Privacy Policy

Last updated: February 2026

1. Information We Collect

Account Information: Email address, full name, company name (optional), and authentication data when you sign up.

Usage Data: API calls, service usage, credit consumption, timestamps, IP addresses, and request metadata.

Payment Data: Processed by Lemon Squeezy. We store transaction IDs and credit amounts but never your payment card details.

Technical Data: Browser type, device info, and cookies for authentication purposes.

2. How We Use Your Data

We use your data to: (a) provide and improve our AI services; (b) process payments and manage credits; (c) track usage for billing and analytics; (d) communicate service updates; (e) prevent fraud and abuse; (f) comply with legal obligations.

3. Data Storage & Security

Your data is stored in Supabase (PostgreSQL) with encryption at rest. We use Row Level Security (RLS) policies to ensure users can only access their own data. All connections are encrypted via TLS/SSL.

4. AI Content Processing

When you use our AI services, your input prompts are sent to OpenAI for processing. We do not store the full content of your requests beyond sanitized metadata for usage tracking. OpenAI's data policies apply to content processed through their API.

5. Data Sharing

We do NOT sell your personal data to third parties. We share data only with: (a) Supabase (database hosting); (b) OpenAI (AI processing); (c) Lemon Squeezy (payment processing); (d) Vercel (hosting); (e) law enforcement when legally required.

6. Cookies

We use essential cookies only for authentication and session management. We do not use tracking cookies, advertising cookies, or third-party analytics cookies.

7. Your Rights

You have the right to: (a) access your personal data; (b) correct inaccurate data; (c) request deletion of your data; (d) export your data; (e) object to processing; (f) withdraw consent at any time. To exercise these rights, contact support@kognitrix.ai.

8. GDPR & CCPA Compliance

We process data in compliance with GDPR (for EU users) and CCPA (for California users). We act as a data controller for account information and a data processor for AI-generated content.

9. Data Retention

Account data is retained while your account is active. Usage logs are retained for 12 months. Transaction records are retained for 7 years for tax and legal purposes. You may request earlier deletion of non-essential data.

10. Changes to This Policy

We may update this Privacy Policy periodically. Material changes will be notified via email. Continued use of the Platform after changes constitutes acceptance.

11. Contact

For privacy-related inquiries, contact us at privacy@kognitrix.ai.