Welcome to Decision Desk, where important decisions don't disappear.

Security Practices & Data Protection

Effective Date: December 2025

Decision Desk is designed with security, data minimization, and transparency in mind. We take protecting customer data seriously and apply industry-standard safeguards to ensure information is handled responsibly and securely.

This page explains how we collect, use, and protect data when you use Decision Desk with Slack.

Data Collection & Minimization

Decision Desk collects and processes only the information required to operate the service inside Slack.

This may include:

  • Slack workspace identifiers

  • Slack user identifiers and display names

  • Decision content explicitly created or shared with Decision Desk

Decision Desk does not access private messages or channels unless the app is explicitly invited by a user. We do not collect unnecessary metadata, behavioral profiles, or data unrelated to decision tracking.

Use of Data

Customer data is used solely to provide and operate the Decision Desk service.

We do not:

  • Sell customer or Slack data

  • Use data for advertising or marketing purposes

  • Use Slack data to train machine learning or AI models

Data is never shared with third parties except where required to operate the service securely.

Infrastructure & Hosting Security

Decision Desk is hosted on secure, production-grade infrastructure designed to protect availability, integrity, and confidentiality.

Our systems are monitored and maintained using modern security practices. Production environments are isolated and protected from unauthorized access.

Encryption & Data Protection

Data transmitted between Decision Desk and Slack is encrypted in transit using HTTPS/TLS.

Access to stored data is restricted and protected using secure access controls. Credentials, tokens, and secrets are managed securely and are never stored in plain text.

Access Controls & Internal Security

Access to production systems is limited to authorized personnel who require access to perform their role.

We follow the principle of least privilege, and access rights are reviewed periodically. Internal security practices are designed to minimize risk and prevent unauthorized access.

Data Retention & Deletion

When Decision Desk is uninstalled from a Slack workspace, the app immediately loses access to Slack data.

Customers may request deletion of stored data by contacting us. Data retention practices are designed to balance operational requirements with customer privacy and security.

Compliance & Ongoing Review

While no system can be guaranteed to be completely secure, we continuously review and improve our security practices to reduce risk and protect customer data.

Our approach aligns with industry best practices appropriate for modern SaaS and Slack-based applications.

Responsible Disclosure

If you believe you have identified a security issue or vulnerability, please contact us at:

security@decisiondesk.io

We appreciate responsible disclosure and will respond promptly.

Cookie Settings
We use cookies to improve your experience. Manage your preferences below.

Cookie Settings

We use cookies to improve user experience. Choose what cookie categories you allow us to use. You can read more about our Cookie Policy by clicking on Cookie Policy below.

These cookies enable strictly necessary cookies for security, language support and verification of identity. These cookies can’t be disabled.

These cookies collect data to remember choices users make to improve and give a better user experience. Disabling can cause some parts of the site to not work properly.

These cookies help us to understand how visitors interact with our website, help us measure and analyze traffic to improve our service.

These cookies help us to better deliver marketing content and customized ads.