Trust
A thinking partner is only useful if you can be honest with it.
This page is maintained by Alyve to answer the questions executives actually ask about Boswell. It describes how the product works today. It is not an independent audit and not a certification.
Who runs this
Boswell is a product of Alyve, a leadership advisory practice. Alyve is responsible for how Boswell is built, hosted, and improved.
Alyve staff who need to keep the service running have limited, audit-logged access to operational data (sessions started, errors, invite state). No one at Alyve routinely reads your conversations.
What Boswell reads
When you write or speak to Boswell, the current conversation is sent to a large language model (currently Anthropic's Claude, via their API) to produce the reply. That call is a business API call, not a public chatbot: model providers are contractually barred from training their public models on this traffic.
Boswell also reads short summaries from your prior closed sessions and, if your organisation has uploaded a teamXrays result, the aggregate patterns from that survey. It uses these as background so it can pick up threads and hold you to account.
What Boswell never does
· It does not train any model on your conversations.
· It does not show your conversations to other members of your organisation, including other leaders on your team.
· It does not surface individual teamXrays scores or names to you. It reads aggregate patterns only.
· It does not give medical, legal, or HR advice. If a conversation drifts there, it will say so and point you to the right professional.
Where your data lives
Conversations, session summaries, and account data are stored in Supabase (Postgres) on infrastructure in Australia. Transport is TLS end-to-end. At rest, data is encrypted by the platform.
Sub-processors we currently use: Supabase (database and auth), Anthropic (language model), OpenAI (voice and transcription), Resend (email delivery), and Cloudflare (edge hosting). Each is bound by its own data processing terms.
Retention and deletion
You can export a plain-text file of every session summary you've written, from Settings.
You can delete your account from Settings. That removes your account, every session, every message, every summary, and every profile note tied to it. There is no soft-delete and no shadow copy.
Backups roll off within 30 days. After a deletion, any residual data in those backups is unreadable and expires with them.
Team X-rays
Team X-rays is a psychological-safety survey your organisation may have run. If it has, its aggregate results are used as silent context so Boswell can hold the leader to account on the patterns their team reported. Boswell does not quote individual scores and does not name respondents.
Only super admins and the leader flagged as the Team X-rays customer can upload or delete a round. Other members of the organisation cannot see the responses.
Security posture
Authentication is passwordless (email magic link) or Google / Apple sign-in, restricted to email addresses your organisation's admin has invited. Every write to the database goes through row-level security policies. Server-side keys never reach the browser.
We do not claim SOC 2, ISO 27001, or HIPAA compliance. If your organisation needs a specific certification before running a pilot, contact us and we'll tell you what we do and don't have.
Incidents and contact
If you spot a security issue or a privacy concern, email us and we'll treat it as urgent: hello@alyve.consulting.
We will notify affected users of a material data incident without unreasonable delay.
