CostCatch ← Back to home

Cost Catch — Privacy Policy

Cost Catch is a product offered by RemoDone, Inc. ("RemoDone," "we," "us," or "our"), a Delaware corporation. RemoDone is the legal entity behind Cost Catch and the data controller for the personal data described in this Policy.

Effective date: August 9, 2026
Last updated: August 9, 2026

1. Overview and the one thing that makes this Policy different

Cost Catch is a Snowflake Native Application. It installs and runs entirely inside your own Snowflake account. It ingests your cloud, AI, and SaaS billing and usage data into tables that live in your Snowflake account, and that data never leaves it.

This has a direct and important privacy consequence:

We do not receive, access, store, or process the billing and usage data that Cost Catch ingests into your Snowflake account — except for the limited diagnostic information you expressly choose to share (see Section 5). Cost Catch's automated pipelines run on the schedule you set to pull each vendor's data into your Snowflake account; there is no Cost Catch server, external service, or pipeline that sends your billing and usage data out of your account — to us or to anyone else. That data — including any personal data it may contain, such as per-user usage detail — stays within your Snowflake trust boundary and remains under your control.

Because of this, most of what a typical privacy policy describes — a vendor collecting and holding your operational data on its own servers — simply does not apply to Cost Catch's core function.

This Policy therefore covers the limited categories of personal data RemoDone does handle, which relate to:

Section 2 explains the roles that matter under data-protection law; the rest of this Policy describes the data we actually handle and your choices.

2. Our role, your role, and the data plane

For the personal data described in this Policy, RemoDone is the controller (or "business" under California law): we decide why and how it is processed.

For the billing and usage data that Cost Catch ingests into your Snowflake account, you (our customer) are the controller. Because that data never leaves your account and we cannot access it, RemoDone is not a processor of it in ordinary operation. Where any narrow processing relationship does arise (for example, if you deliberately choose to send us diagnostic data — see Section 5), the terms of our Data Processing Addendum govern, and this Policy is read together with it.

If you are an individual whose personal data appears inside a customer's ingested data (for example, an employee whose per-user usage is recorded), that data is held by our customer inside their own Snowflake account, and the customer — not RemoDone — is the controller you should contact to exercise your rights. We generally have no access to that data and no ability to identify or act on it.

3. Who this Policy applies to

This Policy applies to:

It does not govern how Snowflake, or any third-party vendor whose data you ingest (AWS, Azure, GCP, OpenAI, Anthropic, and others), handles your data. Those relationships are governed by their own terms and privacy notices.

4. Personal data we collect

We aim to collect only what we need. The categories below reflect our actual practices.

Information you provide to us

Information collected automatically

Optional diagnostic information (shared at your discretion)

What we do not collect through the product

5. Diagnostic data (shared at your discretion)

Cost Catch runs inside your account, so we cannot see how it is performing unless you show us. Cost Catch writes operational and error information (for example, connector run status, error messages, and technical metadata) to a diagnostics schema inside your own Snowflake account.

Where diagnostic information you choose to share with us contains any personal data, we process it only to provide support and improve reliability, and the Data Processing Addendum applies.

6. How we use personal data

We use the personal data described above to:

We do not sell your personal data, and we do not use it to train machine-learning models. See Section 11 for your California rights.

7. Legal bases (where applicable)

Where data-protection law requires a legal basis for the personal data we process as a controller, we rely on: performance of a contract (providing Cost Catch and support); our legitimate interests (running and securing our business, balanced against your rights); your consent (for marketing); and compliance with legal obligations.

Opt-in diagnostic data is treated differently: it is enabled by a Customer administrator's deliberate choice, and where it contains personal data we process it on the Customer's behalf as a processor under our Data Processing Addendum — not on the basis of individual users' consent. We do not treat each employee or user appearing in diagnostic metadata as having personally consented.

8. Cookies, analytics, and logs

Our marketing website uses no website analytics, no non-essential cookies, and keeps no server or visitor logs. It requires no account or login. If we ever add analytics, we will update this Policy first and, where required, ask for your cookie choice before setting any non-essential cookie.

9. How we share personal data

We share personal data only as needed and never sell it. Cost Catch has no backend — the product runs entirely in your Snowflake account — so we use very few third parties. They are:

We do not share your ingested billing and usage data because we do not have it.

10. Data retention

We keep the limited personal data we actually hold (the contact, account, and correspondence information in Section 4) only as long as we need it for the purposes in this Policy, or as the law requires, and then we delete or anonymize it. Because Cost Catch has no product backend, the personal data we hold is minimal — mostly the emails and messages you send us, and any diagnostic information you choose to share, which we delete once the issue is resolved.

Your ingested data stays on your side. All of the billing and usage data Cost Catch ingests lives in your own Snowflake account. You control how long it is kept and when it is deleted, using your own Snowflake configuration. Disconnecting Cost Catch leaves already-landed data in place for you to manage.

11. Your privacy rights

California residents (CCPA/CPRA). You have the right to know what personal data we collect and how we use and disclose it; to access and delete it; to correct inaccuracies; and to opt out of "sale" or "sharing" of personal data (we do neither). We will not discriminate against you for exercising these rights. In the past 12 months we have collected the categories described in Section 4 for the purposes in Section 6, and we have not sold or shared personal data as those terms are defined under California law.

Other U.S. state privacy laws. Where other state laws apply, we honor the equivalent rights they provide.

EU/UK individuals. To the extent GDPR or UK GDPR applies to our processing, you may have rights of access, rectification, erasure, restriction, portability, and objection, and the right to lodge a complaint with a supervisory authority.

To exercise any right, contact us at team@costcatch.ai (see Section 14). We will verify your request and respond within the timeframes the law requires. You may use an authorized agent where the law permits.

Reminder: if your request concerns personal data held inside a customer's Snowflake account (ingested data), we cannot access it — please contact that organization directly.

12. Security

Security is central to how Cost Catch is built: it runs inside your Snowflake account, requires no data egress, and never handles your credentials. For the limited personal data RemoDone itself holds (Section 4), we maintain administrative, technical, and organizational safeguards appropriate to the risk, including access controls, encryption in transit, and least-privilege practices.

No method of transmission or storage is perfectly secure, and we cannot guarantee absolute security. We frame our security architecturally and do not claim any specific certification (e.g., SOC 2, ISO 27001) in this Policy unless and until separately stated in writing.

13. Children

Cost Catch is a business product and is not directed to children. We do not knowingly collect personal data from anyone under 16.

14. Changes and contact

We may update this Policy from time to time. Material changes will be reflected by updating the "Last updated" date and, where appropriate, by additional notice.

RemoDone, Inc. (offering Cost Catch)
Attn: Privacy
Email: team@costcatch.ai · Support: support@costcatch.ai