Senshin is operated by Alex Sakpoba, trading as Senshin (senshin.io), a UK sole trader. We build an AI-powered Project Delivery Operating System for professional project managers, programme managers, and delivery leads.
The data controller is Alex Sakpoba, trading as Senshin (senshin.io). Contact: privacy@senshin.io
When you sign up: name, email address, organisation, role, and timezone. This is Tier 1 data — the minimum needed to create your organisation.
At sign-up we also derive your approximate location (country and city only) from your connection's IP address, then discard the address — it is never stored with your account. We use this solely to plan where to host data storage so your data can live closer to you.
Everything you enter to manage your projects:
Every AI analysis run is logged: trigger source, AI depth level (Observe/Advise/Challenge), signals produced, recommendations generated, confidence scores, and your response (accepted/dismissed). This powers the immutable audit trail.
Pages visited, features used, timestamps, device type, browser, and session duration. Collected via first-party telemetry only — no third-party analytics trackers.
| Purpose | Data used | Legal basis |
|---|---|---|
| Operating the platform | Account, project data | Contract performance |
| AI analysis & reasoning | Project, RAID, finance, people data | Contract performance |
| Signal computation (29 dimensions) | All project data | Contract performance |
| Improving the product | Anonymised usage data | Legitimate interest |
| Anonymised benchmarking | Irreversibly anonymised project shape — budget band, methodology, phase, health, numeric ratios (no identifiers) | Legitimate interest |
| Service communications | Email, name | Contract performance |
| Billing and payments | Email, plan data | Contract performance |
| Security and fraud prevention | IP address, session tokens | Legitimate interest |
| Data-storage region planning | Approximate location (country/city, derived at sign-up; IP discarded) | Legitimate interest |
Senshin's reasoning engine operates in two stages:
data_collection: deny) that instructs OpenRouter to route only to model providers that do not log, retain, or train on the request. A Google Vertex AI (Gemini, London region) path is retained as a fallback.All data is stored and processed in the europe-west2 (London) region on Google Cloud Platform:
All storage is encrypted at rest (AES-256) and in transit (TLS 1.3). Private IP networking between services — no data traverses the public internet within our infrastructure.
We do not sell your data. We do not share it for advertising. Data is shared only with these processors:
| Processor | Purpose | Location |
|---|---|---|
| Google Cloud Platform | Infrastructure, storage, fallback AI processing | London (europe-west2) |
| OpenRouter | AI model routing — no-logging, no-training, no-retention policy enforced on every request | US gateway → no-retention providers |
| Firebase Authentication | Identity and sign-in | EU |
| Stripe | Payment processing | EU/US |
| SendGrid (Twilio) / Brevo | Transactional email (primary and fallback) | EU/US |
Each processor operates under a Data Processing Agreement compliant with UK GDPR. See our DPA for details.
You have the right to:
To exercise any right, email privacy@senshin.io. We respond within 30 days.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO).
We use minimal cookies — only what's needed to run the service:
| Cookie | Purpose | Duration |
|---|---|---|
| ss_token | Session authentication | Session |
| ss_user_id | User identification | Session |
| ss_consent_v1 | Cookie consent preference | 1 year |
| ss_settings | Display preferences (theme, density) | 1 year |
No advertising cookies. No third-party trackers. Analytics cookies are optional and only set with your explicit consent. See our Cookie Policy for the full table.
If you use the Senshin iOS or Android app, the following additional data processing applies:
| Category | What | Where stored |
|---|---|---|
| On-device data | A local copy of your project data for offline access, stored in an encrypted SQLite database | Your device only — never backed up to iCloud or Google |
| Push notification token | A device token issued by Apple (APNs) or Google (FCM) so we can send you alerts | Our server, linked to your account |
| Biometric data | We use your device's Face ID, Touch ID, or fingerprint sensor via the platform's Passkey/WebAuthn API. We never receive, store, or transmit biometric data — authentication happens entirely on your device | Your device only (secure enclave) |
| OTA updates | The app checks Capgo for web-layer updates. Your app version and platform are sent; no personal data is transmitted | Capgo (EU) |
You can revoke push notifications at any time in your device settings. Deleting the app removes all on-device data. Your server-side account and data are unaffected by app deletion — use Settings → Delete my account to remove those.
Report security vulnerabilities to security@senshin.io.
Senshin is a professional tool for project delivery. It is not intended for users under 18. We do not knowingly collect data from minors.
Your data is primarily processed in the UK (London). Where sub-processors operate outside the UK (Stripe, SendGrid), transfers are protected by Standard Contractual Clauses (SCCs) or UK adequacy decisions.
We may update this policy. Material changes will be communicated via in-app notification and email with at least 14 days notice. The "Last updated" date at the top always reflects the current version.
Alex Sakpoba, trading as Senshin (senshin.io)
United Kingdom
Privacy: privacy@senshin.io
Security: security@senshin.io
General: {{SUPPORT_EMAIL}}