Legal
Privacy Policy
Effective June 11, 2026
Overview
PSIAH is a private operations platform for professional security teams, operated by PSIAH LLC (“PSIAH,” “we,” “us”). Accounts are provisioned by each customer organization — there is no public sign-up. This policy describes the data we handle when you use PSIAH on the web or through our mobile apps.
Information we collect
Account information. Your name, email address, role, and organization, provided when your organization provisions your account.
Operational content. Content you and your team create in the platform: operations, schedules and itineraries, notices, concerns, after-action reports, intel notes, contacts, vehicles, and locations (including addresses your team enters). PSIAH does not access your device’s GPS location.
Messages. Team messages are end-to-end encrypted using the Signal Protocol. Encryption keys exist only on your devices — we store and relay ciphertext that we cannot read.
Device and technical data. Push-notification tokens for the devices you enable, and technical data such as IP addresses and authentication events used for security, rate limiting, and abuse prevention.
How we use information
We use this data solely to operate the platform: authenticating you, displaying your team’s operational data, delivering push notifications, monitoring relevant open-source intelligence around your operations, and keeping the service secure. We do not use your data for advertising, we do not sell it, and we do not use third-party analytics or tracking.
Sharing
Your data is visible only to authorized members of your organization, according to the roles your organization assigns. We rely on infrastructure providers to run the service (hosting, database, and push-notification delivery, e.g. Apple Push Notification service); they process data only on our behalf. We may disclose information if required by law, after review and, where lawful, notice to your organization.
Security
All traffic is encrypted in transit. Data access is enforced with row-level security scoped to your organization. Production accounts require multi-factor authentication. Team messaging is end-to-end encrypted as described above.
Retention and deletion
Operational data is retained while your organization’s account is active, under your organization’s control. When an account or organization is removed, associated personal data is deleted from production systems within a reasonable period. You may also request deletion of your personal data by contacting us or your organization’s administrator.
Children
PSIAH is a professional tool and is not directed to anyone under 18.
Changes
If we make material changes to this policy, we will update this page and note the new effective date above.
Contact
Questions or requests: support@psiah.com