Skip to main content

Privacy

Your data, in plain language

Last updated June 2026

This page explains what Joe Co. collects when you use this site, how we use it, and how to have it removed. Joe Co. is a service of Joe Co. Solutions LLC, a registered U.S. limited liability company. If anything here is unclear, email hello@joegogo.com and we'll explain it.

Who this site is for

Joe Co. currently serves clients in the United States and operates under U.S. law. This site is currently published in English and is not directed to people in the European Union, the United Kingdom, or other regions where Joe Co. does not actively market its services.

Right now we work with U.S. clients, but the interest coming from elsewhere has us actively looking at how to serve more of the world. So if you're outside the U.S., reach out anyway at hello@joegogo.com. If we can take the project, great. If we can't yet, we'll do our best to point you to people or tools that can help where you are.

What we collect

We only collect what you choose to type into a form. There are no hidden trackers building a profile on you.

The free scan tools

The accessibility scan, the agent-ready score, and the security scan each ask for two things: the website URL you want to check and the email address where we send your results. That is all they collect.

The contact form

When you start a project, the form collects your name, email, an optional company or project name, the service you are interested in, an optional budget range, and your message. Only your name, email, and message are required.

How we use it

We use your information to send the results you asked for, to reply to your message, and, if you used a free tool, to occasionally send tips and updates from Joe Co. Every email we send has an unsubscribe link. We do not use your information for anything else.

We never sell your data

We do not sell, rent, or trade your personal information to anyone. Your email address is never added to an advertising network or shared with third parties for their own marketing.

Who processes your information

A few trusted services help us run the site. We share only what each one needs to do its job, and they may not use your data for their own purposes.

  • Resend, our email provider. It delivers your form submission to our inbox at joe@joegogo.com and sends the confirmation receipt back to you.
  • Vercel, our hosting platform. Operational logs contain random request identifiers and non-sensitive delivery status only, not submission contents.

Cookies and analytics

This site runs no third-party analytics, no advertising pixels, and no cross-site tracking cookies. Your language preference may be stored in your browser so the site remembers it. That preference never leaves your device.

How long we keep it

Form submissions stay in our email inbox and in short-lived server logs. We keep project inquiries for as long as we are in contact and for our business records. You can ask us to delete your information at any time.

Your choices

You can unsubscribe from updates using the link in any email. To see what we hold about you, correct it, or have it deleted, email hello@joegogo.com and we will take care of it, usually within a few business days.

Children

This site is meant for businesses and is not directed at children under 16. We do not knowingly collect information from children.

Using the Joe Co. OS platform

The section above covers this website. This part covers the Joe Co. OS platform, the product that organizations and their people sign in to use.

The roles we play

For the account details of the organizations and users who sign up, we act as the controller. For the End User information an organization collects through the platform, like a volunteer's application, the organization decides what to collect and why, and we process it on the organization's behalf.

What the platform collects

Account details (name and email, usually through Google sign-in, plus your role and organization), the Customer Data you enter, AI usage records (which calls were made, the model, token counts, and a cost estimate), and basic logs used to keep the platform secure. Customer Data can include sensitive End User details where a program asks for them, such as dates of birth, signatures, uploaded photos, and background-check answers. We collect these only because your organization set up a program that asks for them, and your organization is responsible for the consents its End Users need to give.

AI processing

When you use an AI feature, we send the relevant text, such as an organization profile and a grant description, to the AI provider to generate a score or a draft. We don't send more than the feature needs. Under the provider's API terms this data isn't used to train its models by default. If you use your own AI key, those calls run under your own account and we store your key encrypted.

The providers we use

We use a small set of trusted providers to run the platform. Each gets only what it needs.

  • Neon, for database hosting where Customer Data is stored.
  • Vercel, for application hosting.
  • Vercel Blob, for file and photo storage such as uploaded headshots.
  • Resend, for sending sign-in links and application notices.
  • OpenAI, for grant-fit scoring and document drafting.
  • Sentry, for error monitoring.
  • Google, for sign-in.

How we protect it

We use encryption in transit and rely on our database provider's encryption at rest. Each organization's data is kept separate so one organization can't see another's. Keys you supply for your own AI account are encrypted before they're stored. No system is perfectly secure, but we take reasonable steps to protect your information and will tell affected customers about a breach as the law requires.

How long the platform keeps data

We keep Customer Data while your organization uses the platform. After your agreement ends you have 30 days to export it, then we delete it from active systems and backups age out on their normal schedule.

Minors' information

Some organizations may use the platform to collect information about minors, such as youth volunteers. Where a program does this, the organization is responsible for getting any required parental or guardian consent and for following children's privacy laws, including the federal COPPA rule and any applicable state laws. We process minors' information only on the organization's behalf and protect it the same way. If you think a minor's information was provided without proper consent, contact us and the organization that collected it.

Where data is processed

The platform and its providers operate in the United States, and the platform is intended for United States organizations at this time.

Changes to this policy

If we change how we handle your information, we will update this page and the date above. Significant changes will be made clear here.

Questions?

Email hello@joegogo.com. A real person reads it.

hello@joegogo.com