parsons/ Legal
Parsons Platform

Privacy Policy

Last updated: August 8, 2026

This policy explains what the Parsons platform and its apps collect, how we use it, who we share it with, and the choices you have. We hold the minimum needed to run the Services for you. Product-specific details are in their own sections below.

What we collect

  • Account information — your email and authentication identifiers, and (if you subscribe) billing details handled by our payment processor.
  • Content you create or connect — the data you put into or connect to each app: journal entries, contacts, notes, logs, and the accounts you link (financial, social, telephone, music).
  • Conversations — the messages you exchange with the AI assistant, including the results of actions it takes for you, which we store as your history.
  • Usage & operational data — basic telemetry, request logs, and security/audit records (such as timestamps and IP addresses) needed to operate, secure, and support the Services.
  • How you found us — if you arrive through a campaign or referral link, we keep those tags (a referral code and standard utm_ parameters) in a first-party cookie on parsons.ai for 60 days and, if you create an account, record which link sent you. That is the only cookie our marketing pages set: no advertising trackers, no third-party cookies, and nothing that identifies you before you sign up.

We never collect or store the login credentials for accounts you connect through a provider (for example your bank) — those are handled directly between you, that provider, and the institution.

How we use it

  • To provide each app's features and answer your questions about your own data;
  • To take actions you direct the assistant to take on your behalf;
  • To operate, secure, support, and improve the Services;
  • To process billing and prevent abuse;
  • To communicate with you about the Services.

AI processing

When you interact with the AI assistant, the relevant parts of your content are sent to our AI providers to generate a response for you — for example, when you ask about your finances, the assistant sends the financial data needed to answer. Your data is used to answer you; it is not sold and not used to train third-party models. Different features may use different AI providers — notably, text conversations and real-time voice calls are handled by different providers (see the table below). Our AI providers are Anthropic and Google.

This includes content written by other people that you ask the assistant to work with. When you ask Social to read or reply to the comments on your posts, the text of those comments and the commenter's handle are sent to Anthropic or Google so the assistant can summarize them or draft your reply. That content is processed to answer you; under our agreements with those providers it is not used to train their models. See People who comment on your posts for how we handle data about people who are not our users.

Third-party providers

We share data with the service providers needed to run the Services, under contract and limited to what each needs. The main ones:

ProviderPurposeData involved
CloudflareHosting, storage, networkAll Service data (stored and in transit)
AnthropicAI assistant (text)Your messages and the content needed to answer them, including comments on your social posts that you ask the assistant to read or reply to
GoogleAI voice (phone calls) and AI text modelsReal-time call audio for assistant calls; your messages and the content needed to answer them, including comments on your social posts that you ask the assistant to read or reply to
PlaidBank connectivity (Money)Read-only financial account data
StripePayments & billingEmail and subscription/billing details
TwilioTelephone service (Assistants)Call routing and caller phone number
ResendTransactional emailRecipient address and message content
AppleApple Music (Music)Your Apple Music library actions
Meta (Facebook, Instagram, Threads)Posting & engagement (Social)Content you publish, and the Pages/accounts you connect and their engagement data
TikTokPosting & engagement (Social)Content you publish and your drafts, your account profile and posting options, your own posts and their metrics, comments on your own posts, and public posts that mention your business
LinkedInPosting & page analytics (Social)Content you publish, your profile, and the Pages you administer
X (Twitter)Posting & engagement (Social)Content you publish and your own posts and metrics
YouTube / GoogleVideo publishing, comments and analytics (Social)Videos you upload, comments on your own videos, your channel's analytics, and your YouTube channel authorization

Where you supply your own provider keys, your data goes to the provider you choose. A current list of sub-processors is available on request; we will update this policy as it changes.

How we protect it

Traffic is encrypted in transit (TLS). Sensitive credentials and access tokens — such as bank connection tokens and connected-account tokens — are encrypted at rest. Access to your data is scoped to your account and, for business accounts, isolated per organization. We maintain administrative, technical, and physical safeguards appropriate to the data we hold. No system is perfectly secure, and we cannot guarantee absolute security.

Sharing & selling

We do not sell your personal data, and we do not share it for cross-context behavioral advertising. We share data only with the providers above (to run the Services), when you direct us to (for example publishing a post you write), or where required by law or to protect the Services and our users.

Your choices & rights

  • Disconnect any connected account at any time — this revokes our access to that provider going forward.
  • Access, correct, or delete your data — you can delete your account and request access to or deletion of your data by contacting us at hello@parsons.ai. We honor deletion requests across the Services and will confirm when complete.
  • State privacy rights — depending on where you live (for example, California residents under the CCPA/CPRA), you may have rights to know, access, delete, correct, and to not be discriminated against for exercising them. Exercise them using the contact above; we do not sell or "share" data as those laws define it.

Retention

We keep your data while your account is active. After you delete your account or request deletion, we delete or anonymize your data within a reasonable period, except where limited operational, security, or legal records must be retained. Some logs (such as security and audit records) are kept for a limited time to protect the Services.

Per-product data

Moneymoney

Money retrieves your account balances, transactions, holdings, and liabilities on a read-only basis through Plaid from the institutions you connect, plus anything you enter manually. Plaid's own collection and use of your data is governed by Plaid's End User Privacy Policy. Bank connection tokens are encrypted at rest; access is read-only and cannot move money.

