1. Who we are
Sovereign.OS (“we,” “us,” or “our”) provides a Windows desktop real estate operating system (CRM, pipeline, documents, and related workspaces) and an optional companion web app (“On-the-Go”) at app.sovereignos.pro. Questions: support@sovereignos.pro.
2. Our privacy posture in one line
Your CRM book and workspace records are designed to live on your Windows computer in a local encrypted vault (the system of record). We do not operate a vendor-hosted CRM database the way a typical cloud CRM does. Billing and entitlement checks use a Railway-hosted API; card payments are handled by Stripe. The optional On-the-Go companion uses device-authenticated cloud mirrors for field access — that path is not the sealed offline vault.
3. Data that stays on your device
When you use the Sovereign.OS desktop app, the following typically remain on your machine:
- Client, lead, deal, document, and workspace records stored in the local vault / database
- Vault passphrase-derived encryption material (we do not hold your vault passphrase)
- Credentials you choose to store in the OS keychain (for example MLS/RESO or SMTP settings)
- Local AI conversation history when you use on-device models (for example via Ollama)
If you enable optional sync (LAN or bring-your-own cloud storage), encrypted sync packages leave the device under your configuration. We do not receive plaintext of your vault contents through those optional paths.
4. Data we process in the cloud
To sell licenses and keep entitlements working, we process limited account and billing data:
- Payments (Stripe). Checkout, card processing, invoices, and payment status are handled by Stripe. We do not store full card numbers on our servers. See Stripe’s Privacy Policy.
-
Billing & entitlements (Railway backend). Our API hosted on Railway
at
https://sovereignos-production.up.railway.apprecords purchase/session identifiers, plan/license entitlements, device-signing or activation signals needed to unlock paid features, and related billing status. This is not your CRM database. Entitlements are verified online when possible; offline use relies on cooperative / cached entitlement state on the device — not cryptographically fail-closed offline DRM. - Website. Visiting sovereignos.pro may produce standard web logs (IP address, user agent, referrer, pages requested) via our hosting provider (Cloudflare Pages) for security and reliability.
- Support email. If you email us, we receive the content of that message and your email address so we can respond.
- Companion On-the-Go (app.sovereignos.pro). After you pair from the desktop app, the companion may sync selected field records (for example leads, deal stages, work-order photos, showings) via device-authenticated requests to the Railway API. Those mirrors support mobile field use. They are not zero-knowledge copies of the sealed desktop vault and are not a full cloud CRM substitute for your local system of record.
5. Cookies and analytics
The marketing site is primarily static. We do not run a third-party advertising pixel suite on the landing pages as of this policy date. Stripe Checkout may set cookies when you pay. Cloudflare may process request metadata as part of hosting and security. If we add product analytics later, we will update this policy and respect any in-product consent controls.
6. How we use information
- Provide, activate, and support your license or trial
- Process payments and prevent fraud or abuse
- Respond to support requests
- Maintain security and availability of the website and billing API
- Comply with law where required
We do not sell your personal information.
7. Sharing
We share data only with processors needed to run the product, including:
- Stripe — payments
- Railway — hosting the billing/entitlements API
- Cloudflare — hosting and protecting the marketing site (and related edge services)
We may disclose information if required by law, to protect rights and safety, or in connection with a business transfer (for example a merger), subject to applicable law.
8. Retention
Local vault data is retained under your control on your devices until you delete it or uninstall/wipe the app. Billing and entitlement records are retained as long as needed to provide licenses, prevent fraud, meet accounting/tax obligations, and resolve disputes. Support email is retained as reasonably needed to help you.
9. Security
Desktop records are designed to be encrypted at rest in the local vault. Cloud billing traffic uses HTTPS. No method of transmission or storage is perfectly secure; please keep your vault passphrase, device, and backups under your control.
10. Your choices
- Do not create an account or purchase if you do not want billing data processed
- Export or delete local data from your machine (and backups) as you choose
- Email support@sovereignos.pro to ask about billing records we hold, corrections, or deletion requests we can reasonably fulfill
Depending on where you live, you may have additional rights under applicable privacy laws (access, deletion, correction, and similar). Contact us to exercise them. We will respond as required by law.
11. Children
Sovereign.OS is a business product for real estate professionals. It is not directed to children under 16, and we do not knowingly collect their personal information.
12. International users
We are oriented to customers in the United States. If you access the service from elsewhere, you understand that billing and hosting providers may process data in the United States or other countries where they operate.
13. Changes
We may update this policy from time to time. The “Last updated” date at the top will change, and the current version will be posted at this URL. Material changes may also be noted on the website or by email when appropriate.
14. Contact
Privacy questions: support@sovereignos.pro
Website: https://sovereignos.pro/
This page is a plain-language privacy notice for a SaaS-adjacent desktop product. It is not legal advice. For technical architecture details, see our public product docs in the Sovereign.OS repository.