms of ServiceMAP AgreementReferral Program

Brine maps your program to SOC 2, ISO 27001, ISO 27701, ISO 42001, and CMMC L2, and ships them as governance frameworks in-platform. (wording pending attestation confirmation)

© 2026 Brine AI, Inc.sales@brine.ai·(954) 247-8565