Privacy

Privacy Policy

This policy explains how BidShield AI handles account, billing, support, and product data for the early-access SaaS.

Last updated: June 10, 2026

BidShield AI is an AI-assisted workflow tool. It does not provide legal advice, cybersecurity certification, government contracting advice, or CMMC certification. Human review is required before relying on any output.

Scope

This Privacy Policy applies to BidShield AI websites, dashboards, support interactions, and related services. The product is intended for public or otherwise non-sensitive solicitation review during the MVP phase.

Do not upload classified information, Controlled Unclassified Information, export-controlled technical data, protected customer data, or sensitive personal information.

Information We Collect

  • Account information, such as name, email address, authentication identifiers, organization name, and workspace membership.
  • Billing information handled through Stripe, including plan, subscription status, customer ID, and payment status. BidShield AI does not receive full card numbers.
  • Product content you submit, such as public solicitation text, opportunity notes, company profile fields, analysis results, export metadata, and evidence-tracking records.
  • Usage and technical information, such as pages visited, authentication events, errors, approximate timestamps, device/browser data, and security logs.
  • Support information you provide when you contact us, including message content and attachments you choose to send.

How We Use Information

  • Provide, secure, maintain, and improve the BidShield AI service.
  • Authenticate users, manage workspaces, enforce billing gates, and process subscription events.
  • Generate AI-assisted opportunity analysis, compliance matrices, reports, and related workflow outputs.
  • Respond to support, billing, deletion, security, and account requests.
  • Monitor abuse, troubleshoot errors, protect against unauthorized access, and comply with legal obligations.

AI Processing

BidShield AI may send submitted opportunity text and related prompts to configured AI providers to generate analysis. Users are responsible for ensuring submitted content is permitted for that processing.

The service is not designed for CUI, classified information, export-controlled technical data, or sensitive customer data. If your opportunity involves controlled data, do not upload it to this MVP.

Service Providers

We use third-party service providers to operate the product. These may include Vercel for hosting, Supabase for authentication and database services, Stripe for billing, Resend for email delivery, and configured AI providers for analysis.

Data Retention and Deletion

We retain account, workspace, billing, and product records for as long as needed to provide the service, support customers, maintain security, resolve disputes, and meet operational or legal requirements.

You may request deletion of account or workspace data by contacting support. Some records may remain in backups, audit logs, payment records, or records we are required to keep.

Your Choices

  • You can choose what public opportunity content to submit.
  • You can cancel paid subscriptions according to the Refunds and Cancellation policy.
  • You can request account deletion, workspace deletion, or correction of inaccurate account information.
  • You can avoid submitting sensitive or controlled data that is outside the MVP boundary.

Contact

Privacy, support, deletion, and security questions can be sent to support@bidshieldai.com.