Roam-AI Application Privacy Policy

Last Updated: August 12, 2025

Welcome

This Privacy Policy describes how Roam-AI LLC ("Roam-AI," "we," "us," "our") processes information in connection with the use of the Roam-AI Application (the "Application" and as further detailed in the "MSA" (as defined below)) by you, the "End User," an individual serving as an employee, independent contractor or other authorized agent or representative of Roam-AI's company client ("Client") and authorized by such Client to use the Application on its behalf.

By using the Application, providing "Personal Information" (as defined below) to us, and/or accessing or using our "Services" (as defined below and in our "Terms of Service"), you have agreed to be governed by this Privacy Policy, as well as our Terms of Service and any other related notices, policies and procedures.

1. Scope and Our Role and Relationship with You

As an End User of the Application, your use of the Application/Services is subject to the "Master Service Agreement" ("MSA") that your employer or company that engaged you as a contractor (the "Client") entered into with Roam-AI. As a result, Roam-AI is the "Data Processor" and service provider, which means we are a service provider that processes data on behalf of and at the direction of the Client and our Client is the "Data Controller" or the controller/company that decides how and why information or data (provided to Roam-AI via their use of the Application) is processed.

  • As the End User, you will create an account with your corporate email address, and your company (our Client) is the Data Controller of the information provided by you or resulting from your use of the Application.
  • Since you are using the Application through your company (our Client), your company's administrator is responsible for the accounts associated with your company. Your company's administrator can: restrict, suspend, or terminate your access to or ability to use the Services, access information about you, access or retain information stored with us (including your workspace content and log data about your use of the Application), and restrict your ability to edit, restrict, modify, or delete information associated with your use of the Application.
  • This Privacy Policy governs the manner in which we collect, use, store and disclose certain information collected from End Users, why we do so, how we receive and/or obtain such information, and the rights you, as an End User, have with respect to your information in our possession. Our use of your information is only in connection with the Client's use of the Application as permitted under the MSA.
  • This Privacy Policy does not apply to any third-party websites, SaaS or XaaS platforms or any other website or mobile applications, any of which may provide information or offer products and services that Roam-AI makes available through the Services. To understand how any third party treats your information, you should contact such third party or read its privacy policy and any other applicable terms.
  • The term "Services" collectively refers to our Application as well as any related information, materials and services originating from us and as we have provided through or in connection with the Application. All capitalized terms not defined in this Privacy Policy are defined in the Terms of Service, or our other legal documents or written policies and procedures.

2. What Information We Collect and Process

We process the following categories of information:

  • User Account Data: To create and manage your End User account, we collect and process your full name, corporate email address, and assigned title, role and/or permissions. This information is provided and managed by you and/or the Client's administrator.
  • Application Usage Data: We collect technical information about how you, as the End User, interact with our Application and any related Services. This includes log data, IP addresses, feature usage patterns, and performance metrics. This data is used for service maintenance, security, and improvement.
  • Client Data: This includes all operational and technical data provided by the Client (or its employees, contractors, agents and representatives on Client's behalf) for the purpose of using the Application and any related Services. This may include, but is not limited to, well data, pump specifications, electrical submersible pump (ESP) operational parameters, production volumes, telemetry data, and system alerts. The ownership and confidentiality of all Client Data are treated in accordance with the MSA.

3. How and Why We Collect and Process Information

We collect certain information (as specified above) from you as an End User, and our processing of such information is limited to the purposes defined in our MSA with the Client and as described below:

  • To Provide and Maintain the Services: Our primary use of your information is to enable you to use the Application and us to provide related Services.
  • To Provide Technical Support: We may need to access your information to troubleshoot and resolve issues reported by you or your colleagues on the Client's behalf.
  • To Secure and Improve Our Services: We may use your information (e.g., Application Usage Data) to monitor for security threats, prevent fraudulent activity, and analyze usage trends (and conduct research and development) to improve the Application's functionality and user experience, as well as any related Services. We may use anonymized and aggregated Client Data and Application Usage Data to enhance our analytical models and Services. All anonymized and aggregated data will not identify any End User or the Client.
  • To Comply with Legal Obligations: We may use information as described in Section 5 (Legal Compliance).

4. How We Share and Disclose Information

We do not sell Client Data or User Account Data. We only share such information under the limited circumstances describe below.

  • With the Client: Your User Account Data and your activity within the Application or related Services are accessible to your Client's designated administrators.
  • With Subprocessors: We engage third-party service providers (e.g., cloud hosting providers) to help us operate theServices. We are responsible for processing Personal Information received from End Users and Clients and for any onward transfers to such third-party service providers acting on our behalf, and all such processing and onward transfers will be undertaken by us in accordance with applicable laws, the MSA and this Privacy Policy. These subprocessors are also bound by confidentiality and security obligations consistent with applicable laws, our MSA and this Privacy Policy.
  • As Required by Law: We may disclose information as described in Section 5 (Legal Compliance).
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, information may be transferred as part of that transaction, subject to the confidentiality obligations in the MSA and this Privacy Policy.

5. Legal Compliance

We reserve the right to use, retain or disclose any Personal Information and any other information provided by you or the Client for legal and compliance reasons, such as the prevention, detection, or investigation of a crime, loss prevention or fraud; and if such action we believe, in our sole discretion, is necessary or appropriate, to: (a) conform to the requirements of applicable law which may include laws outside your state or country of residence; (b) respond to requests from courts, law enforcement agencies, regulatory agencies, and other public and government authorities, which may include such authorities outside your state or country of residence; (c) protect and defend the legal rights or property of Roam-AI, our End Users or other third parties; (d) enforce our Terms of Service and any other terms and conditions related to our Services; or (e) in an emergency, to protect the health, safety or privacy of our End Users, the Client other persons or the general public.

