Privacy
Privacy policy for Boma
This page explains the categories of data Boma handles, why that data is used, how long it is retained, and the baseline controls we apply to protect farm information.

Suggested visual
Data handling or privacy-first platform visual
Use this slot for a calm product trust image, data-governance illustration, or branded visual that supports the privacy and data-handling narrative.
Scope of this policy
This privacy policy applies to Boma's public website, marketing pages, application interfaces, account flows, customer support interactions, and related operational systems used to deliver the service.
It is written to give buyers, farm operators, and team members a practical explanation of what data Boma handles in the ordinary course of providing livestock operations software.
Information we collect
Boma processes account details such as names, email addresses, login credentials, role assignments, farm membership information, and invitation records needed to manage access to the platform.
Inside the product, Boma may store farm operational records including animal profiles, tag numbers, breeding history, health events, reminders, milk entries, scan batches, notes, notices, admin messages, and other workflow data entered by authorized users.
We may also collect technical information needed to operate and secure the service, including login history, device and browser metadata, IP-related telemetry, audit events, support message history, and diagnostic logs relevant to troubleshooting or abuse prevention.
How information is used
We use customer data to authenticate users, enforce farm-level access rules, support product features, deliver notifications, process user-initiated actions, respond to support requests, and maintain platform reliability.
Information may also be used for security monitoring, fraud prevention, incident response, internal service analytics, feature improvement, capacity planning, and administrative review of sensitive product actions.
Boma does not treat customer farm data as public content. Access is limited by product roles, workspace membership, and controlled administrative processes.
Legal bases and customer role
When Boma provides software to a farm, cooperative, or operating business, that customer typically decides what operational data is entered into the platform and how it should be managed internally. In that context, the customer acts as the primary controller of its farm data and Boma acts as a service provider or processor for that customer data.
Boma may also act as a controller for limited categories of data it needs for its own business operations, including billing records, product security logs, contract management information, and support communications.
Sharing and subprocessors
Boma uses service providers where needed to deliver the platform, including hosting, database, authentication, storage, email, analytics, and customer support tooling where applicable.
We do not sell customer farm data. Information is shared only where necessary to operate the service, comply with legal obligations, investigate misuse, protect users, or maintain the integrity and security of the platform.
If a customer needs vendor or processor clarification before rollout, Boma can provide that information through the commercial or onboarding process.
Retention and deletion
We retain customer data for as long as needed to provide the service, maintain legitimate business records, support security investigations, resolve disputes, enforce agreements, and comply with legal requirements.
Different categories of data may be retained for different periods. For example, operational farm records may remain in a workspace while the customer account is active, while audit or authentication logs may be kept for an additional period where reasonably necessary for security review.
Customers who need deletion, export, or offboarding support should contact Boma through the product support flow or the public contact page so the request can be handled within the correct tenant and admin context.
Security and confidentiality
Boma is designed around authenticated access, role-based permissions, and farm isolation controls intended to keep customer data scoped to the right workspace and user role.
No internet service can promise zero risk, but we aim to apply commercially reasonable operational and technical safeguards appropriate for the type of product and data involved.
Your choices and requests
Account holders and customer administrators may be able to update some information directly in the product, including profile information, team access, and certain farm workspace settings.
If you need help understanding the data attached to your account, correcting submitted information, or requesting a privacy-related review, contact the Boma team through the public contact path or product support flow.
Policy updates
Boma may update this privacy policy as the product matures, legal obligations evolve, or operational processes change. Material revisions will be reflected on this page together with the updated policy text.
