Privacy Policy

Your Privacy is Our Top Priority

We are committed to protecting your privacy and ensuring the security of your personal and business data. This policy explains how we collect, use, and protect your information.

Last Updated: December 15, 2024
GDPR Compliant

SOC 2 Compliant

Certified for security and availability

AES-256 Encryption

Military-grade data protection

GDPR Compliant

Full European privacy compliance

No Data Mining

We never use your documents to train our models

Information We Collect

Personal Information

We collect information you provide directly to us, such as when you create an account, contact us, or use our services. This may include your name, email address, phone number, company information, and any other information you choose to provide.

Document Data

When you use our document processing services, we process the documents you upload. We implement strict security measures to protect this data and only process it as necessary to provide our services.

Usage Information

We collect information about how you use our services, including API calls, processing times, error logs, and feature usage patterns to improve our platform.

Technical Information

We automatically collect certain technical information, including your IP address, browser type, operating system, and device identifiers when you access our services.

How We Use Your Information

Service Provision

We use your information to provide, maintain, and improve our document processing services, including OCR, GPT analysis, and blockchain verification.

Customer Support

We use your contact information to respond to your inquiries, provide customer support, and send you technical notices and security alerts.

Platform Improvement

We analyze usage patterns and feedback to enhance our AI models, improve accuracy, and develop new features for our platform.

Legal Compliance

We may use your information to comply with legal obligations, resolve disputes, and enforce our agreements.

Information Sharing

Service Providers

We may share your information with trusted third-party service providers who assist us in operating our platform, such as cloud hosting providers and payment processors, under strict confidentiality agreements.

Business Transfers

If we are involved in a merger, acquisition, or asset sale, your information may be transferred as part of that transaction, subject to the same privacy protections.

Legal Requirements

We may disclose your information if required by law, court order, or governmental request, or to protect our rights, property, or safety.

No Document Content Sharing

We never share the content of your processed documents with third parties unless required by law or with your explicit consent.

Data Security

Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption. Our blockchain verification adds an additional layer of security and immutability.

Access Controls

We implement strict access controls and multi-factor authentication for all our systems. Only authorized personnel have access to your data on a need-to-know basis.

Regular Audits

We conduct regular security audits and penetration testing to identify and address potential vulnerabilities in our systems.

Compliance

We maintain SOC 2 Type II, GDPR, HIPAA, and other relevant compliance certifications to ensure the highest standards of data protection.

Your Rights

Access and Portability

You have the right to access, update, or delete your personal information. You can also request a copy of your data in a portable format.

Data Correction

You can request corrections to any inaccurate or incomplete personal information we hold about you.

Opt-Out Rights

You can opt out of non-essential communications and certain data processing activities. Essential service communications will continue as needed.

Data Deletion

You can request deletion of your account and associated data. We will comply within 30 days, except where we are required to retain data for legal or regulatory purposes.

International Transfers

Global Operations

Our services operate globally, and your information may be transferred to and processed in countries other than your country of residence.

Adequate Protection

We ensure that any international transfers of personal data are protected by appropriate safeguards, including standard contractual clauses and adequacy decisions.

EU-US Data Transfers

For transfers from the EU to the US, we comply with applicable data transfer mechanisms and maintain appropriate certifications.

Data Retention and Deletion

Retention Periods

  • • Account information: Retained for the duration of your account and 3 years after closure
  • • Processed documents: Deleted after 90 days unless you specify longer retention
  • • Usage logs: Retained for 12 months for service improvement and security purposes
  • • Blockchain records: Immutable by design but contain no personal or document content

Automatic Deletion

We automatically delete processed document content after the specified retention period. Blockchain verification records remain for audit purposes but contain only cryptographic hashes, not actual document content.

Questions About Your Privacy?

Privacy Officer

Email: privacy@documindai.xyz

Phone: +1 (727) 555-0123

Response time: Within 48 hours

Mailing Address

Documind AI - Privacy Team

855 Central Ave Unit 1202

St Petersburg, FL 33701

United States

EU Representative

For EU residents, our European representative can be contacted at: eu-privacy@documindai.xyz for any GDPR-related inquiries.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of any material changes by email and by posting the updated policy on our website. Your continued use of our services after such notification constitutes acceptance of the updated policy.

Current Version: This privacy policy was last updated on December 15, 2024and is effective immediately for new users and after 30 days for existing users.