What Carlos shares and what Carlos can do with your data.
What does Carlos see in Slack?
Carlos only has access to channels/threads where it’s installed and to messages/files you directly share or mention it in. It does not scan your entire workspace.
What data is sent to the LLM?
Only what is necessary to select an analysis tool, or engage naturally with a user's conversation. Uploaded datasets are not passed to LLM/AI partners, unlike other agent tools. Carlos passes descriptors of uploaded datasets to LLM/AI partners, allowing them to effectively engage with the dataset without ever receiving a direct data upload.
Does Carlos train on our data?
No. Carlos is configured so your prompts and content are not used to train the underlying models. Data is processed to generate the response you requested, then retained only as minimally necessary for reliability and auditing.
What can Carlos do with our Data?
Intelligence
- Industry & competitor monitoring
- PR/news synthesis & weekly readouts
Analytics
- Trends, WoW/MoM/YoY comps
- Share-of-total & tactic breakdowns
Forecasting
- SARIMAX weekly forecasts
- Exogenous drivers (e.g., spend)
Modeling
- OLS & LASSO; feature selection & VIF
- Rolling Bayesian Ridge
Optimization
- Hill-function diminishing returns
- Scenario planning & budget tests
Visuals & Workflow
- Polished plots with headlines
- Slack-threaded Q&A & alerting
Need stricter controls (e.g., field-level redaction)? We’ll configure per-tenant rules.
How long do you retain data? Can we delete it?
We keep minimal logs for reliability and debugging. Tenant data is isolated and secrets are stored in Google Cloud Secret Manager. You can request deletion at any time, and we can set custom retention by tenant.
How does email ingestion work?
It’s optional and off by default. If enabled, Carlos uses a strict sender whitelist (or domain) and strips names/emails before analysis. You can disable email at any time.
What connected data sources are supported?
CSV uploads and curated warehouse tables (e.g., BigQuery). Carlos only reads the tables/files you specify, and only the fields required for the task.
Security & hosting
Deployed on Google Cloud with per-tenant isolation, least-privilege service accounts, and secret management. We follow the principle of minimal Slack scopes and transparent data use.
Can we set custom terms or a DPA?
Yes—enterprise terms, custom retention, and DPAs are supported. Contact us and we’ll tailor the setup.