NORTHSTAR BUSINESS OS

PRIVACY POLICY

Privacy and data handling.

Effective September 9, 2026. This policy explains how Northstar Business OS handles information used to provide its business software and related services.

Information we process

Depending on the services an organization enables, Northstar may process business identity and contact information, workforce and employment records, scheduling and time records, payroll and compensation information, tax and compliance records, expense and finance records, documents, authentication and security events, and provider-generated transaction or verification references.

Northstar is designed to minimize storage of unnecessary high-risk credentials. Passwords are handled through the configured authentication provider, and payment-card or bank credentials may be collected or tokenized by approved payment or financial-service providers rather than stored directly by Northstar.

How information is used

Service providers and disclosures

Northstar may use third-party providers for authentication, payment processing, identity verification, card issuing or financial services, email delivery, infrastructure, banking rails, filing transmission, or other integrations. Information is shared only as needed to provide an authorized service, meet legal obligations, protect users or the platform, or fulfill the organization's instructions.

Retention and security

Records are retained for the periods reasonably necessary to provide the service, maintain auditability, satisfy contractual requirements, and meet applicable legal or regulatory obligations. Northstar uses access controls, server-side authorization, audit records, encryption-capable provider infrastructure, and security monitoring appropriate to the configured deployment. No system can guarantee absolute security.

Privacy requests

To ask about access, correction, deletion, or another privacy matter, contact Northstarbusinessos@gmail.com. Requests may require identity and authority verification, and some records may need to be retained where required by law, payroll/tax obligations, fraud prevention, security, or contractual recordkeeping requirements.