Last updated: August 2026
Privacy notice
This page describes current practice in plain language. It is a statement of how Ezra operates, not legal advice to you. Where a signed agreement exists between Ezra and an agency, that agreement controls.
Scope
This notice explains how the Ezra website and the Ezra Slack application handle information. It covers site visitors, people who submit an access request, and agency teams participating in a pilot.
Ezra is operated from Michigan in the United States. Information submitted through this site is processed in the United States.
Information collected on this website
When you submit the access request form, we store your work email, your name, your agency name and website, the ranges you select for managed clients and managed ad spend, the reason you give for evaluating Ezra, your preferred next step, and the record of your consent.
Our hosting and security layer records standard server log data such as internet protocol address, browser type, requested page, and timestamp. Logs are used to keep the site available and to limit abusive traffic.
If you arrive from a campaign link, the campaign parameters in the address are stored with the request you submit so we can understand where requests come from.
Information handled by the Slack application
Inside Slack, Ezra processes the messages of the channels it is invited to, the workspace identity of the requester, the client mapping for that channel, and data returned by the sources an agency authorizes.
Ezra stores snapshots of source data, prepared artifacts such as reviews and reports, approval records, and confirmed client context so that later answers can be traced back to their evidence.
Ezra does not read channels it has not been added to, and it does not use agency or client data to train general purpose models.
Legal bases and purposes
Website form data is used to evaluate pilot fit and to contact you about access. The basis is your consent and our legitimate interest in responding to a request you initiated.
Slack and source data are processed to perform the pilot agreement: producing the reviews, investigations, reports, plans, and approval requests an agency asks for.
Server logs and rate limiting exist to protect the service against abuse.
Sharing
Information is shared with the infrastructure, database, and model providers required to operate the service. Those providers are listed on the subprocessors page and are bound by written terms that limit their use of the data to serving Ezra.
Information may be disclosed where the law requires it, where a valid legal process compels it, or where disclosure is needed to protect rights and safety.
Ezra does not sell personal information and does not share personal information for cross context behavioral advertising as those terms are defined under United States state privacy laws.
Retention and deletion
Access request records are retained while an application is under review and for the pilot relationship that follows, then removed within twelve months of the relationship ending unless a longer period is required by law.
Agencies can request deletion of stored snapshots, artifacts, and client context at any time. Removing the Slack application or revoking a source connection stops the associated processing.
Your rights
You can ask for a copy of the information held about you, ask for corrections, ask for deletion, ask us to restrict a use, or withdraw a consent you previously gave. Requests are answered within forty five days.
Residents of United States states with comprehensive privacy laws, and people covered by United Kingdom or European data protection law, may have additional rights including the right to appeal a refused request and the right to complain to a supervisory authority. Michigan residents are covered by the same practices described here.
We do not discriminate against anyone for exercising a privacy right.
Security
Data is encrypted in transit and at rest, access is scoped to the smallest set of people who need it, and administrative access is logged. No online service can promise perfect security, so please avoid sending sensitive personal information through the website form.
Michigan law requires notice to affected residents after a security breach involving unencrypted personal information. Ezra follows that requirement and notifies affected agencies without unreasonable delay.
Children
Ezra is a business product. The site is not directed to children under sixteen and we do not knowingly collect their information. If you believe a child provided information, write to us and it will be deleted.
Changes to this notice
This notice is updated as the product develops. The date at the top of the page marks the current version. Material changes are communicated to pilot agencies before they take effect.
Contact
Ezra is operated from the State of Michigan, United States. Postal address available on request. Written notices reach us at the address below and are answered in writing.
support@ezra.work