Privacy Policy

v1.0 — 2026-07-30 — This document has not yet been reviewed by counsel.

This Privacy Policy explains what data we collect, why, and what rights you have over it, across enology.ai, the producer portal at portal.enology.ai, and quaffio.com (together, the "Service"). It is written to be honest and readable rather than exhaustive, and is a v1 founder document — see the Terms of Service for the same disclosure.

1. Data we collect

Account data. When you create a producer portal or consumer account: email address, name, and authentication data (passkey credentials or magic-link session tokens).

Producer business data. When you use the producer portal to create, claim, or edit a producer record: business name, address, contact details, tasting-room hours, imagery, product and label data, and any other fields you submit. Every field carries field-level provenance — a record of its source (TTB filing, your own attestation, AI inference, or editorial) and, for your own attestations, a cryptographic signature and timestamp.

Usage data. Query logs from the API and MCP endpoint (what was requested, when, and by which access key/tier), and standard web server logs (IP address, user agent, timestamps) for the portal and public site.

We do not collect payment card data directly — see Section 3 (Stripe).

2. Why we process this data (lawful bases)

For account holders (producers with a portal account, consumer users), we process account and business data under contract — it is necessary to provide the account and portal functionality you signed up for.

For public-record producer data not yet claimed or attested to by a producer — i.e., data derived from TTB Certificate of Label Approval (COLA) filings — we process it under legitimate interest. Brief legitimate interest assessment: this data is already public government regulatory record; our processing republishes it in a searchable, structured directory that benefits producers (discoverability), consumers, and other applications; the processing is proportionate to that directory purpose; and any producer or affected party can request correction or removal of inaccurate association through the claim flow described in Section 5, which gives individuals a direct, self-serve rectification path without needing to contact us.

3. Who we share data with (processors)

We use the following processors to operate the Service. Each acts on our instructions and processes only the data necessary for its function:

| Processor | Purpose | |---|---| | Supabase | Database hosting, authentication | | Vercel | Application hosting | | Stripe | Payment processing (where applicable — billing is not yet live as of this version) | | Resend | Transactional and account email | | Anthropic, OpenAI | Data-enrichment processing — producer and wine names may appear in prompts sent to these providers as part of automated data enrichment |

Third-party recipients of producer and wine data. Beyond the processors above, the canonical wine and producer data we publish — including producer-attested business data on claimed records — is distributed to third parties by design: it is served on our public web pages, through the enology.ai API and JSON endpoints, and through the Model Context Protocol (MCP) endpoint used by third-party applications and AI systems. These recipients are data consumers of the published record, not processors acting on our instructions. Trade-visibility and private fields (for example press contact phone numbers, account emails, and billing identifiers) are excluded from these public and API surfaces.

We do not sell personal data to third parties.

4. Retention

Account data (email, name, authentication data) is retained until you request deletion via privacy@enology.ai, at which point we delete it from active systems within a reasonable period.

The attestation transparency log is different, and permanent by design. When a producer attests to a field through the portal, that event is recorded to an append-only, hash-chained log described in the Entity Identifier (EID) contract (enology.ai/identifier). Entries in this log — including the fact that a given account made a given attestation at a given time — are not deleted, even if the account is later deleted or a claim is revoked. This is a deliberate integrity property: it is what makes producer attestations independently verifiable. Corrections and revocations are recorded as new events layered on top of the log, not as deletions of prior ones. If this permanence is a concern before you submit an attestation, contact support@enology.ai first.

5. Your rights

You can request access, rectification, or erasure of your personal data by emailing privacy@enology.ai.

For producer business data specifically, rectification is self-serve: log into the portal and edit the field directly, or use the claim flow to associate the record with your account and correct it. This is faster than a manual request and is the intended correction path for public-record inaccuracies.

Where erasure would conflict with the permanence of the attestation log (Section 4), we will explain what can and cannot be removed and why.

Breach notification. If we become aware of a security breach affecting your personal data, we commit to notifying affected account holders within 72 hours of confirming the breach.

6. International data transfers

The Service and its processors are hosted in the United States. Where our processors transfer data internationally, we rely on processors that are certified under the EU-US Data Privacy Framework (DPF) or an equivalent transfer mechanism.

We do not currently have an EU representative under GDPR Article 27. We will appoint one before we begin EU-targeted marketing or actively solicit EU-based producer accounts.

7. Cookies

We use only essential cookies — specifically, authentication session cookies required to keep you signed in. We do not use tracking, advertising, or analytics cookies.

8. Changes to this policy

We may update this Privacy Policy from time to time. We will note material changes by updating the version date at the top of this document and, where the change is significant, notifying account holders by email.

9. Contact

Data requests and privacy questions: privacy@enology.ai. General support: support@enology.ai.