Privacy Policy
SmartThread ("the App") is a monday.com marketplace application that groups related tickets into recurring "issues" using AI similarity matching. This policy explains what data the App processes, why, and how it is protected.
1. Data we process
- Ticket content — item names and the description/text columns you map during setup, used to compute similarity.
- Column metadata — the status, owner, and date columns you map, used to mirror ticket details onto issues.
- Authentication — a monday.com OAuth access token for your account, used only to read and write the boards required by the App.
- Derived data — numeric vector embeddings of ticket text, used for matching. Embeddings are not human-readable.
2. How we use it
Data is used solely to provide the App's features: detecting similar tickets, grouping them into issues, keeping counts and statuses in sync, and rendering the ticket overview. We do not sell your data or use it for advertising.
3. Sub-processors
- OpenAI — ticket text is sent to OpenAI's embeddings API to generate similarity vectors. Per OpenAI's API policy, this data is not used to train their models.
- Supabase — stores OAuth tokens, per-board configuration, and embeddings.
- Vercel — hosts the App's serverless backend.
4. Data retention & deletion
Data is retained while the App is installed. When you uninstall the App or request deletion, associated tokens, configuration, and embeddings are deleted. To request deletion, contact us at the email below.
5. Security
Access tokens and stored data are held in access-controlled infrastructure. Backend requests are authenticated using monday.com session tokens, and webhook endpoints validate a shared secret. We follow the principle of least privilege for the monday.com scopes the App requests.
6. Your rights
You may request access to, correction of, or deletion of your data at any time. Account admins control which boards the App can access via monday.com's permission system.
7. Contact
Questions or requests: support@smartthread.app.