Privacy Policy
Last updated: October 3, 2026 · Applies to the fabricboard.com.br website, the web portal, the iOS app and the FabricBoard API.
In short: FabricBoard monitors your company's Microsoft Fabric and Power BI environment. To do that it reads metadata from your infrastructure and keeps track of who you are so it knows what you are allowed to see.
We do not sell your data, do not use it for advertising and do not track you across apps or websites. The only analytics tool we use is Microsoft Clarity, on the website and in the portal, to understand how pages are used (heatmaps and session recordings) — with no advertising and without anything you type into forms. Details are in section 6.
Two points deserve your attention first: data is stored in the United States, and refresh error messages may be sent, with sensitive data masked, to an AI provider in the United States for automatic diagnosis. Details are in sections 4 and 5.
1. Who processes your data
FabricBoard is operated by PRS Tecnologia, which offers it to companies by subscription. There is no individual sign-up: access is always granted by the contracting organization.
This defines two distinct roles, and the difference matters for your rights:
- For your account data (name, email, preferences) and for browsing data on the website and in the portal, PRS Tecnologia is the controller.
- For the monitored environment data of the customer company, PRS Tecnologia is the processor — we process that data on the organization's instructions, and the organization is its controller.
2. What we collect
Identification data
Name, email address and user identifier, obtained from your organization's Microsoft Entra ID account when you sign in. They are used to authenticate you and determine which organizations and roles you have access to. We never see or store your Microsoft password.
Device data (iOS app)
A notification identifier (push token), the operating system and the device time zone. They are used to deliver notifications and to respect the quiet hours and minimum severity you configure on that device.
Monitored environment data
Metadata from the organization's Microsoft infrastructure, read through official Microsoft APIs with a credential the organization itself authorizes:
- Names and identifiers of workspaces, semantic models, reports, dataflows and Fabric items
- Model structure: tables, columns, measures and DAX expressions
- Access map: who has which permission on which workspaces and items
- Refresh execution history, including full error messages
- Gateway and node status, and capacity consumption metrics
- Tenant activity trail (Power BI activity log events)
Two items deserve attention: the access map contains names and emails of other people in your organization, and error messages may contain file paths, server addresses, database names and query fragments.
Browsing data (website and portal)
When you browse the website or the portal, Microsoft Clarity records how you interact with pages: clicks, scrolling, mouse movement, pages visited, device and browser type, screen size, referring page and approximate country or region derived from the IP address. Anything you type into form fields is masked before it leaves your browser. Section 6 details the tool and how to opt out.
What we do not collect
We do not collect location, contacts, photos, health data, financial data or biometric data. Face ID or Touch ID unlocking happens entirely on your device — iOS only tells us whether it succeeded, and we never receive any biometric data.
We also do not read the content of your reports: we monitor the health of the environment, not the numbers it presents.
3. What we use it for
| Purpose | Data used |
|---|---|
| Authenticate and authorize access | Identification from Entra ID |
| Detect incidents and open alerts | Monitored environment data |
| Deliver notifications through the configured channels | Device data, contacts configured by the organization |
| Explain refresh errors automatically | Error message (masked), workspace and semantic model names |
| Understand how the website and portal are used and improve usability | Browsing data (Microsoft Clarity) |
| Support and troubleshooting | Technical operation logs |
| Billing and contract management | Organization registration data |
We do not use any of this data for advertising, for sale to third parties, or to train artificial intelligence models.
4. Where data is stored
Data is stored on Microsoft Azure infrastructure, East US region. This constitutes an international data transfer, carried out under the contractual safeguards agreed with Microsoft and the contract between PRS Tecnologia and the contracting organization.
Isolation between customers is enforced per organization: every record is linked to an organization and every query is filtered by it.
