Who we are
Fortis Fountain is run by Fortis Data Group LLC, a North Carolina company. Questions about privacy go to [email protected].
Two kinds of information
Businesses use Fountain to run their work: their page, requests, bookings, quotes, invoices, documents and reviews. The details a business keeps about its own customers belong to that business, and it decides what to keep. We look after that information for the business and use it only to run Fountain for them.
For the people who sign in to Fountain, we are responsible for the account itself, as described below.
What we keep about people who sign in
- Your name, email address and a scrambled form of your password (we never keep the password itself).
- If you sign in with Google, Microsoft or Apple: that provider's id for you, your name and the email address it confirms. We do not receive or keep your password with them.
- Two-step sign-in settings, and a cookie that remembers a device you have confirmed, for 90 days.
- A record of each sign-in (time, internet address and browser), kept for 90 days to protect your account.
- Your plan, and for Growth, your billing status. Card details for a Growth subscription are held by Stripe, not by us.
Payments between businesses and their customers
Card and bank payments are made on Stripe's secure pages, into the business's own Stripe account. Fountain records the amount, the status and Stripe's reference so the business's books stay right. We never see or keep full card numbers. Fountain takes no share of these payments.
PelQi
PelQi, the assistant inside Fountain, answers questions and drafts work for a business. When someone asks PelQi something, the question and the workspace details needed to answer it are sent to Anthropic, the company whose model powers PelQi, and the answer comes back. Nothing PelQi drafts is sent to a customer until a person approves it. Health and care workspaces are never sent.
Who helps us run Fountain
- Cloudflare, which carries traffic to our servers and stores our encrypted backups.
- Zoho ZeptoMail, which delivers Fountain's emails.
- Stripe, for payments and Growth subscriptions.
- Anthropic, for PelQi, as above.
- Google, Microsoft or Apple, only if you choose to sign in with them or connect a calendar.
- Any service a business connects itself, such as a calendar or a Zapier or Make webhook, which receives what the business chose to send.
Fountain runs on servers Fortis operates in the United States. We do not sell personal information, and we do not use advertising or tracking cookies. The cookies Fountain sets keep you signed in, protect forms, and remember a confirmed device.
How long we keep things
An account and its workspace stay until they are closed. A closed workspace is deleted for good after 30 days, and can be restored until then. Sign-in records are deleted after 90 days. Encrypted backups expire on a rolling schedule and are gone within six months.
What you can ask us to do
You can ask for a copy of what we keep about you, ask us to correct it, or ask us to delete your account. Owners can export their books from Money and close their workspace from Plan. If you are a customer of a business on Fountain, contact that business first, since it holds your details; if you cannot reach them, write to us and we will help.
Keeping it safe
Every connection is encrypted. Each business can only ever reach its own records, enforced inside the database itself. Sign-in on a new device needs a code, and owners must turn on an authenticator app before connecting payments.
Children
Fountain is for businesses and is not meant for children under 13.
Changes
If we change how we handle information, we will update this page and its date, and tell account holders by email about anything significant.