Privacy Policy
Last updated 17 July 2026
Meridian Strategy is a consulting practice that runs an AI Readiness Audit and builds AI workflows for businesses. This policy describes exactly what we collect, why, who processes it on our behalf, and how to have it deleted. We wrote it to match what the product does — if you find a gap between this page and our behaviour, email us and we’ll fix one or the other.
Who we are
Meridian Strategy is a Missouri-based consulting practice (the business entity is being formed; until it is, we operate under the name “Meridian Strategy”). You can reach us any time at hello@meridianstrategy.ai. We are the data controller for the information described below.
What we collect
We collect only what the service needs to run:
- Account identity. When you sign in with Google or LinkedIn, we receive your name, email address, and profile image from that provider. We do not receive or store your provider password.
- Company profile. During onboarding you tell us your company name, industry, and rough size band. That is the only business-profile data we ask for up front.
- Your audit conversation. The full text of your audit interview — your questions and answers — is stored so your report can be generated and so you can revisit the conversation you paid for.
- Your report. The generated AI Readiness Report, its readiness score, any quality rating you leave, and (for reviewed tiers) a consultant's notes.
- Payment records. When you buy, we store a Stripe payment reference, the amount paid, and any promotion code used. We never see or store your card number — Stripe handles card details directly (see below).
- Contact messages. If you use our contact form, we receive your name, email, optional company, and message. These are emailed to us and are not stored in our database.
- Usage analytics. We record anonymous, aggregate product analytics — which pages are viewed and which buttons are clicked — to understand how the site is used. We do not send your audit content, report, or personal details to our analytics tool.
How we use it
We use your information to conduct the audit, generate and deliver your report, process your payment, send you transactional email (for example, “your report is ready”), respond to your messages, and improve the product. We do not sell your data, and we do not use it for advertising.
AI processing (Anthropic Claude)
The audit and the report are produced using Anthropic’s Claude models via the Anthropic API. To do that, we send Claude the text of your audit conversation and your company name, industry, and size — and nothing else about you. Under Anthropic’s commercial API terms, data sent through the API is not used to train their models. Treat your audit answers as you would any consulting conversation: share what helps us help you.
Who processes data on our behalf
We keep our vendor list short and name it in full. Each of these processes data only to provide its service to us:
- Anthropic. Runs the Claude models that conduct the audit and write the report.
- Neon. Hosts our PostgreSQL database, where the data above is stored.
- Vercel. Hosts the application and stores generated report PDFs.
- Stripe. Processes payments. Your card details go directly to Stripe and never touch our servers; we receive only a payment reference and the amount.
- Resend. Delivers our transactional and contact email.
- Google & LinkedIn. Provide sign-in and confirm your email address to us.
- PostHog. Provides the anonymous product analytics described above.
- Sentry. Provides error monitoring, configured to strip personal data from reports.
How we protect it
Data is encrypted in transit (HTTPS/TLS) and at rest in our database, and our off-site backups are separately encrypted. As a matter of engineering policy, no personal information — no email addresses, company names, or conversation content — is written to our application logs; when something fails, we log a random reference code and the affected record’s id, never your data. No system is perfectly secure, but we hold this data to the highest standard we can because we know what’s in it.
Your rights, including deletion
You can ask us for a copy of your data, ask us to correct it, or ask us to delete it — at any time, by emailing hello@meridianstrategy.ai. When you ask us to delete everything, we remove it across every system we control — the database, stored report PDFs, our email provider, analytics, error monitoring, and our encrypted backups. We’ll confirm when it’s done.
How long we keep it
We keep your account, audit, and report data for as long as your account exists, so your report stays available to you, and delete it on request. Encrypted database backups are retained on a rolling basis and age out automatically. Contact-form emails live in our inbox and are kept only as long as useful to answer you.
Cookies
We use a small number of first-party cookies: one to keep you signed in, and analytics cookies for the anonymous usage measurement described above. We do not use third-party advertising or cross-site tracking cookies.
Children
Meridian Strategy is a business-to-business service and is not directed at children. We do not knowingly collect information from anyone under 18.
Changes to this policy
If we change how we handle data, we’ll update this page and the date at the top. For material changes affecting existing customers, we’ll also reach out directly.
Contact
Questions about this policy, or a privacy request of any kind: hello@meridianstrategy.ai. You can also use our contact form.