5. Who we share it with
We never sell or rent data. We share only with the providers needed for the service to work:
| Provider | What it receives | Purpose |
|---|---|---|
| Microsoft Azure (US) | All service data | Hosting and database |
| Microsoft Entra ID | Authentication | Corporate sign-in |
| Groq, Inc. (US) | Refresh error message with sensitive data masked, workspace and semantic model names | Automatic error diagnosis |
| Microsoft Clarity (US) | Browsing data on the website and in the portal (section 6) | Heatmaps and session recordings |
| Expo (US) and Apple | Notification identifier and the alert text | Notification delivery on iPhone |
| Email provider | Destination address and the alert text | Alert delivery by email |
| Microsoft Teams, Telegram, Meta (WhatsApp), webhooks | The alert text | Only if your organization configures these channels |
About AI analysis. When a refresh failure alert is sent, or when someone clicks “Analyze with AI” in the portal, the corresponding error message is forwarded to Groq to generate an explanation and a suggested fix. Before leaving our infrastructure, the message is masked: email addresses, server names and URLs, IP addresses, identifiers (GUIDs), network paths and secrets such as passwords and tokens are replaced with generic placeholders. Only table, column and partition names and error codes remain — what the analysis needs. The result is stored alongside the execution. According to the provider's terms, content sent through the API is not used to train models. The feature can be turned off by your organization under Settings in the portal, or on request through the contact at the end of this page.
6. Microsoft Clarity: website and portal usage analytics
The fabricboard.com.br website and the FabricBoard portal use Microsoft Clarity, a usage analytics tool by Microsoft Corporation, to understand how pages are used and where the experience can improve. Clarity produces heatmaps (where people click and how far they scroll) and session recordings (a replay of clicks, movements and scrolling during the visit).
What Clarity collects
- Page interactions: clicks, taps, scrolling and mouse movement
- Pages visited, time on each page and referring page
- Device type, operating system, browser and screen size
- Approximate country or region, derived from the IP address
- Clarity's own cookies (
_clckand_clsk), used to recognize the same visit and the same browser over time
What Clarity does not collect
The website has no forms. In the portal, Clarity masks the content typed into form fields before sending it, so emails, names or any text you enter do not appear in recordings. We do not use Clarity for advertising, commercial profiling or to link your browsing with other websites, and browsing data is never combined with monitored environment data.
Purpose and legal basis
We use this data solely to improve the usability of the website and portal, based on our legitimate interest in offering an easy-to-use product. The data is processed by Microsoft in its data centers under the Microsoft Privacy Statement and retained for a limited period defined by the tool itself.
How to opt out
- Do Not Track or Global Privacy Control: enable one of these signals in your browser settings. When the browser sends them, the website and the portal do not load Clarity.
- Content blocker: privacy extensions that block the
clarity.msdomain prevent collection entirely. - Cookies: clearing the website or portal cookies removes the
_clckand_clskidentifiers; the next visit starts with no history.
Opting out of Clarity does not affect any FabricBoard functionality.
7. On your device
In the iOS app, session credentials are stored in the iOS Keychain, protected by the operating system, and are deleted when you sign out. A local copy of the most recent responses is kept for up to 24 hours so the app stays useful on a poor connection; that copy never contains credentials and is discarded when it ages out.
On the website and in the portal, your theme (light or dark) and language preference are stored only in your browser and never sent to us.
8. How long we keep it
For as long as the contract with your organization lasts. Once the contract ends, monitored environment data is deleted within the period agreed with the organization. Records the law requires us to keep, such as tax records, follow the applicable legal period. Clarity browsing data follows the tool's own retention period (section 6).
9. Security
- Traffic encrypted in transit (HTTPS/TLS) and data encrypted at rest
- Credentials and secrets stored in Azure Key Vault, never in code
- Per-organization isolation enforced in the database and the API layer
- Access through a Microsoft corporate account, with no separate FabricBoard password
- Role-based permission profiles: read, operate and administer
- Sensitive data masked before anything is sent to the AI provider
No system is immune to incidents. If a relevant security incident occurs, we will notify the affected organization and the competent data protection authority as required by the Brazilian data protection law (LGPD).
10. Your rights
The Brazilian General Data Protection Law (LGPD) guarantees you confirmation that processing exists, access, correction, anonymization, blocking, deletion, portability, information about data sharing, withdrawal of consent and review of automated decisions.
Since much of the data is processed on your organization's instructions, the fastest route is usually its data officer. You can also contact us directly through the contact below and we will forward it. We respond within 15 days.
11. Minors
FabricBoard is a professional tool intended for people over 18 in the course of their work. We do not knowingly collect data from children or teenagers.
12. Changes to this policy
Relevant changes will be published on this page, with the update date revised at the top. Changes that materially expand processing will be communicated to contracting organizations before taking effect.
Data protection officer
PRS Tecnologia · Available during business hours, Brasília time (UTC−3).