Privacy Policy
Last updated: February 4, 2026
Quick Summary: AI AWARE™ is privacy-first. We don't store your scan content, don't sell your data, and only collect minimal analytics to improve the service. You're in control of your data.
1. Introduction
AI AWARE™ ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI detection application and services (collectively, the "Service").
We use FastSpring as our Merchant of Record for payment processing. By using our Service, you agree to the practices described in this Privacy Policy.
2. Information We Collect
2.1 Information You Provide
- Account Information: Email address, username (if applicable), account preferences
- Payment Information: Processed and stored securely by FastSpring (we do not store payment details)
- Communications: When you contact us for support, we collect your email and message content
2.2 Information We Process (Not Stored)
- Scan Content: Text, images, videos, or audio you submit for AI detection analysis
- Processing: Analyzed in real-time only
- Storage: Not stored on our servers after analysis completes
- Retention: 0 seconds (immediately deleted)
2.3 Automatically Collected Information
- Usage Data: Scan count, analysis types, timestamps (anonymous)
- Technical Data: Device type, operating system, app version, platform (iOS/Android/Web)
- Error Reports: Crash logs and error messages (via Sentry) - no personal content included
- Performance Metrics: API response times, page load speeds (anonymous)
2.4 Information We Do NOT Collect
- ❌ Personal identification beyond email
- ❌ Location data or GPS coordinates
- ❌ Contacts, messages, or call logs
- ❌ Browsing history or app usage outside AI AWARE™
- ❌ Photos or files from your device (unless you explicitly upload for scanning)
- ❌ Biometric data
3. How We Use Your Information
We use collected information for the following purposes:
- Provide Services: Process scans, deliver AI detection results, maintain your account
- Improve Quality: Analyze usage patterns to enhance detection accuracy and user experience
- Technical Support: Diagnose and fix technical issues using error reports
- Communications: Send service updates, security alerts, and respond to inquiries
- Legal Compliance: Meet legal obligations and protect our rights
4. Data Retention
| Data Type | Retention Period | Storage Location |
|---|---|---|
| Scan Content | 0 seconds | Not stored |
| Scan Results | Device only (localStorage) | Your device |
| Error Logs | 90 days | Sentry (encrypted) |
| Account Data | Until deletion requested | Vercel/Supabase |
| Analytics | 90 days | Anonymous aggregates |
5. Data Sharing and Disclosure
5.1 We Do NOT Sell Your Data
Zero Data Sales: We do not sell, rent, or trade your personal information to third parties for marketing purposes. Ever.
5.2 Third-Party Services
We use the following trusted service providers:
- FastSpring - Payment processing (Merchant of Record)
- Privacy Policy: fastspring.com/privacy
- Sentry - Error monitoring and performance tracking
- Privacy Policy: sentry.io/privacy
- Vercel - Cloud hosting and infrastructure
- Privacy Policy: vercel.com/legal/privacy-policy
- Google Cloud - AI analysis APIs (when Gemini is enabled)
- Privacy Policy: policies.google.com/privacy
These providers process data only as necessary to provide their services and are bound by confidentiality obligations.
5.3 Legal Requirements
We may disclose your information if required by law or in good faith belief that such action is necessary to:
- Comply with legal obligations or court orders
- Protect our rights, property, or safety
- Investigate fraud or security issues
- Protect users from harm
6. Your Rights and Choices
6.1 GDPR Rights (EU Users)
If you are in the European Union, you have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure ("Right to be Forgotten"): Request deletion of your data
- Right to Data Portability: Receive your data in a machine-readable format
- Right to Object: Object to processing of your data
- Right to Restrict Processing: Limit how we use your data
- Right to Withdraw Consent: Withdraw consent for data processing
To exercise these rights: Email privacy@aiawareapp.com with your request. We respond within 30 days.
6.2 CCPA Rights (California Users)
If you are a California resident, you have the following rights under CCPA:
- Right to Know: What personal information we collect, use, and share
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: Opt-out of data sales (Note: We don't sell data)
- Right to Non-Discrimination: Equal service regardless of privacy choices
"Do Not Sell My Personal Information": We do not sell personal information. This right is automatically honored.
6.3 How to Exercise Your Rights
- Access your data: Email privacy@aiawareapp.com
- Delete your data: Email privacy@aiawareapp.com with subject "Delete My Data"
- Export your data: Email privacy@aiawareapp.com - we'll provide JSON format
- Opt-out of analytics: Settings → Privacy → Disable Telemetry
7. Children's Privacy (COPPA Compliance)
Age Requirement: AI AWARE™ is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13.
If we discover that we have collected information from a child under 13 without parental consent, we will delete that information immediately. If you believe a child under 13 has provided us with personal information, please contact us at privacy@aiawareapp.com
8. Data Security
We implement industry-standard security measures to protect your information:
- Encryption: HTTPS/TLS encryption for all data in transit
- Access Controls: Strict employee access limits to user data
- No Storage of Scan Content: Immediate deletion after analysis
- Regular Audits: Ongoing security reviews and updates
- Secure Infrastructure: Hosted on enterprise-grade cloud platforms
However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
9. International Data Transfers
Your information may be processed in countries outside your country of residence, including the United States. We ensure appropriate safeguards are in place for such transfers, including Standard Contractual Clauses for EU data transfers.
10. Cookies and Tracking
We use minimal cookies and local storage:
- Essential Cookies: Authentication, preferences, security
- Analytics: Anonymous usage statistics (can be disabled in Settings)
- No Advertising Cookies: We do not use cookies for advertising
You can control cookies through your browser settings.
11. Behavior Telemetry (Optional)
Behavior telemetry (beta, optional). When enabled by you, AI AWARE™ analyzes on-page interaction patterns (typing cadence, paste bursts, focus changes) on your device to improve risk detection. We do not store raw keystrokes or message contents. You can turn this off anytime in Settings → Privacy → Disable Telemetry.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via:
- Email notification to registered users
- In-app notification
- Updated "Last updated" date at the top of this page
Continued use of the Service after changes constitutes acceptance of the updated policy.
13. Contact Us
For privacy-related questions or requests, please contact us:
- Email: privacy@aiawareapp.com
- Subject Lines:
- "Data Access Request" - to access your data
- "Delete My Data" - to request deletion
- "Privacy Question" - for general inquiries
- Response Time: Within 30 days (as required by GDPR/CCPA)
14. Legal Basis for Processing (GDPR)
We process your personal data based on the following legal grounds:
- Consent: When you opt-in to optional features (analytics, telemetry)
- Contractual Necessity: To provide the AI detection services you requested
- Legitimate Interest: To improve our services, ensure security, and provide customer support
- Legal Obligation: To comply with applicable laws and regulations
Summary of Your Privacy
- ✅ Your scan content is never stored
- ✅ We never sell your data
- ✅ You can delete your data anytime
- ✅ Anonymous analytics only (can be disabled)
- ✅ GDPR & CCPA compliant
- ✅ COPPA compliant (13+ age requirement)
This privacy policy was last updated on February 4, 2026, to comply with GDPR, CCPA, and COPPA requirements.