Journaljournal

Journal stores the entries you write so you can read them and ask the assistant about them. Your entries are private to your account and are not sold or used to train third-party models. When you ask the assistant about your journal, the relevant entries are sent to our AI provider to answer you, as described under AI processing.

Assistants & phoneassistants

For phone assistants, calls are bridged in real time to a telephone carrier (Twilio) and an AI voice provider (Google) to operate the assistant. We do not record calls; call audio is processed live and not stored. We do keep basic call records — such as the caller's phone number, time, and duration — to operate and support the service. If you configure an assistant to interact with callers, see your responsibilities under the Terms.

Socialsocial

When you connect a social account, we store an encrypted authorization token (not your password) so we can publish and engage on your behalf at your direction. We access only what those permissions allow. Disconnecting an account revokes our access going forward. We do not use any of this data for advertising, and we do not sell it or share it with anyone beyond the providers listed above.

The networks Social connects to, and what we access on each:

  • Facebook and Instagram (Meta) — connecting Facebook lists the Facebook Pages you manage and any Instagram professional account linked to one of those Pages. On your instruction we publish posts to those Pages and Instagram accounts, and read back their posts, comments, follower counts and Page/account insights so we can answer your questions about how your content is performing and reply to comments you ask us to reply to. We store the Page access token, the Page and Instagram account IDs, and the account name and profile picture so you can see which account you are operating on.
  • Threads (Meta) — we publish the posts you direct us to publish and read the resulting post's status. We store the account ID, username and profile picture.
  • TikTok — we read your account profile (nickname, username, profile picture, and your follower, like and video counts) and your posting options (allowed privacy levels, and whether your account permits comments, duets and stitches). On your instruction we publish videos and photo posts with the privacy and disclosure settings you choose, or send them to your TikTok drafts for you to finish in the TikTok app. We also read back your own posts and their metrics, the comments left on your own posts, and public posts that mention your business, so we can answer your questions about how your content is performing and draft or send the replies you ask us to send. We store the account ID, username and profile picture so you can see which account you are operating on.
  • LinkedIn — we read your basic profile and the Company Pages you administer, publish the posts you direct us to publish, and read post and Page analytics.
  • X (Twitter) — we publish the posts and replies you direct us to publish and read your own posts, mentions and metrics.
  • YouTube — see the paragraph below.

We retrieve this information when you ask us to and to fulfil the actions you request; we do not build advertising or marketing profiles from it, and we do not use it to train third-party models. You can disconnect any network at any time. Where a network provides a way for an app to revoke its own access we do so at the moment you disconnect; where it does not (currently Instagram and Threads), we delete our copy of the token and tell you where to remove the app in that network's own settings.

Social's YouTube integration uses YouTube API Services. When you connect YouTube, we use your authorization only for the things you ask Social (or your own AI assistant, at your direction) to do on your own channel: upload the videos you direct us to publish and set their title, description, thumbnail and privacy; read and update your own videos and playlists; read, reply to, moderate and delete comments on your own videos; upload captions; and read your channel's own YouTube Analytics. We never read or act on any channel other than the one you connected, and we do not access your viewing history or subscriptions. Every write to YouTube happens either while you are present in Social or a chat with your assistant, or under a standing authorization you grant per channel and per activity in Social's Automation panel and can revoke at any time. What we keep: your encrypted authorization tokens, and a record of each video Social published for you (its id, title, URL and status) so the app can show your history; comment threads and analytics are fetched when you ask and are not stored. All of it is deleted when you disconnect YouTube, and no later than when your account is deleted. By connecting YouTube you agree to the YouTube Terms of Service, and Google's handling of your data is governed by the Google Privacy Policy. You can revoke our access at any time by disconnecting YouTube in Social or through your Google Account security settings.

People who comment on your postssocial

Most of the people whose data passes through Social are not our users. They are the people who comment on a customer's posts on TikTok, Facebook, Instagram, YouTube, X or LinkedIn. When a customer asks the assistant to read the comments on their own posts, the network returns each commenter's handle or display name, the text of the comment, and when it was written, and that text is sent to our AI providers so the assistant can summarize it or draft a reply — see AI processing.

We process that information only to serve the customer whose post the comment was left on, and only for the request they made. We do not build profiles of commenters, we do not combine comments across accounts or networks into a record about a person, and we do not use comment content for advertising or to train any model, ours or a third party's. We do not retain comment text beyond serving the request: we do not keep a comment database of our own, and comments persist only where they appear in that customer's own conversation history with the assistant, which the customer can delete. A reply is only ever posted when a customer asks for it in that conversation — the assistant proposes, the person answers, and nothing is published on its own.

If you commented on a Parsons customer's post and want to know what we hold, or want it deleted, write to hello@parsons.ai. Deleting your comment on the network itself also removes it from what we are able to read. The post and its comments live on that network, and that network's own privacy policy governs them.

Musicmusic

Music connects to Apple Music using an encrypted user token so you can search, view, and manage your library. We may use third-party music services (such as catalog enrichment and search) to find tracks. We access only what your Apple Music authorization allows.

More

Children

The Services are intended for adults (18 and older) and are not directed to children. We do not knowingly collect data from children under 18.

Changes & contact

We may update this policy; material changes will be communicated through the Services and reflected in the "last updated" date above. Questions or privacy requests: hello@parsons.ai.