Privacy Policy
We respect your privacy. This policy explains what information we collect, why we collect it, and how you can control your data.
Last updated: September 16, 2025
Quick Navigation
1. Introduction
This Privacy Policy applies to the ConvoVerse platform (the "Service"). By using the Service you agree to the collection and use of information in accordance with this Policy. If you do not agree, you should discontinue use.
2. Data We Collect
2.1 Account & Profile
- Email address (hashed internally for some operations)
- Display name / username
- Authentication provider identifiers
- Avatar (if provided)
2.2 Usage Data
- Page views & interaction logs (aggregated)
- Search queries (anonymized / aggregated)
- Ratings, bookmarks, comments
- API request metadata (timestamps, status codes)
2.3 Content Data
- Conversations you import or create
- Tags, titles, descriptions
- System / prompt context you voluntarily include
2.4 Technical
- Browser user-agent & basic device info
- IP address (short-lived for security & abuse prevention)
- Session tokens & CSRF tokens
2.5 Optional Communications
- Support messages & feedback emails
- Bug reports and diagnostic attachments
3. How We Use Data
- Provide and personalize the Service
- Maintain security, prevent abuse & fraud
- Improve features via aggregated analytics
- Communicate service updates & transactional emails
- Enforce policies & legal compliance
- Assist moderation, quality ranking & reputation calculations
4. Legal Bases (EEA/UK)
Where GDPR applies we rely on the following legal bases:
- Contract: To provide the Service you requested.
- Legitimate Interests: Improving safety, preventing abuse, enhancing reliability.
- Consent: Optional communications or cookies not strictly necessary.
- Legal Obligation: Compliance with applicable laws.
6. Data Retention
- Account data retained while account is active.
- Deleted conversations are removed from active indices; backups cycle out on a rolling basis (typically < 90 days).
- Security logs kept briefly unless investigating abuse.
- Aggregated analytics may persist without personal identifiers.
7. Security
We apply industry-aligned practices: hashed passwords (if used), least-privilege database access, encrypted transport (HTTPS), and periodic dependency patching. No system is perfectly secure; we encourage responsible disclosure of vulnerabilities.
Report security issues to info@convoverse.ai.
9. International Transfers
Your data may be processed in jurisdictions different from your own. We implement measures where required (e.g., standard contractual clauses) for cross-border transfers.
10. Your Rights
Depending on region you may have rights to access, correct, delete, export, or restrict processing of your personal data.
- Access & portability requests: email info@convoverse.ai
- Delete account via settings or support request
- Withdraw consent where processing is consent-based
We may need to verify identity before fulfilling requests.
11. Children
The Service is not directed to individuals under 16. We do not knowingly collect personal data from children. If you believe a child has provided data, contact us for removal.
12. Changes to This Policy
We may update this Policy to reflect operational, legal, or regulatory changes. Material updates will be announced; continued use indicates acceptance.
13. Contact
Questions or requests: info@convoverse.ai