Privacy Policy

Effective date: May 10, 2025

Naabu AI ("we", "us", or "our") is committed to protecting your personal information. This Privacy Policy explains what data we collect, how we use it, and your rights regarding it. By using the Service you agree to the practices described here.

1. Information We Collect

a) Information you provide

  • Account data: name, email address, and password when you register.
  • Billing data: payment method details processed by Stripe. We do not store full card numbers.
  • Content: prompts, tasks, and files you submit to the AI agents.
  • Communications: messages you send to our support team.

b) Information collected automatically

  • Usage data: pages visited, features used, session duration, and interactions.
  • Device & log data: IP address, browser type, operating system, and error logs.
  • Cookies & local storage: used to keep you signed in and remember preferences.

c) Information from third parties

  • If you connect third-party services (e.g. Google Drive), we receive only the data necessary to provide that integration.

2. How We Use Your Information

  • To provide, operate, and improve the Service.
  • To process payments and send billing-related communications.
  • To authenticate you and keep your account secure.
  • To respond to support requests and communicate service updates.
  • To analyse aggregate usage patterns and improve product quality.
  • To comply with legal obligations.

We do not use your content to train AI models, sell your data to third parties, or use your data for advertising purposes.

3. Legal Basis for Processing (EEA / UK Users)

  • Contract: processing necessary to provide the Service you signed up for.
  • Legitimate interests: analytics, security monitoring, and fraud prevention.
  • Legal obligation: retaining billing records as required by law.
  • Consent: marketing communications (you can withdraw at any time).

4. Sharing Your Information

  • Service providers: trusted sub-processors (cloud hosting, payment processing, AI inference) contractually bound to protect your data.
  • Legal requirements: when required by law, court order, or to protect safety.
  • Business transfer: if Naabu AI is acquired or merges, your data may transfer as a business asset with prior notice.

We never sell your personal data.

5. Data Retention

We retain account data for as long as your account is active and for up to 90 days after deletion. Billing records are kept for up to 7 years as required by applicable tax law. Anonymised usage data may be retained indefinitely.

6. Data Security

We use encryption in transit (TLS), encryption at rest, access controls, and regular security reviews. No method of transmission or storage is 100% secure.

7. Cookies and Local Storage

  • Session storage: holds your auth token for the browser session when "Remember me" is not selected. Cleared when you close the tab.
  • Local storage: holds your auth token for up to 30 days when you select "Remember me".
  • Strictly necessary cookies: required for the Service to function and cannot be disabled.

We do not use tracking or advertising cookies.

8. Your Rights

Depending on your location, you may have the right to:

  • Access a copy of the personal data we hold about you.
  • Correct inaccurate or incomplete data.
  • Delete your account and associated personal data.
  • Restrict or object to certain types of processing.
  • Data portability: receive your data in a machine-readable format.
  • Withdraw consent for any processing based on consent, at any time.

To exercise any of these rights, contact us or email hello@naabu.ai. We will respond within 30 days.

9. Children's Privacy

The Service is not directed at children under 16. We do not knowingly collect data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

10. International Transfers

Your data may be processed in countries outside your own. Where required, we use appropriate safeguards (such as Standard Contractual Clauses) to protect transferred data.

11. Changes to This Policy

We will notify you by email or in-app notice at least 14 days before material changes take effect. The "Effective date" at the top always reflects the current version.

12. Contact

For questions or data requests, contact us or email hello@naabu.ai. EEA/UK users may also lodge a complaint with their local data protection authority.