Fatworks Command Center Privacy Policy
Effective October 5, 2026.
This privacy policy describes the Fatworks Command Center, an internal workspace for authorized Fatworks colleagues and invited collaborators. It covers the Command Center and its connected business services.
Information we handle
The Command Center handles sign-in identity and access permissions, business records, product and project plans, supplier references, inventory imports, invoice and compliance records, campaign plans, and files that authorized users choose to add.
Connected services and Meta information
Authorized users may connect Shopify, Google reporting tools, advertising platforms, Dropbox, and QuickBooks Online. Information accessed depends on the permissions granted and features enabled. The current Meta connection stores an encrypted access token and connection metadata, including the ad account ID and name. It does not currently maintain an imported campaign reporting feed. The current QuickBooks connection verifies company information and stores authorization for future integration; it does not import invoices or write accounting transactions.
How we use information
We use information to operate Fatworks workflows, manage authorized connections, organize business work, and support reporting and planning. Access to workspace records is governed by sign-in and assigned permissions. Finance records have additional access restrictions. Service providers receive information needed to operate the workspace or perform features an authorized user requests.
AI features
When an enabled AI feature is used, relevant permitted records and the user's request may be sent to the configured AI provider to generate a response. Users should review generated recommendations before acting on them.
Storage, cookies, and authorization
The workspace uses its hosting platform's database and file storage. Stored connection credentials are encrypted. Authentication and OAuth flows use necessary session and security cookies. Disconnecting a service removes its locally stored connection credentials and metadata. Provider authorization may also need to be revoked in that provider's settings. Disconnecting does not automatically remove business records already saved separately.
Access, corrections, retention, and deletion
Contact David Cole at dcole@fatworks.com for access, correction, or removal requests, or questions about these practices. Follow our data deletion instructions to request removal of information, including information received through a Meta connection, and check the request's status.
The workspace owner verifies requests and reviews the relevant records. Retention and deletion are handled according to applicable business and legal requirements. If a requirement limits deletion, the owner will explain the limitation in the response.
Changes and contact
This policy may be updated as the workspace develops. Questions may be sent to dcole@fatworks.com.
Privacy policy · Terms of use · Data deletion · Command Center sign-in