Privacy Policy

Last updated: March 2024

1. Introduction

ContractAI ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered property contract analysis service.

2. Information We Collect

Personal Information

We may collect personal information that you voluntarily provide when:

  • Creating an account (name, email address)
  • Uploading property contracts for analysis
  • Making payments (processed by Stripe; we don't store card details)
  • Contacting us for support

Contract Documents

When you upload a property contract for analysis, we temporarily store the document to process it using our AI system. The document content is used solely for analysis and generating your report.

Automatically Collected Information

When you access our Service, we may automatically collect:

  • Device information (browser type, operating system)
  • Usage data (pages visited, features used)
  • IP address and approximate location

3. How We Use Your Information

We use the information we collect to:

  • Provide and improve our contract analysis service
  • Process payments and manage your account
  • Communicate with you about your analyses and account
  • Detect and prevent fraud or abuse
  • Comply with legal obligations

4. Data Storage and Security

Your data is stored securely using industry-standard practices:

  • Contracts are stored in encrypted cloud storage (Vercel Blob)
  • User data is stored in Supabase with row-level security
  • All data transfers use TLS encryption
  • Payment data is processed by Stripe (PCI-DSS compliant)

5. Data Retention

We retain your contract documents and analysis results for as long as your account is active or as needed to provide services to you. You can request deletion of your data at any time.

6. Sharing Your Information

We do not sell, trade, or rent your personal information or contract documents to third parties. We may share information with:

  • Service Providers: Stripe (payments), OpenAI (AI analysis), Vercel (hosting)
  • Legal Requirements: When required by law or to protect our rights

7. OpenAI Data Usage

Contract content is sent to OpenAI's API for analysis. According to OpenAI's API terms, data sent via the API is not used to train their models. Your contract content is processed for analysis only and is not retained by OpenAI beyond the processing period.

8. Your Rights

Under Australian Privacy Law, you have the right to:

  • Access the personal information we hold about you
  • Request correction of inaccurate information
  • Request deletion of your data
  • Opt out of marketing communications

9. Cookies

We use essential cookies to maintain your session and provide the Service. We do not use tracking cookies or third-party advertising cookies.

10. Children's Privacy

Our Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.

12. Contact Us

If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact us at:

Email: privacy@contractai.com.au

13. Complaints

If you believe we have breached the Australian Privacy Principles, you may complain to the Office of the Australian Information Commissioner (OAIC). We request that you first contact us to allow us to address your concerns.