FeedbackRocket
Sage Sage AI Leadership Coach
← Back

Data Security & Privacy Policy

Version 1.0 · February 2026 · FeedbackRocket (Pty) Ltd

1. Executive Summary

Sage is an AI-powered leadership coaching platform developed by FeedbackRocket that provides personalised, confidential coaching to managers based on their 360-degree feedback results.

The core principle: No confidential data is permanently stored with any third-party AI provider. All sensitive information — survey results, action plans, and coaching conversations — is stored exclusively on FeedbackRocket's secure, encrypted infrastructure. The AI model processes data transiently and retains nothing between interactions.

2. How Sage Processes Data

Stateless AI Architecture

Sage uses Anthropic's Claude API, which operates on a stateless, request-response model:

In practical terms: This is equivalent to making an encrypted phone call. The conversation happens in real time, and when it ends, the line goes silent. There is no recording on the AI provider's side.

Data Flow

StepWhat HappensWhere Data LivesDuration
1. Manager sends messageBrowser sends HTTPS request to FeedbackRocket serverFeedbackRocket server (encrypted)Permanent (our server)
2. Context assemblyServer retrieves survey data, action plan, chat historyFeedbackRocket database (encrypted)Permanent (our server)
3. AI requestEncrypted API call sent to Anthropic ClaudeIn transit (TLS encrypted)Transient (seconds)
4. AI processingClaude generates coaching responseAnthropic servers (not stored)Transient (seconds)
5. Response returnedCoaching response saved to FeedbackRocket databaseFeedbackRocket database (encrypted)Permanent (our server)
6. AI forgetsAll data from the request is discarded by AnthropicNowhere — deletedN/A

3. Anthropic's Data Policy (API Users)

FeedbackRocket accesses Claude exclusively via Anthropic's commercial API, which provides the strongest privacy protections available:

Important distinction: Media coverage about AI providers using data for training relates to consumer accounts. Commercial API access — which is what Sage uses — is explicitly excluded from any data training under Anthropic's Commercial Terms of Service.

4. Data Storage & Infrastructure

All persistent data is stored exclusively on FeedbackRocket's managed infrastructure:

Data TypeContentsStored Where
Survey ResultsBehavioural scores, anonymous comments, self vs. others ratingsFeedbackRocket database only
Action PlansDevelopment goals and commitmentsFeedbackRocket database only
ConversationsManager–Sage coaching dialogueFeedbackRocket database only
CredentialsHashed passwords (irreversible)FeedbackRocket database only

5. Access Controls & Authentication

6. Nature of Shared Data

The data transiently processed by the AI includes:

This data does not include: trade secrets, strategic plans, financial data, customer information, intellectual property, personally identifiable information of respondents, or any other commercially sensitive material.

7. Comparison with Traditional Coaching

Most organisations already share 360 feedback data with external executive coaches. Sage provides equivalent or stronger protections:

DimensionTraditional External CoachSage AI Coach
Data retention by coachIndefinite (notes, files, emails)Zero (AI retains nothing)
Data transmissionEmail, phone, video (variable encryption)TLS-encrypted API only
Human access to dataCoach reads and discusses resultsNo human reads the data
Availability of recordsCoach may retain notes indefinitelyStored securely; deletable on request
ConsistencyVaries by individual coachUniform security policy for all

8. Compliance & Certifications

9. Client Rights & Controls

10. Frequently Asked Questions

Does the AI learn from our employees' conversations?

No. Anthropic's commercial API explicitly prohibits using customer data for model training. The AI does not learn, adapt, or retain any information from coaching sessions.

Could another company's coaching session see our data?

No. Each API call is completely isolated. There is no cross-contamination between requests, users, or organisations.

What happens if we terminate the engagement?

Upon request, FeedbackRocket will permanently delete all data associated with your organisation. A certificate of deletion can be provided.

Is this more or less secure than using ChatGPT?

Significantly more secure. Sage uses Anthropic's commercial API (not a consumer chatbot). Consumer AI tools may retain and train on data by default. Sage's architecture ensures zero data retention by the AI provider.

Can HR or management read a manager's coaching conversations?

No. Coaching conversations are completely private and confidential to the individual manager. This is a non-negotiable principle of the platform.

Where are the servers located?

The application and database infrastructure is hosted in the EU (Frankfurt, Germany) on Render's managed platform.