← Back to Slack MCP Cloud

Privacy Policy

Effective: March 2026 · Last updated: July 2026

Summary: Slack MCP Cloud processes Slack API responses on the live request path to return tool results and AI-generated workflow briefs. We do not log or retain Slack messages, files, prompts, or generated briefs. We store account state plus workflow configuration that an operator explicitly saves, content-free outcome metadata, and consented proof submissions.

Buyer review: For the controls and procurement summary, use /security. This page remains the detailed privacy and data-handling reference.

1. Who We Are

Slack MCP Cloud is operated by Rêvasser Labs ("we", "us"). Contact: privacy@revasserlabs.com.

2. What We Collect

3. What We Do NOT Collect

4. How Slack Data Flows

When you invoke an MCP tool (e.g., slack_list_conversations), the hosted worker:

  1. Authenticates your bearer token against our tenant database
  2. Retrieves your encrypted Slack credentials
  3. Proxies the request to the Slack API on your behalf
  4. Returns the Slack API response directly to your MCP client

Slack API response data is processed by the requested tool and, for AI-augmented tools, by Cloudflare Workers AI during the live request. Message content and generated briefs are not logged, cached, or retained by Slack MCP Cloud after the request or scheduled delivery finishes.

5. Token Storage Modes

6. Data Retention

7. Data Sharing

We do not sell, rent, or share your data with third parties except:

8. AI-Augmented Tools

4 tools (slack_catch_me_up, slack_triage, slack_smart_search, slack_workflow_brief) use Cloudflare Workers AI to process Slack messages. This processing happens within Cloudflare's infrastructure during the request and is not retained. Cloudflare's Workers AI does not train on customer data.

9. Security

10. Website Analytics and Funnel Measurement

The hosted marketing and account pages use two separate measurement layers:

These measurements apply to the hosted web surfaces. They do not add Slack message retention, Slack-content telemetry, or prompt logging to the MCP request path.

11. Workflow Operations Measurement

Workflow operations measurement is separate from website analytics. It records which hosted workflow tool ran, the selected workflow kind, success or failure, a bounded validation or delivery error code, the current plan, and duration. It is used to improve onboarding, reliability, scheduling, and the Free-to-paid path. It excludes Slack messages, prompts, generated briefs, channel identifiers, priority-person identifiers, and webhook URLs.

12. Your Rights

Regardless of your location, you can at any time:

For EU/EEA residents (GDPR): You have the right to access, rectify, erase, restrict processing, data portability, and object to processing of your personal data. We process data under legitimate interest (service delivery) and contract performance. To exercise these rights, contact privacy@revasserlabs.com. We respond within 30 days.

For California residents (CCPA): You have the right to know what personal information we collect, request deletion, and opt out of sale. We do not sell personal information. To exercise these rights, contact privacy@revasserlabs.com.

Data breach notification: In the event of a data breach affecting your personal data, we will notify affected users within 72 hours of discovery via the email address associated with your account or Stripe subscription.

13. Children's Privacy

Slack MCP Cloud is not directed at individuals under 18. We do not knowingly collect data from minors.

14. Changes

We may update this policy. Material changes will be posted here with an updated effective date. Continued use after changes constitutes acceptance.

15. Contact

Questions about this privacy policy: privacy@revasserlabs.com