Privacy principles.
How Catalsy watches for risk without watching your people. This is what we believe and how we build.
These principles are our commitment to how we build — distinct from our legal Privacy Notice, which is the formal document covering how we process personal data.
Watching for risk, without watching your people.
Catalsy exists to help people do the right thing. A product with that mission has to be exemplary on privacy itself — not as a checkbox, but as a matter of principle. Here is how we think, and what we will and won't do.
Metadata over content
We work from the patterns and signals around how work happens — who is doing what, where, and how data moves — not by reading the contents of your people's messages and documents. The goal is to understand risk, not to surveil individuals.
Minimal by default
We look at the least we need to assess a risk, and no more. Less data is not a limitation — it's the design.
Need-to-know, always
Insights and answers respect your existing permission settings. Nothing surfaces to people who shouldn't see it.
Your data stays yours
It is never sold, and never used to train foundation models. You remain in control of your information at all times.
Transparent & auditable
Every assessment, action and piece of AI reasoning is logged and reviewable. You can always see what happened and why.
Humans stay in control
Catalsy assists, recommends and drafts. The decisions that carry weight stay with your people.
What this means in practice.
We'd rather catch less and stay trusted than catch everything and become the risk. Where we have to choose between more visibility and more privacy, we design for privacy first and earn visibility through transparency.
As the product develops, these principles are the constraints we build inside — and the standard we invite our customers to hold us to.
Hold us to these principles.
We're onboarding a small group of design partners.
Shape the product, get first access.





