Privacy Notice
Last updated: August 9, 2026. This notice describes the default behavior of a RetailEdge AI™ enterprise deployment. A customer's signed enterprise agreement or data-processing agreement controls where it differs.
What the application processes
Authorized users may submit account-management information such as retailer performance data, business-plan inputs, negotiation context, distribution information, internal briefing inputs, account status, and meeting notes.
Purpose
Submitted content is processed to generate the user-requested CPG account-management output. The application is not designed to collect consumer profiles, payment-card data, passwords, government identifiers, privileged legal communications, private keys, or M&A materials.
AI processing
AI inputs are transmitted from the browser to the tenant's server-side RetailEdge gateway and then to the configured enterprise model provider. Provider credentials remain server-side. Provider retention, training, location, and subprocessor terms are governed by the customer's configured provider account and contract.
Storage
- RetailEdge application code does not intentionally persist AI prompt or response bodies server-side in the default package.
- Reports saved inside the interface use browser session storage and are intended to clear when that browser session ends.
- Operational infrastructure may process technical metadata required for authentication, abuse prevention, usage controls, availability, and troubleshooting. Gateway metadata may include request ID, authenticated actor subject/email, workflow, classification, character/token counts, status, and duration; the application package does not intentionally log prompt or output bodies.
- The usage-control KV ledger stores expiring per-request operational records keyed to the tenant and authenticated subject, with token reservation metadata used to enforce rate and daily budgets.
Access
Production deployments should be restricted through Cloudflare Access / SSO to users authorized by the customer. The customer controls its user-access policy.
Customer responsibilities
Users must have authority to submit company, retailer, third-party, and personal data. Restricted information must not be submitted. Confidential commercial data should be enabled only after the customer's legal/security review and provider terms are approved.
Requests and questions
Contact info@victoryhourmedia.com.
RetailEdge AI™ · Victory Hour Multimedia · Windsor, Ontario, Canada