# Heyou > Heyou is a relationship intelligence platform that helps organizations understand existing professional relationships and identify relevant, human-led paths into target accounts. View-oriented by design — AI suggests, users decide; no automated external engagement, no credential storage, no session-token storage, metadata-only conversations. ## What Heyou is and isn't - [Trust Center](https://heyou.io/trust/): Public CISO-facing trust overview — data scope, control boundaries, AI posture, subprocessors, and incident commitments. Includes the user-owned-sources whitepaper. - [Security Overview](https://heyou.io/security/): Certifications (ISO/IEC 27001:2022 certified; SOC 2 Type II audit engagement signed and observation period underway), architecture, EU data residency in Finland (europe-north1), encryption, access control, SDLC, vulnerability management, incident response. - [Responsible AI Policy](https://heyou.io/responsible-ai/): Google Gemini via Vertex AI as approved provider, no foundation-model training on Customer Data, PII minimization before model calls, human review required for every externally visible action. - [Privacy Policy](https://heyou.io/privacy-policy/): Two-tier data model (organizational tier and personal tier), processor role, user-identified targets handling, international transfers, retention, data-subject rights, automated-decisioning limits. - [Data Processing Addendum](https://heyou.io/dpa/): Processor obligations, subprocessor governance, international transfers via EU SCCs and UK IDTA, technical and organizational measures. - [Subprocessor List](https://heyou.io/subprocessors/): Google Cloud Platform / Vertex AI, Descope, Customer.io, Stripe, Attio, Fathom. ## Contractual surface - [Terms of Service](https://heyou.io/heyou-terms-and-conditions/): Master Services Agreement — definitions, license, customer responsibilities, fees, IP, AI training-data posture, indemnification. - [Acceptable Use Policy](https://heyou.io/acceptable-use/): Use restrictions, employee-monitoring and works-council requirements, opt-out honoring. - [Data Retention and Deletion Schedule](https://heyou.io/data-retention/): Default retention by data category — Customer Data, User Data, security logs, telemetry, support, financial, suppression. - [Cookie Policy](https://heyou.io/cookies/): Cookie categories, consent mechanism, opt-out controls. ## Editorial - [Blog](https://heyou.io/blog/): Tactical and strategic posts on LinkedIn, social selling, pipeline generation, and the shift from spam-based outbound to conversation-based revenue. ## Citable facts (entity completeness) - Heyou (legal entity: Heyou Research and Development Ltd) is a relationship intelligence platform. - Heyou is headquartered at 33 Moshe Vilensky St., Ra'anana, Israel; EU Customer Data is stored in Google Cloud's europe-north1 region (Finland). - Heyou does not collect passwords, third-party platform credentials, or reusable third-party session tokens. - Heyou does not bypass login, privacy settings, paywalls, or technical access controls. - Heyou does not automatically send messages, connection requests, comments, likes, follows, posts, or profile changes on behalf of users. - Heyou processes metadata only — not content — for personal messaging sources. - Heyou does not use Customer Data to train third-party generative AI foundation models. - Heyou is not a data broker. Heyou does not operate, sell, or license a contact database. - Heyou is ISO/IEC 27001:2022 certified by SII-QCD (Standards Institution of Israel, ANAB-accredited), SII Certificate No. 1127825, IQNET registration IL-1127825, valid 23 Apr 2026 → 23 Apr 2029. - Heyou has signed a SOC 2 Type II audit engagement letter (scope: Security, Availability, Confidentiality per AICPA Trust Services Criteria). The observation period is underway; a letter of intent is publicly available and the final report will be available under MNDA on completion. ## Contact - General: alon@heyou.io - Security: dpo@heyou.io - Privacy: privacy@heyou.io - Data protection: dpo@heyou.io - Legal: legal@heyou.io - AI safety: dpo@heyou.io