Effective Date: January 20, 2025
Last Modified: January 20, 2025
Version: 1.1
1. Scope of Application
This Privacy Notice applies globally to users of Based AI, regardless of location. By accessing our services, you consent to the collection, use, and transfer of your data as outlined in this notice.
2. Data We Collect
- Email Address: Collected via Google sign-in for account management and fraud prevention.
- Chat Logs: Retained for continuity of service and associated with individual accounts.
- Session Activity: Temporary data (e.g., model selection), deleted upon page reload.
We do not collect sensitive data such as IP addresses, geolocation, or personal preferences beyond session activity.
3. Legal Basis for Processing
- Contractual Necessity: To provide access to our AI services.
- Legitimate Interests: To maintain service quality, prevent abuse, and ensure security.
- User Consent: Obtained during account creation and for data deletion requests.
4. How We Use Your Data
- Identify and manage individual user accounts.
- Ensure secure payment processing.
- Retain chat logs for service continuity.
We do not share, sell, or process chat logs for analytics or profiling.
5. Third-Party Service Providers
- Google: Provides secure login through Google sign-in. See Google’s Privacy Policy.
- NOWpayments: Processes payments and subscription management. See NOWpayments’ Privacy Policy.
We have Data Processing Agreements (DPAs) with these providers to ensure compliance with GDPR and other regulations.
6. International Data Transfers
Your data may be stored on secure servers located outside your country. While the precise server location is confidential for security reasons, we ensure compliance with cross-border data transfer mechanisms such as:
- Standard Contractual Clauses (SCCs) for transfers outside the EU.
- Privacy Shield Frameworks (or equivalent) where applicable.
8. Data Retention
- Email Addresses: Retained until account deletion.
- Chat Logs: Retained indefinitely unless the user deletes their account or specific conversations.
9. Your Rights
- Access: Request a copy of your data.
- Rectification: Correct inaccurate or incomplete data.
- Erasure: Delete your account and associated data.
- Restriction: Limit how we process your data.
- Portability: Receive your data in a structured, machine-readable format.
- Objection: Object to processing based on legitimate interests.
- Automated Decision-Making: Request human intervention or an explanation of AI-generated responses.
- Complaint: Lodge a complaint with a supervisory authority.
Response Timeframes: We aim to respond to all user requests within 30 days.
10. Security Measures
- Encryption: All data is encrypted in transit (via HTTPS) and at rest.
- Access Controls: Only authorized personnel can access our servers.
- Authentication: Google login ensures secure account access.
11. Incident Response and Breach Notification
- Monitoring: Our servers are regularly monitored for security threats.
- Breach Notification: In the event of a data breach, affected users will be notified within 72 hours, as required by GDPR.
12. Children’s Privacy
Based AI is intended for users aged 18 and older. We do not knowingly collect data from children. If we discover data from a user under 18, it will be promptly deleted.
13. Contact Information
For privacy inquiries or to exercise your rights, contact us:
- Email: basedai.contact@gmail.com
- Mail: Based AI, [Insert Physical Address]
14. Updates to This Notice
This Privacy Notice may be updated periodically.
- Notification: Changes will be announced on the website or during login.
- Version History:
- Version 1.0: Initial version published on January 20, 2025.
- Version 1.1: Updated to include international data transfer mechanisms and additional compliance details.