Pilot privacy note
This is an invite-only product pilot. Use a pseudonym or participant ID where possible and share only what is needed to test the BOS experience.
Controller and contact
Controller: Carl Ellis
Privacy contact: carl.ellis2020@my.ntu.ac.uk
Please do not enter
Passwords, banking credentials, special-category personal data, unnecessary identifiable customer or client information, or confidential material you do not have authority to share.
What is stored
The server stores the conversation, structured session state, processing checkpoints, research citations, evidence classifications and optional feedback. The default retention period is 90 days. The deployment owner must verify that this wording, the controller and the contact remain accurate throughout the pilot.
AI and web processing
Messages are processed server-side through the configured OpenAI API account. When relevant, BOS may use web search to retrieve public market information and retain source links. Individual AI stages may use background processing so the server can poll for completion without holding one long browser request open. Response data is temporarily retained by the API to support that polling, subject to the deployment account's OpenAI data controls. The API key and access code are not sent back in responses.
Your choices
You can avoid identifiable information, stop using the pilot, or ask the deployment owner to remove a session. Pilot administrators can purge session data.
Not professional advice
The pilot is not a substitute for legal, tax, regulated financial, medical, safety, safeguarding or other professional advice.