SOAR

Privacy Notice — soar-crm.com

Effective August 24, 2026

This notice covers the SOAR website at soar-crm.com. It does not cover the SOAR application itself — if you are a customer using SOAR, the notice that applies to your workspace and your data is the SOAR Application Privacy Notice.

SOAR CRM LLC ("SOAR", "we") operates this site.


The short version

We do not run analytics, advertising, or tracking cookies on this website. We do not build a profile of you, and there is nothing here to opt out of.

Three things on the site collect information, and all three are things you choose to do: the chat assistant, the account setup pages, and emailing us.


1. Just reading the site

Nothing is collected beyond what any web server necessarily sees to deliver a page. The site is served by GitHub Pages, which handles the request and maintains its own operational logs; we do not add analytics to it and we do not receive a report of who visited.

There are no advertising or analytics cookies on this site, so there is no cookie banner. That is not an oversight — we did not add the trackers.

2. The chat assistant

The site has a chat assistant. It is an AI, not a person, and it says so before you type anything.

What is collected when you use it:

Data Why
The messages you type To answer them
A conversation ID stored in your browser So the conversation survives a page refresh
Your IP address Rate limiting only — to stop one visitor running up our AI bill
The page you were on So the assistant knows what you were reading

Where it goes. Your messages are sent to our API and to Anthropic, who provide the AI model that writes the reply. Anthropic processes the message and returns an answer. Under Anthropic's commercial terms, data sent through their API is not used to train their models.

If you give us your email address in the chat, we treat that as you contacting us: the conversation is turned into an enquiry record in our own CRM, and a human may follow up. If you do not want that, do not put your email in the chat — use the address at the bottom of this notice instead, which reaches a person directly.

Do not type anything confidential into the chat. It is a sales assistant on a marketing site. It is not a support channel, it is not covered by any agreement you may have with us, and the transcript is stored.

3. Account pages (invite, password reset, welcome)

If you have been invited to a SOAR workspace, or asked for a password reset, those pages are on this website. They collect what they obviously need to — your name, your email address, and a password you choose — and send it to our API to create or update your account.

Passwords are stored only as a bcrypt hash. We cannot read your password, and nobody at SOAR can tell you what it is.

These pages are covered by the Application Privacy Notice, because the account they create lives in the application, not on the website.

4. Emailing us

If you email us, we keep the email and our reply so we have a record of the conversation. Our transactional email is sent through Resend.


Who else touches this data

Who What they do Where
GitHub Pages Serves this website United States
Cloudflare DNS for soar-crm.com Global
DigitalOcean Hosts our API, which the chat talks to New York, United States
Anthropic Provides the AI model behind the chat assistant United States
Resend Sends our transactional and reply email United States

We do not sell your personal information, and we do not share it for cross-context behavioural advertising. We have never done either.

How long we keep things

What How long
Chat transcripts 24 months, then deleted
Enquiries that became a CRM record While you are a prospect or a customer, then per our retention schedule
Email correspondence 24 months, unless it relates to a contract

Your choices

Whatever state you are in, you can ask us to:

Write to hello@soar-crm.com and we will respond within 45 days. We will ask you to confirm your identity first — not as an obstacle, but because handing someone else's data to whoever asks for it is the failure this right exists to prevent.

If you are in Texas, the Texas Data Privacy and Security Act gives you these rights formally, along with the right to appeal if we refuse a request. To appeal, reply to our refusal and say you are appealing; we will review it and respond within 60 days. If we refuse again you may contact the Texas Attorney General.

Georgia has no comprehensive consumer privacy statute at the time of writing. We honour the requests above for everyone regardless of where they live, because operating two standards is more work than operating one.

Children

SOAR is business software. The site is not directed at children and we do not knowingly collect information from anyone under 18.

Security

The site is static and holds no database. The API it talks to runs on an encrypted connection, and credentials are hashed rather than stored.

We do not claim to be unbreachable. If we ever discover a breach affecting your personal information, we will notify you and the relevant authorities as required by Georgia and Texas law, without undue delay.

Changes

If we change this notice we will update the date at the top. If a change is significant — a new category of data, a new company receiving it — we will say so on the site rather than hope you re-read the page.

Contact

SOAR CRM LLC 100 Holly Park Court, Holly Springs, GA 30115 hello@soar-crm.com