Data handling

Data governance

Where your data lives, who can reach it, and what founders control.

CorvaneOS never shares a startup's data with investors unless the founders turn it on, and founders can change or revoke that access at any time.

What CorvaneOS stores

DataExamplesWho can see it
Workspace contentProjects, tasks, documents, chatMembers of that organization.
Business dataSales, feedback, customers, hiring, cap tableMembers of that organization.
Investor recordsDeals, portfolio, funds, LPsMembers of that investor workspace, by role.
Shared startup pagesSections a founder choseInvestors the founder allowed, or anyone signed in if public.

Tenant separation

Every record carries the organization or investor workspace it belongs to. Server routes check your membership on every request and never trust an id sent from the browser. Database tables are locked with row-level security so the browser can't read them directly.

Builders and investors

Investor accounts can't open Builder pages. Investors see a startup only through its read-only startup page, limited to the sections and access level the founders chose. See Sharing with investors.

Your customers' data

Feedback and usage data you send through the API is stored for your organization only. Send pseudonymous customer ids where you can, and avoid putting secrets or sensitive personal data in feedback text or metadata.

Demo data

Sample datasets are flagged as demo and removed without touching real records.