Privacy Policy

Last updated: December 5, 2025

1. Information We Collect

Personal Information

We collect information you provide directly to us:

  • Name and email address when you create an account
  • Payment information when you subscribe to paid plans
  • Communications you send to us
  • Feedback and survey responses

Usage Data

We automatically collect certain information:

  • Log data (IP address, browser type, pages visited)
  • Device information (device type, operating system)
  • Chatbot usage metrics and analytics
  • API usage and rate limiting data

Content Data

We store content you upload to create chatbots, including PDF documents, crawled website content, and custom responses.

2. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our Service
  • Process payments and send billing notifications
  • Generate AI-powered chatbot responses
  • Send technical notices and support messages
  • Respond to your comments and questions
  • Detect and prevent fraud and abuse
  • Analyze usage patterns to improve features

3. Data Sharing and Disclosure

We may share your information in the following situations:

  • Service Providers: With third parties who perform services on our behalf (e.g., OpenAI for embeddings, Stripe for payments)
  • Legal Requirements: If required by law or to respond to legal process
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • With Your Consent: When you explicitly agree to share information

We do not sell your personal data to third parties.

4. Data Security

We implement appropriate security measures to protect your data:

  • Encryption in transit (HTTPS/TLS)
  • Encryption at rest for sensitive data
  • Secure password hashing (bcrypt)
  • Regular security audits and updates
  • Access controls and authentication

5. Data Retention

We retain your information for as long as your account is active or as needed to provide services. Upon account deletion, we will delete or anonymize your personal data within 30 days, except where retention is required by law.

6. Your Rights

You have the following rights regarding your data:

  • Access: Request a copy of your personal data
  • Rectification: Request correction of inaccurate data
  • Deletion: Request deletion of your data
  • Portability: Request data export in a standard format
  • Objection: Object to certain data processing
  • Withdraw Consent: Withdraw consent for optional data processing

7. Cookies and Tracking

We use cookies and similar technologies to:

  • Maintain your session and authentication
  • Remember your preferences
  • Analyze usage patterns
  • Improve security

You can control cookies through your browser settings. See our Cookie Policy for more details.

8. Third-Party Services

Our Service integrates with third-party services:

  • OpenAI (for AI embeddings and responses)
  • Stripe (for payment processing)
  • Google/GitHub OAuth (optional authentication)

These services have their own privacy policies governing data use.

9. International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers.

10. Children's Privacy

Our Service is not intended for children under 13. We do not knowingly collect personal information from children under 13.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the Service.

12. Contact Us

For privacy-related questions or to exercise your rights, contact us at:

Email: privacy@novuschat.ai
Address: [Your Company Address]