Policy / Privacy
One framework.
Clear data boundaries.
How ManifestQ Studios handles information across Studio websites, applications, prototypes, integrations, and messaging programs.
Effective August 28, 2026
This is the Studio-wide privacy framework.
A product or client engagement may provide an additional notice when its data, audience, or legal requirements differ. That additional notice supplements this policy.
Scope and roles
ManifestQ Studios (“ManifestQ,” “we,” or “the Studio”) designs, develops, operates, and supports websites, mobile applications, web applications, prototypes, internal systems, integrations, automation, and communications services. This policy applies when ManifestQ determines how information is handled for a Studio-controlled service.
For some client products, the client determines the purposes and means of processing and ManifestQ acts as a service provider or processor under the applicable project agreement. The client’s privacy notice may then govern the end-user relationship.
Information we handle
- Identity and account information, including name, organization, role, email address, telephone number, authentication records, and account status.
- Product and workflow information, including assignments, responses, approvals, status changes, files, comments, and audit history.
- Messaging information, including telephone number, program identifier, consent source, disclosure version, timestamps, preferences, STOP/START/HELP history, suppression status, message content, and delivery events.
- Technical information, including IP address, device and browser data, logs, diagnostics, security events, and integration activity.
- Support and project communications supplied by users, testers, clients, or authorized administrators.
We ask users and clients not to place confidential client data, legal matter information, credentials, regulated data, or other sensitive information into a development environment unless the project expressly authorizes and protects that use.
How we use information
- Provide, test, secure, maintain, and improve Studio services and client-authorized products.
- Authenticate users, manage permissions, preserve audit history, and investigate misuse.
- Deliver requested workflow, account, security, operational, and development notifications.
- Record and enforce communication preferences, consent, revocation, and suppression.
- Provide support, troubleshoot integrations, measure reliability, and meet contractual or legal obligations.
We do not sell personal information or use SMS consent data for unrelated advertising.
Messaging privacy
Each messaging program requires its own disclosure and affirmative enrollment method. SMS consent is channel-specific: opting out of text messages does not close an account, complete an underlying workflow, or necessarily stop notices delivered through web, email, or push channels.
We do not share a person’s SMS opt-in or consent status with third parties for purposes unrelated to providing that messaging program. We may provide information, including consent status, to Telnyx, telephone carriers, hosting providers, and other vendors that help deliver, secure, monitor, or support the program.
Program-specific terms are available in our Messaging Terms.
Sharing and subprocessors
We may share information with service providers that perform hosting, communications delivery, authentication, storage, analytics, diagnostics, security, and customer support. They may process information only for the authorized service.
Information may also be available to authorized users and administrators of the relevant organization or project; disclosed during a business transaction subject to appropriate protections; or disclosed when reasonably necessary to comply with law, protect rights and safety, prevent abuse, or preserve service integrity.
Retention and security
We retain information for the period reasonably needed to operate the service, document consent, honor suppression, maintain security, resolve disputes, and meet contractual or legal obligations. Retention may vary by product, client instruction, and record type.
We use reasonable administrative, technical, and organizational safeguards such as encrypted transport, access controls, secret management, logging, and least-privilege access. No connected service can be guaranteed completely secure.
Choices and requests
Users may opt out of SMS by replying STOP and may request help by replying HELP. Depending on the service and applicable law, a person may request access, correction, deletion, or a copy of personal information. Organization-controlled information may require authorization from that organization.
Send privacy requests to [email protected].
Changes and contact
We may update this policy as our services and requirements change. We will publish the revised effective date and provide additional notice when required. Questions may be sent to [email protected].