1. Information we collect
Account data — When you sign up, we store your email address and (optionally) your display name.
Content you submit — Chats, drafts, uploaded documents and analyses you create in the app.
Technical data — Standard server logs (IP, user agent, timestamps) used for security and abuse prevention.
2. How we use your data
- To operate the AI assistant, document analysis, drafting and research features you request.
- To save your work in your workspace so you can return to it.
- To secure the platform, prevent abuse and improve reliability.
- To communicate essential service updates.
3. AI processing
Prompts, uploaded documents and generated outputs are transmitted to our AI providers (Google Gemini, with Groq and OpenRouter as fallbacks) to produce responses. We do not use your content to train our own models. Guest conversations are not saved as signed-in workspace history; however, Kanoon-AI may process limited technical information such as request metadata, security logs, an anonymous visitor identifier used to enforce free daily limits, and session identifiers where necessary to operate, secure and improve the service.
4. Data sharing
We do not sell your data. We share the minimum necessary with infrastructure and AI providers (our managed cloud backend, Google Gemini, Groq and OpenRouter) strictly to operate the service. We may disclose data if legally required.
5. Data lifecycle at a glance
| Data | Where it lives | How long we keep it |
|---|---|---|
| Guest chat messages | Your browser | Until you clear browser storage; not saved as signed-in workspace history |
| Anonymous visitor / session ID | Browser local storage + our quota records | Retained only as needed to enforce free daily limits and protect the service |
| Account data (email, name, plan) | Our managed backend | Until you delete your account |
| Saved chats, drafts, analyses | Our managed backend | Until you delete the item or your account |
| Uploaded files | Processed by us and our AI providers | The original file is not retained in our application database after processing; file name, type and the generated analysis are saved to your account |
| Security and abuse logs | Our infrastructure | Retained only as needed for security, abuse prevention and reliability |
| Backups | Our managed backend | Deletion from backups follows our infrastructure provider's backup lifecycle; limited records may remain where legally required |
6. Retention & deletion
Signed-in content is retained until you delete it. Settings → Account → Delete Account is the primary, self-service way to permanently delete your account and saved workspace data — see Settings. You can also delete individual items from your workspace. If you cannot sign in, contact us as a fallback and we will action the deletion. Deletion is permanent and cannot be undone; backups are purged on their normal cycle, and limited security or legally required records may be retained.
7. Security
Traffic is encrypted in transit (TLS). Access to backend data is protected by row-level security so users can only read their own records. No online service can promise absolute security.
8. Your rights
You can access, correct, export or delete your data at any time. Contact us at /contact for any privacy request.
9. Age requirement
Accounts may only be created by users aged 18 or above, and you confirm your age when you sign up. Under-18 users must not create an account and may use the public informational content only with parent or guardian involvement. We do not knowingly collect data from children.
10. Changes
We will update this page when our practices change. Material changes will be highlighted in-app.
11. Contact
Questions? Reach us via the contact page.