Privacy Policy - Citta AI Inc.
Last Updated: 20 November 2025
Citta AI Inc. ("Citta AI", "we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, disclose, and safeguard information when you visit our website (citta.ai), engage with us, or use our cloud-based data analytics platform and related services ("Services").
By accessing or using our Services, you agree to this Privacy Policy. If you do not agree, please discontinue use.
1. Scope of This Privacy Policy
This Privacy Policy applies to:
- Visitors to our website
- Registered users of the Citta AI platform
- Prospective customers engaging with our sales or support teams
- Users accessing documentation, APIs, demo environments, or integrations
It does not apply to:
- Third-party services integrated with our platform
- Websites we do not own or control
- Information processed by customers outside our platform
If you upload or process personal data within our platform, you act as a Data Controller, and Citta AI acts as a Data Processor, subject to our Data Processing Agreement (DPA).
2. Information We Collect
We collect information in several ways to provide and improve the Services.
2.1 Information You Provide Directly
This includes information you voluntarily share, such as:
Account & Profile Information
- Full name
- Email address
- Company name, job role, department
- Account username and credentials
- Phone number (optional)
Business Information
- Organization details
- Billing address
- Tax information (if applicable)
- Subscription and transaction details
Communications
- Support requests
- Chat messages
- Emails to our support or legal teams
- Feedback or product suggestions
- Survey responses
Content You Upload
- Datasets
- Pipeline configurations
- Job schedules
- Workflow definitions
- Logs or metadata files
We do not access Customer Data unless necessary for:
- Troubleshooting
- Security investigations
- Customer support
- Legal compliance
- Requests made by you
2.2 Information Collected Automatically
When you visit or use our Services, we automatically collect certain information:
Device & Network Information
- IP address
- Browser type and version
- Device type and operating system
- Network identifiers
Usage & Interaction Information
- Pages viewed
- Buttons clicked
- Time spent on pages
- Referring URLs
- Login timestamps
- Error logs and crash reports
Platform Activity Information
For authenticated users:
- Pipeline run statistics
- Job success/failure metrics
- API usage and endpoint calls
- User actions in the UI
- Metadata generated during usage
This information helps us maintain performance, improve reliability, detect issues, and deliver personalized experiences.
2.3 Cookies and Similar Technologies
We use cookies and related technologies to:
- Keep your session active
- Save preferences
- Analyze website and platform performance
- Improve navigation and user experience
- Provide secure authentication
- Support marketing analytics
Full details are in our Cookie Policy.
2.4 Information from Third Parties
We may receive information from:
- Identity providers (Google, Microsoft, etc.)
- Customer referrals
- Integration partners
- Public data sources
- Marketing platforms or analytics tools
- Payment processors
This may include email addresses, company information, or verification tokens.
3. How We Use Your Information
We use personal and technical information to operate, maintain, and enhance the Services.
3.1 To Provide and Improve the Services
- Operate the cloud platform
- Run data pipelines and workflows
- Maintain account functionality
- Process transactions and billing
- Generate usage analytics
- Enhance algorithms and system performance
3.2 To Communicate With You
- Respond to support tickets
- Send onboarding, product updates, and release notes
- Notify you about maintenance, changes, or new features
- Provide security and incident alerts
- Communicate billing notices or account status
3.3 For Security, Compliance, and Risk Management
- Detect fraud, abuse, or unauthorized access
- Enforce Terms of Service
- Monitor operational health
- Comply with legal obligations
- Investigate security incidents
3.4 For Research and Product Development
- We may use anonymized or aggregated data to:
- Improve platform reliability
- Enhance workflow automation
- Train algorithms
- Develop new features
- Benchmark system performance
We do not use your identifiable Customer Data for external research without consent.
3.5 For Marketing and Sales
With your consent where required, we may:
- Send newsletters or product announcements
- Tailor website experiences
- Analyze marketing campaign performance
- Share case studies (only with permission)
You may opt out of marketing emails anytime.
4. How We Share Information
We only share information when necessary and with appropriate safeguards.
4.1 Service Providers (Processors)
We use third-party providers for:
- Cloud hosting
- Analytics
- Payment processing
- Logging and monitoring
- Email delivery
- Customer support tools
- Authentication
These providers are contractually bound to:
- Keep data confidential
- Use data solely for service delivery
- Implement adequate security measures
4.2 Business Transfers
If Citta AI is involved in a merger, acquisition, financing, asset transfer, or bankruptcy, your information may be transferred to the succeeding entity under the same or equivalent privacy commitments.
4.3 Legal Obligations
We may disclose information if required by:
- Law, regulation, subpoena, or court order
- Government or regulatory authorities
- Security audits or investigations
We only comply with lawful, binding requests.
4.4 With Your Consent
We may share data with partners or publish testimonials only if you provide explicit consent.
5. Data Security
We use industry-standard safeguards including:
- Encryption at rest and in transit
- Access control and multifactor authentication
- Network security and firewalls
- Automated threat detection
- Regular penetration testing
- Audit trails and monitoring
- Segregated environments for Customer Data
While we implement robust security, no system is completely secure. You are responsible for:
- Keeping credentials safe
- Managing internal user access
- Securing devices used to access the Services
6. Data Retention
We retain information only as long as necessary for:
- Providing the Services
- Legal and regulatory compliance
- Security and auditing
- Backup and disaster recovery
Upon termination of your account:
- Customer Data may be deleted after a retention window
- You may request export or early deletion
- Backups may persist for a limited period (encrypted)
7. International Data Transfers
Citta AI is a U.S.-registered company. Your information may be stored or processed in:
- The United States
- Regions selected in your infrastructure plan
- Countries where service providers operate
Where required by law (e.g., GDPR), we rely on:
- Standard Contractual Clauses (SCCs)
- Adequacy decisions
- Appropriate technical safeguards
- Contractual commitments
8. Your Rights and Choices
Depending on your jurisdiction, you may have the right to:
Access
Request a copy of personal data we hold.
Correction
Update or amend inaccurate information.
Deletion
Request erasure of personal data where legally allowed.
Restriction
Limit how your data is processed.
Objection
Object to processing based on legitimate interests.
Portability
Receive personal data in a transferable format.
Withdraw Consent
Opt out of marketing communications anytime. Contact privacy@citta.ai to exercise your rights. We may need to verify your identity before processing requests.
9. Children's Privacy
Our Services are not intended for children under 16. We do not knowingly collect personal data from children. If you believe a child's data has been collected, contact us immediately at privacy@citta.ai.
10. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for their content or privacy practices. You should review their privacy policies before interacting with them.
11. Automated Decision-Making
Citta AI does not use personal data for automated decision-making that produces legal or significant effects on users. Aggregated usage data may be used to optimize performance or user experience.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If changes are significant, we will provide notice via email or in the platform. Your continued use of the Services after updates constitutes acceptance.
13. Contact Information
If you have any questions or concerns about this Privacy Policy, contact us:
Citta AI Inc.
Email: contact@citta.ai
Website: https://www.citta.ai
Address:: 2261 Market Street STE 86002 San Francisco, CA 94114