Privacy Policy

Last updated: August 20, 2026

1. Who operates PatchyHub

PatchyHub is operated by Micheal Pacitto in Ontario, Canada. In this policy, “PatchyHub,” “we,” “us,” and “our” refer to Micheal Pacitto operating as PatchyHub. Questions and privacy requests can be sent to privacy@patchyhub.com.

2. Scope

This policy applies to patchyhub.com, the PatchyHub application, its public shared views, and related support and transactional communications. It does not replace the privacy policies of HighLevel or other services that you choose to connect to PatchyHub.

3. Information we process

3.1 Account and workspace information

  • Name, email address, profile information, and authentication records.
  • Workspace names, memberships, invitations, and member roles.
  • Authentication is provided through Supabase, including optional Google sign-in. Passwords are not available to PatchyHub in plaintext.

3.2 Customer content

  • Systems, modules, assets, workflows, maps, releases, notes, training links, custom fields, and other documentation you create or import.
  • HighLevel configuration and metadata imported through spreadsheets, Browser Connect, or a connected HighLevel account.
  • Chat messages, AI-generated results, corrections, and related usage records.
  • Feedback, support messages, and files you deliberately submit.

3.3 Connections and billing

  • Connection identifiers, HighLevel location details, and integration tokens needed to perform the connection you request.
  • Stripe customer and subscription identifiers, plan, invoice, payment status, and billing history. Payment-card details are collected by Stripe; PatchyHub does not receive or store full card numbers.

3.4 Service and website records

  • Page path, referring hostname, referral code or source, and a random session identifier for first-party page-view and referral attribution.
  • Error messages, limited stack traces, route, user or workspace identifier, import counts, and similar diagnostics when the application reports a problem.
  • Request information processed by our hosting and infrastructure providers, such as IP address, timestamp, browser or user-agent details, and request logs.

4. How we use information

We use information to:

  • Authenticate users and operate workspaces, imports, documentation, and sharing.
  • Provide AI chat, analysis, and generated documentation when those features are used.
  • Process subscriptions, show billing history, and prevent duplicate purchases.
  • Send account, invitation, service, support, and opted-in digest emails.
  • Respond to support requests and investigate errors, abuse, and security events.
  • Measure first-party marketing-page visits and attribute referrals.
  • Meet legal obligations and enforce the Terms of Service.

5. AI processing

PatchyHub uses the Anthropic API for AI features. When you use those features, PatchyHub sends Anthropic the prompt and the workspace content needed for that request. PatchyHub stores the resulting chat or analysis in the service where required to provide conversation history, documentation, and account analysis.

Anthropic states that commercial API inputs and outputs are not used to train its models by default and that standard API inputs and outputs are automatically deleted from its backend within 30 days, subject to Anthropic's stated safety, legal, and contractual exceptions. See Anthropic's training policy and commercial-data retention policy.

6. Who can access or receive information

  • Workspace members: Owners, administrators, and members can access workspace information according to their role and the application's workspace access rules.
  • People with an active share link: Public documentation and map links are capability links. Anyone who has the active link can view the content exposed by that link without signing in. Workspace users can replace or deactivate shared-documentation links.
  • PatchyHub administrator: Micheal Pacitto is currently the only person with administrative access to production customer data. Customer content is accessed only when needed for customer-requested support, service operation, security investigation, legal compliance, or other work the customer authorizes.
  • Service providers: Providers receive the information needed to deliver their part of the service. The current provider and integration list is published on the Trust & Safety page.
  • Legal and safety disclosures: We may disclose information when legally required or when reasonably necessary to protect PatchyHub, its users, or others.

PatchyHub does not sell or rent customer data.

7. Browser storage and cookies

PatchyHub uses browser local storage and session storage to maintain your signed-in session, remember application preferences, prevent duplicate page-view records, and retain referral attribution. PatchyHub also uses limited first-party cookies for UI preferences and secure, short-lived OAuth authorization steps. These mechanisms are functional and first-party; PatchyHub does not operate a third-party advertising tracker.

8. Retention and deletion

We retain account and workspace information while it is needed to provide PatchyHub. Eligible sole-member workspaces can be deleted inside the application after any active subscription is cancelled. Account and data-deletion requests can also be sent to privacy@patchyhub.com.

We may retain limited billing, security, abuse-prevention, or legal records after a deletion request when those records remain necessary for the stated purpose. Service providers apply their own documented retention and backup schedules to information they process for PatchyHub.

9. Security

PatchyHub's confirmed access controls, encryption, infrastructure, incident commitment, and certification status are described on the Trust & Safety page. No online service can guarantee absolute security. If we confirm a breach affecting customer data, we will notify affected customers without unreasonable delay.

10. Your choices and rights

Depending on where you live, you may have rights to access, correct, export, or delete personal information, or to object to or restrict certain processing. PatchyHub also provides in-product tools for workspace data export and eligible workspace deletion. To exercise a privacy right, email privacy@patchyhub.com.

Digest emails include an unsubscribe mechanism. Account, security, billing, and other transactional messages may still be sent when needed to operate the service.

11. Data location

PatchyHub's primary Supabase database is hosted in the AWS us-east-1 region in the United States. Other providers may process information in the United States or other locations described in their own terms and privacy documentation.

12. Children

PatchyHub is a business software service and is not directed to children under 13. If you believe a child has provided personal information, contact us so the issue can be reviewed.

13. Changes to this policy

We may update this policy as PatchyHub changes. The current version will remain available on this page with its effective date. Material changes will be communicated through the service or by email when appropriate.

14. Contact

Privacy questions and requests: privacy@patchyhub.com.