Privacy Policy

Last updated: June 2026

1. Who we are

AIsentrix (“we”, “us”, “our”) is a product of Hostelastic Technologies LLP. We operate the AIsentrix platform at www.aisentrix.app.

For privacy-related enquiries, contact us at privacy@aisentrix.app.

2. Information we collect

Account information

When you create an account we collect your email address, chosen display name, and a hashed password. You may optionally add a profile bio and avatar.

Usage data

We log every AI query you make, including the model used, approximate token counts, cost in credits, and timestamp. This data powers your analytics dashboard and our billing system.

Payment information

Credit purchases are processed by our authorised payment provider. We never see, store, or have access to your card details or banking information. We receive only a transaction record confirming successful payment.

Technical data

We collect standard web server logs including IP addresses, browser user-agent strings, and page requests. We use Sentry for error monitoring; crash reports contain stack traces and may include anonymised request metadata but no personally identifiable information (PII).

Cookies

We use strictly necessary cookies for session authentication (Supabase Auth). We do not use advertising cookies or third-party tracking pixels.

3. How we use your information

We process your data on the following legal bases: (a) Contract — to provide the service you signed up for; (b) Legitimate interests — fraud prevention, security; (c) Legal obligation — financial record retention.

  • Providing and operating the AIsentrix service
  • Processing credit purchases and maintaining your wallet balance
  • Sending transactional emails (purchase receipts, low-balance alerts) — you may opt out of non-essential emails in Settings
  • Detecting and preventing fraud and abuse
  • Improving the platform through aggregated, anonymised analytics
  • Complying with legal obligations

We never sell your data, share it with advertisers, or use it to train AI models.

4. AI providers and third-party data processing

To fulfil your AI queries, your prompts are forwarded via third-party infrastructure aggregators to one or more of the following upstream model providers:

  • Anthropic — Claude models
  • OpenAI — GPT models
  • Google — Gemini models
  • DeepSeek / Mistral — specialised models

These third-party AI providers act as infrastructure processors to generate responses. Your prompts are subject to each provider's applicable data processing terms. We transmit only the minimum data required to fulfil each query. We do not associate your AIsentrix account identity with upstream provider requests where technically possible.

5. Sub-processors

ProcessorPurposeLocation
SupabaseDatabase, authentication, file storageEU / US
Dodo PaymentsPayment processingGlobal
CloudflareCDN, edge compute, DDoS protectionGlobal
AWS BedrockAI Model InfrastructureUS / Global
SentryError monitoringUS
UpstashRate limiting (Redis)EU / US
Zoho MailEmail communicationsIndia / Global

6. Data retention

  • Conversation history — retained until you delete conversations or close your account
  • Usage logs — retained for 24 months for billing accuracy and analytics, then deleted
  • Transaction records — retained for 7 years to comply with applicable financial regulations
  • Account data — deleted within 30 days of account closure on request

7. Your rights (GDPR & applicable law)

Depending on your jurisdiction, you may have the right to:

  • Access — request a copy of the data we hold about you
  • Rectification — correct inaccurate data
  • Erasure — request deletion of your personal data
  • Portability — receive your data in a machine-readable format
  • Restriction — ask us to limit processing while a dispute is resolved
  • Objection — object to processing based on legitimate interests

Exercise any of these rights by emailing privacy@aisentrix.app. We respond within 30 days. You may also use the self-service export and deletion tools in Settings → Privacy.

8. Security

We protect your data with industry-standard measures including:

  • TLS encryption in transit for all data
  • Encrypted storage at rest (Supabase / AWS)
  • Row-level security (RLS) ensuring each user can only access their own data
  • API key rotation and secrets management via Cloudflare Workers secrets
  • Automated dependency auditing and security monitoring via Sentry

To report a security vulnerability, email security@aisentrix.app. We aim to acknowledge reports within 48 hours.

9. Children

AIsentrix is not directed at children under 13 (or under 16 in the EU). We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

10. Changes to this policy

We may update this policy from time to time. Material changes will be communicated by email or by a notice in the dashboard at least 14 days before they take effect. Continued use after that date constitutes acceptance.

11. India — DPDP Act 2023

Hostelastic Technologies LLP processes personal data in compliance with the Digital Personal Data Protection Act, 2023 (India). You may exercise your rights as a Data Principal by contacting privacy@aisentrix.app.

12. Contact & Grievance Officer

In compliance with the IT (Intermediary Guidelines) Rules 2021, the contact details of the Grievance Officer are as follows:

Grievance Officer: Dhara Mehta
Legal Entity: Hostelastic Technologies LLP
Email: grievance@aisentrix.app

Complaints are acknowledged within 24 hours and resolved within 15 days.

General Inquiries
AIsentrix Platform
privacy@aisentrix.app