Legal

Privacy Policy

Last updated: 5 May 2026

This Privacy Policy explains how Sharpr.ai — owned by Anarcapital Pte. Ltd., a private limited company incorporated in Singapore ("sharpr", "we", "us", "our") — collects, uses, shares, and protects personal information when you visit sharpr.ai, sign up for an account, request a demo, or use our demand planning platform ("the Service").

By using the Service, you agree to the practices described below. If you do not agree, please don't use the Service.

1. Information we collect

We collect the following categories of personal information:

  • Account information — name, work email, company, role. Collected when you sign up via our identity provider (WorkOS) or fill out a contact / demo form.
  • Booking information — meeting time, time zone, and any details you provide when scheduling a demo through Calendly.
  • Usage data — pages viewed, links clicked, approximate location (derived from IP), device type, browser, and referrer. Collected via privacy-respecting analytics.
  • Conversational data — messages you send to Morpheus, our in-product chat assistant, used solely to answer your question and improve responses.
  • Customer data — for paying customers, the demand planning data you upload (sales, hierarchies, master data). This is your data; we process it on your behalf as a data processor under our Customer Agreement.

2. How we use information

  • Provide, operate, and improve the Service.
  • Respond to demo requests, sales inquiries, and support tickets.
  • Send transactional messages (booking confirmations, account notices).
  • Detect, prevent, and respond to fraud, abuse, and security incidents.
  • Comply with legal obligations and enforce our agreements.

We do not sell your personal information, and we do not use your customer data to train third-party AI models.

3. Sharing and sub-processors

We share information only with vetted vendors who help us deliver the Service, under contracts that require them to protect your data:

  • Vercel — website + application hosting.
  • WorkOS — authentication, SSO, and identity management.
  • Calendly — demo scheduling and calendar integration.
  • Supabase — managed Postgres database for the planning platform.
  • Anthropic — large language model used by the Morpheus assistant. Conversational data is sent to Anthropic per their privacy policy; we have configured the integration so prompts are not used to train Anthropic's models.
  • Email and analytics providers — for transactional email and aggregate product analytics.

We may also share information when legally required (subpoena, court order), to protect our rights or yours, or in connection with a corporate transaction (merger, acquisition, financing).

4. Cookies and tracking

We use a small number of cookies and similar technologies to:

  • Keep you signed in (session cookies via WorkOS).
  • Remember preferences (e.g. dismissed banners).
  • Measure aggregate usage in privacy-respecting analytics.

You can disable cookies in your browser settings. Some parts of the Service may not function without them.

5. Data retention

We keep personal information only as long as needed for the purposes above. Account data is retained for the life of your account and 30 days after closure (recovery window), then deleted or anonymized. Customer data follows the retention terms in your Customer Agreement.

6. Your rights

Depending on where you live, you may have the right to access, correct, delete, or port your personal information; to restrict or object to processing; or to withdraw consent. We honor these rights in line with applicable laws (including GDPR for the EU / UK and CCPA / CPRA for California residents).

To exercise a right, email privacy@sharpr.ai. We will respond within 30 days.

7. Security

We protect personal information using industry-standard practices: TLS 1.3 in transit, AES-256 at rest, role-based access controls, audit logging, and least-privilege internal access. SOC 2 Type II is in progress.

No system is perfectly secure. If you believe your account has been compromised, contact security@sharpr.ai immediately.

8. International transfers

We are headquartered in Singapore and process data in Singapore and other regions where our hosting providers operate (primarily Singapore and the United States). Where required, we use Standard Contractual Clauses or other lawful transfer mechanisms.

9. Children's privacy

The Service is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, email us and we will delete it.

10. Changes to this policy

We may update this Privacy Policy from time to time. Material changes will be highlighted on this page with a new "Last updated" date and, where appropriate, by email.

11. Contact us

Questions, requests, or complaints? Email privacy@sharpr.ai.