Skip to content
LEGAL

EBHOOM Privacy Policy

This Privacy Policy explains how GoodFoot Sustainability Private Limited, operating the EBHOOM environmental technology platform ("EBHOOM", "we", "us", or "our"), processes information in connection with EBHOOM services, including the EBHOOM EMS ChatGPT integration. This policy applies to information processed through EBHOOM EMS and the EBHOOM EMS integration available through ChatGPT.

1. About EBHOOM EMS

EBHOOM EMS is an Environmental Management System that provides environmental and operational monitoring capabilities. Depending on a customer's deployment, EBHOOM EMS may process information relating to environmental monitoring such as:

  • Water and wastewater quality
  • pH
  • BOD
  • COD
  • TSS
  • Turbidity
  • Temperature
  • Flow rate
  • Cumulative flow
  • Energy and electrical measurements
  • Ambient air or emission measurements
  • Equipment and communication status
  • Monitoring timestamps
  • Data availability and data gaps
  • Regulatory or configured parameter limits
  • Parameter exceedances

The exact information available depends on the customer's EBHOOM EMS configuration.

2. EBHOOM EMS ChatGPT Integration

The EBHOOM EMS ChatGPT integration allows an authorized EBHOOM EMS user to retrieve information from their EMS account through ChatGPT. The integration uses an EBHOOM-hosted OAuth authorization process.

When a user connects EBHOOM EMS:

  1. ChatGPT redirects the user to an EBHOOM authentication page.
  2. The user authenticates using their existing EBHOOM EMS credentials.
  3. EBHOOM verifies the user's identity and account permissions.
  4. EBHOOM issues authorization credentials for the connected session.
  5. ChatGPT may invoke approved EBHOOM EMS tools on behalf of the authenticated user.
  6. EBHOOM returns the information required to answer the user's request.

The current integration is read-only.

3. Information We Process

Account and Authentication Information

We may process:

  • Email address
  • EMS username
  • Internal EMS user identifier
  • Account role and authorization permissions
  • Authentication/session information
  • OAuth authorization codes
  • OAuth access credentials
  • Login/session metadata necessary for security and authentication

Passwords entered on the EBHOOM authentication page are processed by EBHOOM's authentication service for login verification. EBHOOM does not intentionally include a user's password in MCP tool inputs, MCP tool outputs, or responses sent by EBHOOM to ChatGPT.

Tool Request Information

When ChatGPT invokes an EBHOOM EMS tool, EBHOOM may receive:

  • The requested tool
  • Parameters necessary for that tool
  • A requested number of days, where applicable
  • Authentication and authorization information
  • Request metadata necessary for security, diagnostics, and operation

Depending on how ChatGPT processes the user's request, EBHOOM may receive relevant request context that OpenAI determines is necessary to invoke the selected EBHOOM EMS capability. We process only the information actually transmitted to our service and required to perform the requested function.

4. Current EBHOOM EMS Tool Inputs and Outputs

The current integration provides the following read-only capabilities.

Live Status

The live-status capability retrieves the latest monitoring information available to the authenticated EMS account. The information returned may include:

  • Station or stack name
  • Station type
  • Monitoring parameters
  • Latest parameter values
  • Units, where available
  • Device or communication status
  • Monitoring timestamps
  • Other information contained in the authorized live EMS record

Today's Exceedances

The today's-exceedance capability determines whether monitored environmental parameters have exceeded applicable configured limits during the current day. Information returned may include:

  • Station or stack
  • Parameter
  • Measured value
  • Applicable configured limit
  • Exceedance status
  • Date and timestamp
  • Other information contained in the authorized exceedance record

Historical Exceedances

The historical-exceedance capability accepts a requested number of days within the range supported by the tool and returns authorized exceedance information from that period. The information may include:

  • Requested time period
  • Date
  • Station or stack
  • Parameter
  • Measured value
  • Configured limit
  • Exceedance information
  • Timestamps

Daily Average Reports

The daily-average capability accepts a requested number of days and retrieves available daily-average environmental monitoring information. The information may include:

  • Dates
  • Station or stack names
  • Station type
  • Environmental parameters
  • Daily average values
  • Units, where available
  • Related report metadata

Data-Gap Reports

The data-gap capability accepts a requested number of days and retrieves information about missing or unavailable monitoring data. The information may include:

  • Station or stack
  • Date
  • Missing intervals
  • Gap counts
  • Gap duration or availability information
  • Related monitoring metadata

5. How We Use Information

We process information through the EBHOOM EMS ChatGPT integration to:

  • Authenticate users
  • Confirm account permissions
  • Protect customer accounts and systems
  • Authorize access to EMS information
  • Process user-requested EMS queries
  • Retrieve live monitoring information
  • Generate exceedance information
  • Generate daily-average information
  • Generate data-gap information
  • Return requested EMS information to ChatGPT
  • Maintain service reliability and security
  • Detect abuse or unauthorized access
  • Diagnose technical failures
  • Maintain security and operational records where necessary
  • Comply with applicable contractual, regulatory, and legal obligations

We do not use the ChatGPT integration to increase the permissions assigned to an EMS account.

6. Information Sent to OpenAI / ChatGPT

When an authenticated user requests EBHOOM EMS information through ChatGPT, the relevant result produced by the selected EBHOOM EMS tool is transmitted to OpenAI so ChatGPT can provide the requested response to the user. Depending on the tool, this may include environmental monitoring information, station information, parameter values, timestamps, exceedance information, daily averages, or data-gap information.

OpenAI's processing of information within ChatGPT is governed by the terms, privacy notices, workspace settings, and data controls applicable to the user's OpenAI account. EBHOOM does not control OpenAI's independent processing of information after it has been transmitted to OpenAI.

