Effective date: 5 September 2026
Demand Pulse provides time-capture software for professional services firms. This policy explains what we collect, why, and what we do not collect. It applies to our website and to the Demand Pulse application.
Demand Pulse LLC ("Demand Pulse", "we", "us") is the controller of personal data described in this policy. You can reach us at privacy@demandpulse.ai.
When your organization connects Demand Pulse to Microsoft 365, we collect:
Our Microsoft 365 permissions are deliberately narrow. We do not request, receive, or store:
We use the information above to identify billable activity, generate draft time entries for a human to review and approve, produce reports and exports your firm requests, secure the service, and provide support. We do not sell personal information, and we do not use it for advertising.
Demand Pulse uses automated processing to propose draft time entries. Only the metadata described above is submitted for this purpose — never message bodies, document contents, or attachments. Drafts are proposals: a person at your firm reviews, edits, and approves every entry before it is used. Your data is not used to train third-party models.
We use a small number of vendors to operate the service, including cloud infrastructure and hosted model providers. They process data only on our instructions and under contractual confidentiality and security obligations. A current list is available on request.
Demand Pulse is provided to your organization, and your organization administers it. Your administrators decide who may use the service, what role each person holds, and when access ends. Requests to access, correct, export, or delete information are best directed to your firm's administrator, who can act on them directly or ask us to assist. You may also contact us and we will work with your organization.
We retain information for as long as your organization's account is active and as needed to provide the service. Audit and evidence records are retained to support the integrity of billing history. When an agreement ends, we delete or de-identify data on the schedule in that agreement.
Data is encrypted in transit and at rest. Each firm's data is isolated at the database level and access is enforced on every request. Authentication is handled by Microsoft Entra — we never see or store your password. We do not store Microsoft access tokens or refresh tokens.
We process data in the United States. Where required, we rely on appropriate safeguards for cross-border transfers.
The service is for business use and is not directed to anyone under 16.
We will post any changes on this page and update the effective date. Material changes will be communicated to your organization.
Questions about this policy: privacy@demandpulse.ai.