Legal
Privacy
Core Growth AI processes information about its customers and about the executives/insiders in its lead database, which is derived from public SEC filings and enriched via third-party providers (Apollo, Prospeo, Exa). Our full Privacy Policy describes what we collect, why, who we share it with, and your rights.
Your privacy rights (CCPA / GDPR)
California residents may request to know, delete, or correct their personal information and may opt out of its sale or sharing. EEA/UK residents may request access, erasure, restriction, portability, or object to processing. To exercise any of these rights — including “Do Not Sell or Share” and delete my data — submit a request at /privacy or email privacy@coregrowthai.com. We verify each request by email before acting, then remove your records and suppress you from future processing. We respond within 45 days (CCPA) or one month (GDPR).
Terms
Core Growth AI is sold via annual contracts to registered investment advisors. The deliverables and SLAs of your tier (Audit / Growth / Enterprise) are reflected in your master services agreement. Standard MSA template available on request before purchase.
Security
Core Growth AI is built on SOC 2 Type II-aligned controls in preparation for full certification. All data in transit uses TLS 1.2+. Data at rest is encrypted via Supabase's underlying AES-256 encryption. Authentication is handled via Clerk (SOC 2 Type II certified) with optional SSO for Enterprise customers.