Aristo — Privacy Policy
Aristo is a product of PhoenixHalo, Inc. · Effective 2026-08-09
Who we are
Aristo is operated by PhoenixHalo, Inc. (“PhoenixHalo”, “we”). For any privacy question or request, contact hello@phoenixhalo.com.
What Aristo accesses, and why
With your Microsoft 365 administrator’s explicit consent, Aristo reads Microsoft 365 usage signals through the Microsoft Graph to recommend Copilot “recipes” for each person and to measure adoption at the team level. When Aristo performs an action (for example, drafting a summary), it acts as the signed-in user, only after that user taps — never autonomously.
What we do NOT do
We do not sell your data. We do not read the content of your messages or files for monitoring. We do not show managers any individual’s activity — every leader view is aggregated across a whole team and suppressed unless it covers at least five people. The single exception is named recognition — and it is yours, not your organization’s: if your org turns it on, only the people who personally say yes are ever shown by name. Everyone else stays in the blend, and a yes can be taken back in one word, any time. We do not use your tenant’s data to train shared models.
Data we store
Aristo stores the minimum needed to do its job: which recipes were offered and tried (per user, to avoid repeating), team-level adoption counts, your tenant’s configuration, and an aggregate governance ledger. Records carry a time-to-live and age out automatically.
Your choices and rights
Any user can say “forget me” in Aristo and their personal records are erased — the operational audit trail of actions already taken is retained, and can name the people involved in a seat move. Leaving during the CDX pilot is a white-glove step: write to Aristo support and an accountable operator walks your organization out — new work is frozen first, your pilot data is removed and re-checked for anything left behind, then Aristo’s own access is revoked and independently verified. Your completion record is provided once its publication is confirmed. There’s no self-service “erase our org” button during CDX — a person does it with you. Aristo keeps the operational record of the offboarding itself — the audit trail that proves it was done right. You may request access to, or deletion of, your data at any time via hello@phoenixhalo.com. Aristo’s nudges are opt-out, always honored.
Where your data lives & who processes it
Aristo runs on Microsoft Azure. Our sub-processors are Microsoft (hosting and Microsoft Graph) and the AI provider(s) used to generate recommendation text. Your tenant’s data is isolated per tenant and encrypted in transit and at rest.
Security
We follow least-privilege access, per-tenant isolation, and encryption. Aristo requests only the Microsoft permissions it needs, and explains each one in plain words before you grant it.
Changes
If we change this policy, we will update the date above and, for material changes, notify your administrator.
This page is the privacy policy referenced in the Microsoft commercial marketplace listing for Aristo. PhoenixHalo, Inc.