6. When You Should Not Share Personal Information With Us

We do not knowingly collect "sensitive" or "special" categories of Personal Information. Do not send us, and do not disclose, any Personal Information or any other financial or other sensitive information (e.g., Social Security numbers, information related to racial or ethnic origin, political opinions, religion or other beliefs, health, biometrics or genetic characteristics or criminal background) in any email correspondence or through messaging services (e.g., online chats) with us.

7. Data Retention

We retain Personal Information, Client Data and User Account Data for the duration of the applicable MSA, for as long as necessary to provide Services to the applicable Clients and as necessary to comply with applicable law, our duties and obligations under the MSA, this Privacy Policy, the Terms of Service and any related policies and procedures, and to resolve disputes and enforce our agreements.

8. Our Use of Cookies

We may use cookies or similar technologies to help us process your use of the Application, analyze trends, administer the Services, track aggregate and statistical information about End User activity, and gather statistics about our End Users and/or Clients as a whole.

  • In the Services, we may use essential cookies for authentication and session management. These technologies may provide us with information about devices and networks you use to access our Services, and other information regarding your interactions with our Services. We may combine the information we receive from cookies with Personal Information we have otherwise collected.
  • Third-Party Analytics: We may also use automated devices and applications, including third-party analytics providers, to evaluate the use of our Services. We may use these tools to gather information about End Users to help us improve our Services and End User experiences. These analytics providers may use cookies and other technologies to perform their services and may combine the information they collect about you on our Services with other information they have collected for their own purposes. This notice does not cover such uses of data by third parties.
  • Browser Level Opt-Out: You can set or change your web browser controls to accept or refuse cookies. The "help," "tools," or "edit" portion of the toolbar on most browsers will tell you how to prevent your computer from accepting new cookies, how to have the browser notify you when you receive a new cookie, or how to disable cookies altogether. If you disable cookies, you may still access our Services, but be aware that some features may not function as intended.
  • Do Not Track: Some browsers have incorporated "Do Not Track" (DNT) features that can send a signal to the websites you visit indicating you do not wish for your online activities to be tracked. Our systems do not currently recognize browser DNT requests. In the meantime, you can use the "help" portion of the toolbar on most browsers to learn how to manage your cookie settings, as explained above.

9. Log Data

Like many other SaaS platforms, we collect this information for purposes of security, platform administration, and to analyze how our Services are used to improve the user experience. This information may include Internet Protocol (IP) addresses, browser type, Internet service provider (ISP), referring/exit pages, the features viewed in the Application or related Services, operating system, date/time stamp, usage, change history, and/or clickstream data. We use this data to analyze trends in the aggregate, diagnose technical problems, and protect against fraudulent activity. We may share this data with third-party service providers who assist us with hosting, analytics, and security. We retain this data only for as long as necessary to fulfill these purposes and then delete or anonymize it.

10. Promotional or Marketing Messages

If we send you promotional or marketing messages, you will be able to opt out of receiving our marketing or promotional email communications by using the "Unsubscribe" feature at the bottom of each email from us or by contacting us about your opt-out request via email at info@roam-ai.io. We will try to comply with your request(s) as soon as reasonably practicable. Please note that if you opt-out of receiving marketing-related emails from us, we may, if you are an End User, still send you important administrative or transactional messages, from which you cannot opt-out.

11. Your Obligations and Rights

As an End User, you are responsible for maintaining and updating your Personal Information with current, accurate and complete information. You may view, update or edit your Personal Information by logging into your account and following the appropriate instructions.

  • Subject to applicable law and unless otherwise specified in this Privacy Policy, End Users have the right to request from us a copy of what Personal Information we have collected, ask to correct or update their Personal Information, or request that we delete their Personal Information from our systems and records in accordance with our policies and procedures.
  • You may make such changes by logging into your account or request that we help you by contacting us as described in Section 14 ("How to Contact Us") below. We may, if required by the MSA, contact the Client as part of your request.
  • Please Note that if we delete your Personal Information, you may not be able to continue to access the Application or related Services.
  • We will not collect, use, or disclose your Personal Information in any ways or for any purposes that are materially different from those set forth in this Privacy Policy. However, if we wish to do so in the future, we will obtain your consent first, and offer you the choice to opt-out of such proposed collection, use, or disclosure of such Personal Information.
  • If you have consented to our use of information about you for a specific purpose, you have the right to change your mind any time thereafter, but this will not affect any processing that has already taken place.
  • Please note that you cannot opt out of receiving transactional communications from us regarding Services as authorized by the Client, your account with us or other transactional or administrative issues.

12. Data Security

We are committed to protecting the security of your Personal Information and we take all reasonable precautions to protect it from unauthorized access, modification or disclosure. We maintain a comprehensive, written information security program that contains industry standard, administrative, technical, and physical safeguards designed to prevent unauthorized access to your Personal Information, such as encryption of data in transit (SSL/TLS) and at rest, strict access controls, and regular security monitoring and assessments, etc. We also use appropriate industry-standard security technology as agreed with our Client under the MSA to reasonably protect your information. When we no longer need your Personal Information, we will take all reasonable steps required to de-identify or destroy it in accordance with this Privacy Policy, the Terms of Service, MSA and any applicable policies and procedures.

13. Changes to This Privacy Policy

From time to time, we may update this Privacy Policy to reflect the changes to our data collection and use practices or as applicable laws require. We encourage you to periodically review this page for the latest information on our privacy practices.

14. Contact Us

For any questions about this Privacy Policy, please contact us at:

Roam-AI LLC

3000 W Memorial Road, STE #123344, Oklahoma City, OK 73120

Email: info@roam-ai.io

Access to this application is restricted to authorized users. By continuing, you agree to our Privacy Policy.

© Roam AI 2026 - All Rights Reserved