This Privacy Policy describes how Aivastark ("we," "us," or "our") collects, uses, stores, and shares information when you use our white-label AI support chatbot platform (the "Service") at www.aivastark.com. By using the Service, you agree to the practices described here.
1. Information we collect
Account information. When you create an Aivastark account, we collect your name, email address, company, and password (stored hashed, never in plain text).
Knowledge base content. When you connect a data source (Google Drive, PDFs, website crawls, GitHub), we ingest, chunk, and embed the content into a vector database scoped to your organization.
Conversation data. Customer-facing conversations through the embedded widget are stored so you can review, audit, and analyze them in your dashboard.
Usage and telemetry. We collect anonymized analytics (page views, feature usage, performance metrics) via Google Analytics 4 with IP anonymization enabled.
Billing information. Payment details are processed by our payment provider; we never store full card numbers on our servers.
2. How we use information
- To provide, operate, and improve the Service.
- To generate AI responses by retrieving relevant passages from your knowledge base.
- To send transactional emails (account verification, billing receipts, security alerts).
- To detect, prevent, and respond to fraud or abuse.
- To comply with legal obligations.
We do not use your knowledge base content or conversation data to train shared foundation models. Your embeddings are scoped to your organization and are never co-mingled with other customers' data.
3. How we share information
We share information only with sub-processors necessary to operate the Service (e.g., infrastructure providers, LLM API providers for inference, email delivery, payments). Sub-processors are contractually required to maintain the same data-protection standards.
We do not sell your data, and we do not share it with third parties for advertising.
4. Data retention
Account data is retained while your account is active and for up to 90 days after cancellation, after which it is permanently deleted. You can request deletion at any time by emailing support@aivastark.com.
5. Your rights
Depending on your jurisdiction (e.g., GDPR in the EU/UK, CCPA in California), you may have the right to access, correct, delete, port, or restrict the processing of your personal data. Submit requests to support@aivastark.com.
6. Security
We encrypt data in transit (TLS) and at rest. Access to production systems is restricted, audited, and protected by multi-factor authentication. Report security concerns to security@aivastark.com.
7. International transfers
We may transfer data outside your country of residence. Where required, we use Standard Contractual Clauses or equivalent safeguards.
8. Changes to this policy
We will post any updates here with a revised "Last updated" date. Material changes will be communicated via email.
9. Contact
Questions about this policy? Email support@aivastark.com.