7. Other Recipients and Service Providers

We may disclose or make information available to:

  • OpenAI, when necessary to provide the EBHOOM EMS ChatGPT integration
  • Cloud hosting and infrastructure providers used to operate EBHOOM
  • Database and data-storage service providers
  • Security, monitoring, backup, and logging service providers
  • Technical service providers acting on our behalf
  • Professional advisers where reasonably necessary
  • Government authorities, regulators, courts, or law-enforcement authorities where disclosure is required or permitted by applicable law

Service providers are provided only the information reasonably necessary for the services they perform and are subject to applicable contractual and security requirements. EBHOOM EMS customers may also have their own administrators who can access information according to the organization's existing EBHOOM EMS account permissions.

8. Account Authorization and Customer Data Isolation

The EBHOOM EMS ChatGPT integration uses the authenticated user's EMS identity and permissions when retrieving information. Standard users are intended to receive only information authorized for their account. Administrators or other privileged users may have broader access where that access has already been granted within EBHOOM EMS. Connecting an EMS account to ChatGPT does not independently grant access to another customer's data. Users should contact EBHOOM immediately if they believe they have received information outside their authorized access.

9. Data Retention

We retain different categories of information for different periods depending on their purpose.

OAuth Authorization Codes

OAuth authorization codes used by the EBHOOM EMS ChatGPT integration are short-lived and are configured to expire within approximately 5 minutes. They are also single-use. Expired authorization-code records may subsequently be removed automatically from our systems.

Access Sessions and Authentication Records

OAuth/EMS access credentials and associated active-session records are retained only for the period required to provide the authenticated connection, security monitoring, and session management. The current EBHOOM EMS integration issues access credentials with a limited validity period. Credentials may also be invalidated or revoked earlier.

Environmental Monitoring Data

Environmental monitoring records are part of the customer's normal EBHOOM EMS service and are not created solely for the ChatGPT integration. These records may be retained according to:

  • The customer's service agreement
  • Applicable environmental or regulatory requirements
  • Customer configuration
  • Operational requirements
  • Account lifecycle
  • Applicable legal obligations

Disconnecting the ChatGPT integration does not automatically delete underlying EMS environmental monitoring records.

Security and Application Logs

Security, authentication, diagnostic, and application logs are retained for the period reasonably required for security, troubleshooting, service reliability, incident investigation, and applicable legal obligations. The specific period may vary depending on the type of log and the security or operational purpose for which it is retained. Logs are deleted, aggregated, or anonymized when they are no longer reasonably required for those purposes, subject to legal obligations.

Legal Retention

We may retain information for a longer period where required by applicable law, regulation, dispute resolution, security investigation, or contractual obligation.

10. User Choices and Controls

Depending on the nature of the information and applicable law, users may have the ability to:

  • Disconnect EBHOOM EMS from ChatGPT
  • Revoke an authorized connection
  • Sign out of EBHOOM EMS
  • Request correction of inaccurate account information
  • Request information about personal data processed by EBHOOM
  • Request deletion of applicable personal information
  • Object to or restrict certain processing where applicable
  • Contact EBHOOM regarding unauthorized access or security concerns

Some environmental monitoring information may need to be retained despite a deletion request where it is required under a customer agreement, environmental regulation, legal obligation, audit requirement, or other legitimate requirement. Requests relating to an organizational EMS account may need to be submitted through the customer's authorized administrator.

11. Disconnecting the ChatGPT Integration

Users can disconnect EBHOOM EMS using the available ChatGPT connected-app or plugin controls. Users may also contact EBHOOM Support regarding an active EMS authorization.

After disconnection:

  • ChatGPT should no longer use the disconnected authorization for new EBHOOM EMS requests.
  • EBHOOM may retain security or authentication records where necessary.
  • Existing environmental monitoring records remain subject to the normal EBHOOM EMS retention policy.

12. Security

We use administrative, technical, and organizational safeguards intended to protect information from unauthorized access, alteration, disclosure, loss, or misuse. These measures may include:

  • Authentication and authorization controls
  • OAuth-based account authorization
  • Encrypted HTTPS communications
  • Access controls
  • Role-based permissions
  • Session management
  • Monitoring and logging
  • Infrastructure security controls

No internet-connected system can be guaranteed to be completely secure. Users are responsible for maintaining the confidentiality of their EMS credentials.

13. International Processing

EBHOOM and its service providers may process information in locations different from the user's location. Where required, we take appropriate steps to handle cross-border processing in accordance with applicable legal and contractual requirements.

14. Children's Privacy

EBHOOM EMS is an industrial and organizational environmental management service and is not designed or marketed for use by children under 13.

15. Changes to This Privacy Policy

We may update this Privacy Policy when:

  • EBHOOM services change
  • New integration capabilities are introduced
  • Tool inputs or outputs change
  • Our data-processing practices change
  • Legal or regulatory requirements change

The updated policy will be published on this page with a revised effective or last-updated date. Material changes to the EBHOOM EMS ChatGPT integration's data processing will be reflected in this policy.

16. Contact Us

For privacy questions, requests, complaints, account-access concerns, security reports, requests to access, correct, or delete applicable personal information, or requests relating to an EBHOOM EMS authorization, contact:

GoodFoot Sustainability Private Limited
EBHOOM Environmental Technology Platform
Website: https://ebhoom.com
Support: https://ebhoom.com/support
Email: info@ebhoom.com

Please do not send passwords, OAuth tokens, or other authentication secrets when contacting us.

17. ChatGPT Integration Acknowledgement

By connecting EBHOOM EMS to ChatGPT and requesting EMS information through the integration, users understand that the relevant information returned by the requested EBHOOM EMS tool will be transmitted to OpenAI as necessary for ChatGPT to provide the requested response. Use of the integration remains subject to the user's existing EBHOOM EMS authorization and applicable agreements.