Privacy Policy

Last updated: February 2026

1. Introduction

Pre-Mortem ("we", "us", or "our") provides an AI-assisted pre-mortem risk session tool for Slack workspaces. This Privacy Policy explains what data we collect when you install and use the Pre-Mortem Slack app, how we use it, and your rights with respect to that data.

By installing Pre-Mortem, you agree to the practices described in this policy.

2. Data We Collect

Workspace data (collected during Slack OAuth installation)

  • Slack workspace ID and team name
  • Bot user ID assigned to our app
  • Slack user ID of the person who installed the app
  • OAuth access token (stored encrypted) required to operate the bot

Session data (collected during pre-mortem sessions)

  • Session topic provided by the session initiator
  • Risk descriptions submitted by session participants
  • Slack user IDs of participants and session proposers
  • Voting scores (likelihood and severity ratings)

Billing data (for Pro plan subscribers)

  • Stripe customer ID and subscription status
  • Payment information is handled exclusively by Stripe and is never stored on our servers

3. How We Use Your Data

  • To operate the Pre-Mortem bot in your Slack workspace
  • To run sessions, collect risk proposals, facilitate voting, and post results to Slack channels
  • To generate AI-assisted risk suggestions using session context (see Section 4)
  • To enforce plan limits (e.g., free-tier session count) and manage subscriptions
  • To respond to support requests and communicate service-related updates

We do not sell, rent, or share your data with third parties for advertising or marketing purposes.

4. AI Processing (OpenAI)

When you use the "Generate risks" feature, the session topic and any risks already submitted are sent to OpenAI's API to generate additional risk suggestions. This means session content may be processed by OpenAI subject to OpenAI's Privacy Policy.

We do not use your session data to train AI models. OpenAI's API data usage policies apply. If your workspace handles sensitive information, please consider what you submit during sessions.

5. Third-Party Service Providers

Provider Purpose
OpenAI AI risk generation
Stripe Payment processing and subscription management
Hetzner Cloud Server infrastructure (EU-based)

6. Data Retention

  • Workspace installation data is retained while the app is installed in your workspace
  • Session data is retained to support the service (e.g., session history, plan usage tracking)
  • When you uninstall Pre-Mortem from Slack, you may request full data deletion by emailing hello@pre-mortem.xyz. We will delete your workspace data within 30 days of the request

7. Security

  • All data is transmitted over HTTPS/TLS
  • Slack access tokens are stored encrypted at rest
  • Our infrastructure is hosted in the EU (Hetzner Cloud)
  • We verify Slack request signatures to prevent unauthorized requests

8. Your Rights

Depending on your location, you may have the right to:

  • Request access to the personal data we hold about you
  • Request correction or deletion of your data
  • Object to or restrict processing of your data
  • Lodge a complaint with your local data protection authority

To exercise any of these rights, email us at hello@pre-mortem.xyz. We will respond within 30 days.

9. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. Continued use of Pre-Mortem after changes constitutes acceptance of the updated policy.

10. Contact

If you have questions or concerns about this Privacy Policy or your data, please contact us at:

hello@pre-mortem.xyz