Privacy Policy

Last updated: February 25, 2026

1. Introduction

Welcome to ChatFlow ("we," "our," or "us"). We are committed to protecting your privacy and ensuring you have a positive experience on our website and in using our AI-powered customer support services (the "Service").

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website, use our SaaS platform, or interact with us. Please read this privacy policy carefully. By accessing or using our Service, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Personal Information

We collect information that you provide directly to us when you register for an account, subscribe to a plan, or contact support:

  • Account Information: Name, email address, password, and phone number.
  • Billing Information: Credit card details and billing address (processed securely by our payment providers, Stripe/PayPal).
  • Business Information: Company name, website URL, industry, and size.

2.2 Usage and AI Data

As an AI service provider, we process data to provide our core functionality:

  • Chat Logs: We store the content of conversations between your chatbots and your end-users to provide the service and history.
  • Knowledge Base: Any documents, text, or website content you upload for training your chatbot.
  • AI Model Interactions: Data sent to AI providers (e.g., OpenAI, Google Gemini) to generate responses.
  • Usage Metrics: Activity logs, feature usage, and performance metrics.

2.3 Automatically Collected Data

  • Device Data: IP address, browser type, operating system, and device identifiers.
  • Cookies: We use cookies to maintain your session, remember preferences, and analyze site traffic.

3. How We Use Your Information

We use the collected data for the following purposes:

  • Service Provision: To provide, operate, and maintain our AI chatbot platform.
  • AI Processing: To train and query the AI models to answer your customers' questions essentially.
  • Billing: To process your subscription payments and send invoices.
  • Communication: To send you technical notices, updates, security alerts, and support messages.
  • Improvement: To analyze usage trends and improve the quality of our AI responses and user interface.
  • Security: To detect, prevent, and address technical issues and fraudulent activities.

4. Data Sharing and Third Parties

We do not sell your personal data. We share information only with:

  • AI Service Providers: We transmit chat context to providers like OpenAI and Google to generate AI responses. These providers are bound by strict data processing agreements.
  • Service Providers: Hosting (Vercel/AWS), database (Supabase/Prisma), and analytics providers who assist our operations.
  • Payment Processors: Stripe and PayPal for secure payment processing. We do not store full credit card numbers.
  • Legal Compliance: If required by law, court order, or government regulation.

5. Data Retention

We retain your personal information and chatbot data for as long as your account is active or as needed to provide you with the Service. If you delete your account, we will delete your data from our active databases within 30 days, subject to legal retention obligations (e.g., for tax or auditing purposes).

6. Security

We implement industry-standard security measures, including encryption in transit (SSL/TLS) and at rest, to protect your data. However, no method of transmission over the Internet is 100% secure. You are responsible for keeping your account credentials confidential.

7. Your Rights

Depending on your jurisdiction (e.g., GDPR, CCPA), you may have the right to:

  • Access and receive a copy of your data.
  • Rectify inaccurate or incomplete data.
  • Request deletion of your personal data ("Right to be Forgotten").
  • Restrict or object to processing.
  • Export your data in a portable format.

To exercise these rights, please contact us at support@chatflow.ai.

8. Children's Privacy

Our Service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children.

9. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of any material changes via email or a prominent notice on our dashboard. Your continued use of the Service constitutes acceptance of the updated policy.

10. Contact Us

If you have questions about this Privacy Policy, please contact us: