Privacy Policy
Last updated: April 4, 2026
Overview
Radar is a relationship intelligence tool operated by Capital Factory for internal use by authorized team members. It aggregates data from multiple sources to help our team prepare for meetings and manage professional relationships.
Who Can Access Radar
Access is restricted to authorized Capital Factory employees and designated collaborators. Authentication is handled via Google OAuth. There is no public registration — access is granted by invitation only.
Data We Collect
Radar aggregates publicly available and organization-owned data to create relationship briefs. Sources include:
- Internal systems: Gmail, Google Calendar, HubSpot CRM, Asana, Airtable, Google Drive, iMessage, WhatsApp
- Public data: Web search results, news articles, social media profiles (X/Twitter, LinkedIn), SEC filings, patent records, court records, nonprofit registrations, FEC donation records, podcast appearances, YouTube, Spotify, domain WHOIS
- Third-party APIs: Apollo.io, Crunchbase, OpenCorporates, AngelList Venture, Brave Search, Twilio, SearchBug
How We Use Data
Data is used exclusively to generate relationship intelligence reports for Capital Factory team members. Reports summarize a person’s professional background, relationship history with our team, and public activity to help prepare for meetings and interactions.
Data Storage & Retention
- Search results are cached temporarily (10 to 30 minutes depending on the data source) using Cloudflare Workers KV to improve performance.
- Shared reports are stored with a 24-hour expiration and are accessible via unique, unguessable URLs.
- We do not maintain a permanent database of search results or relationship briefs.
Data Sharing
Radar does not sell, license, or share personal data with third parties. Data flows to:
- Anthropic (Claude AI): Source data is sent to Claude for report synthesis. Anthropic’s API does not use customer data for training.
- Cloudflare: The application runs on Cloudflare Workers. Cloudflare processes requests in transit.
- Third-party APIs: Search queries (names, companies, emails) are sent to data providers listed above to retrieve information.
Shared Reports
Authorized users can generate shareable report links. These links:
- Expire after 24 hours
- Are accessible without authentication (anyone with the link can view)
- Exclude sensitive data (phone numbers, email addresses, iMessage/WhatsApp content, criminal background details)
- Are not indexed by search engines
Security
- All traffic is encrypted via HTTPS/TLS
- Authentication uses Google OAuth 2.0
- API endpoints require authenticated sessions or secret-key authorization
- Internal APIs use timing-safe secret comparison
- No passwords are stored
Your Rights
If you believe Radar contains information about you and you would like to request access, correction, or deletion, contact joshuabaer@capitalfactory.com.
Changes
We may update this policy as the product evolves. Material changes will be communicated to authorized users.
Contact
Capital Factory
701 Brazos Street, Suite 1601
Austin, TX 78701
joshuabaer@capitalfactory.com