Data Policy

Humm Data Policy

Last Updated: August 15, 2025

This Data Policy provides specific details about how we handle the business data you connect to Humm from third-party services (your "Customer Data"). Our commitment is to act solely as a secure processor on your behalf.

1. Our Core Principle: You Own Your Data

You, the customer, are the owner and controller of your Customer Data at all times. Humm is the data processor. We only access and process your data based on your instructions to provide you with the Humm service.

2. Data We Process

Humm connects to your third-party data sources (e.g., Snowflake, Big Query, Hubspot) via secure, official APIs. The data we process is limited to what is necessary to generate the insights and reports you request.

3. How We Process and Store Data

Our fundamental design principle is to minimize data storage.

  • No Permanent Storage of Raw Data: Humm does not create a permanent copy or database of your raw Customer Data from your connected services.

  • Temporary, In-Memory Processing: When you ask a question or request a report, Humm securely fetches the necessary data from the relevant API. This data is processed in-memory or in temporary, encrypted storage.

  • Data Deletion: Once the analysis is complete and the insight is delivered to you, the temporary data is securely and permanently deleted.

  • Metadata Storage: We may temporarily store metadata related to your data sources (e.g., a random sample of table rows) to make the service easier for you to use.

4. Data Security and Confidentiality

Protecting your Customer Data is critical to our business.

  • Secure Connections: All connections to third-party APIs are made over encrypted (TLS/SSL) channels. Authentication tokens and keys are always encrypted at rest.

  • Purpose Limitation: We will never use your Customer Data for any purpose other than providing, securing, and improving the Humm service for you. We will never use your data for advertising, building cross-customer models, or any other commercial purpose.

  • Confidentiality: Your Customer Data is treated as strictly confidential. Our personnel do not have access to your Customer Data unless required for support or security reasons, and even then, access is logged and strictly controlled.

5. Sub-processors

We may use a limited number of trusted third-party sub-processors (e.g., cloud infrastructure providers like AWS or Google Cloud) to help us provide the service. These sub-processors are held to the same high standards of security and confidentiality as we are.

6. Your Responsibilities

You are responsible for managing your own user accounts and access credentials for the third-party services you connect to Humm. Please use strong, unique passwords and secure your accounts appropriately.