Privacy Policy - Citta AI Inc.

Last Updated: 20 November 2025

Citta AI Inc. ("Citta AI", "we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, disclose, and safeguard information when you visit our website (citta.ai), engage with us, or use our cloud-based data analytics platform and related services ("Services").

By accessing or using our Services, you agree to this Privacy Policy. If you do not agree, please discontinue use.

1. Scope of This Privacy Policy

This Privacy Policy applies to:

  • Visitors to our website
  • Registered users of the Citta AI platform
  • Prospective customers engaging with our sales or support teams
  • Users accessing documentation, APIs, demo environments, or integrations

It does not apply to:

  • Third-party services integrated with our platform
  • Websites we do not own or control
  • Information processed by customers outside our platform

If you upload or process personal data within our platform, you act as a Data Controller, and Citta AI acts as a Data Processor, subject to our Data Processing Agreement (DPA).

2. Information We Collect

We collect information in several ways to provide and improve the Services.

2.1 Information You Provide Directly

This includes information you voluntarily share, such as:

Account & Profile Information
  • Full name
  • Email address
  • Company name, job role, department
  • Account username and credentials
  • Phone number (optional)
Business Information
  • Organization details
  • Billing address
  • Tax information (if applicable)
  • Subscription and transaction details
Communications
  • Support requests
  • Chat messages
  • Emails to our support or legal teams
  • Feedback or product suggestions
  • Survey responses
Content You Upload
  • Datasets
  • Pipeline configurations
  • Job schedules
  • Workflow definitions
  • Logs or metadata files

We do not access Customer Data unless necessary for:

  • Troubleshooting
  • Security investigations
  • Customer support
  • Legal compliance
  • Requests made by you

2.2 Information Collected Automatically

When you visit or use our Services, we automatically collect certain information:

Device & Network Information
  • IP address
  • Browser type and version
  • Device type and operating system
  • Network identifiers
Usage & Interaction Information
  • Pages viewed
  • Buttons clicked
  • Time spent on pages
  • Referring URLs
  • Login timestamps
  • Error logs and crash reports
Platform Activity Information

For authenticated users:

  • Pipeline run statistics
  • Job success/failure metrics
  • API usage and endpoint calls
  • User actions in the UI
  • Metadata generated during usage

This information helps us maintain performance, improve reliability, detect issues, and deliver personalized experiences.

2.3 Cookies and Similar Technologies

We use cookies and related technologies to:

  • Keep your session active
  • Save preferences
  • Analyze website and platform performance
  • Improve navigation and user experience
  • Provide secure authentication
  • Support marketing analytics

Full details are in our Cookie Policy.

2.4 Information from Third Parties

We may receive information from:

  • Identity providers (Google, Microsoft, etc.)
  • Customer referrals
  • Integration partners
  • Public data sources
  • Marketing platforms or analytics tools
  • Payment processors

This may include email addresses, company information, or verification tokens.

3. How We Use Your Information

We use personal and technical information to operate, maintain, and enhance the Services.

3.1 To Provide and Improve the Services

  • Operate the cloud platform
  • Run data pipelines and workflows
  • Maintain account functionality
  • Process transactions and billing
  • Generate usage analytics
  • Enhance algorithms and system performance

3.2 To Communicate With You

  • Respond to support tickets
  • Send onboarding, product updates, and release notes
  • Notify you about maintenance, changes, or new features
  • Provide security and incident alerts
  • Communicate billing notices or account status

3.3 For Security, Compliance, and Risk Management

  • Detect fraud, abuse, or unauthorized access
  • Enforce Terms of Service
  • Monitor operational health
  • Comply with legal obligations
  • Investigate security incidents

3.4 For Research and Product Development

  • We may use anonymized or aggregated data to:
  • Improve platform reliability
  • Enhance workflow automation
  • Train algorithms
  • Develop new features
  • Benchmark system performance

We do not use your identifiable Customer Data for external research without consent.

3.5 For Marketing and Sales

With your consent where required, we may:

  • Send newsletters or product announcements
  • Tailor website experiences
  • Analyze marketing campaign performance
  • Share case studies (only with permission)

You may opt out of marketing emails anytime.

4. How We Share Information

We only share information when necessary and with appropriate safeguards.

4.1 Service Providers (Processors)

We use third-party providers for:

  • Cloud hosting
  • Analytics
  • Payment processing
  • Logging and monitoring
  • Email delivery
  • Customer support tools
  • Authentication

These providers are contractually bound to:

  • Keep data confidential
  • Use data solely for service delivery
  • Implement adequate security measures

4.2 Business Transfers

If Citta AI is involved in a merger, acquisition, financing, asset transfer, or bankruptcy, your information may be transferred to the succeeding entity under the same or equivalent privacy commitments.

4.3 Legal Obligations

We may disclose information if required by:

  • Law, regulation, subpoena, or court order
  • Government or regulatory authorities
  • Security audits or investigations

We only comply with lawful, binding requests.

4.4 With Your Consent

We may share data with partners or publish testimonials only if you provide explicit consent.

5. Data Security

We use industry-standard safeguards including:

  • Encryption at rest and in transit
  • Access control and multifactor authentication
  • Network security and firewalls
  • Automated threat detection
  • Regular penetration testing
  • Audit trails and monitoring
  • Segregated environments for Customer Data

While we implement robust security, no system is completely secure. You are responsible for:

  • Keeping credentials safe
  • Managing internal user access
  • Securing devices used to access the Services

6. Data Retention

We retain information only as long as necessary for:

  • Providing the Services
  • Legal and regulatory compliance
  • Security and auditing
  • Backup and disaster recovery

Upon termination of your account:

  • Customer Data may be deleted after a retention window
  • You may request export or early deletion
  • Backups may persist for a limited period (encrypted)

7. International Data Transfers

Citta AI is a U.S.-registered company. Your information may be stored or processed in:

  • The United States
  • Regions selected in your infrastructure plan
  • Countries where service providers operate

Where required by law (e.g., GDPR), we rely on:

  • Standard Contractual Clauses (SCCs)
  • Adequacy decisions
  • Appropriate technical safeguards
  • Contractual commitments

8. Your Rights and Choices

Depending on your jurisdiction, you may have the right to:

Access

Request a copy of personal data we hold.

Correction

Update or amend inaccurate information.

Deletion

Request erasure of personal data where legally allowed.

Restriction

Limit how your data is processed.

Objection

Object to processing based on legitimate interests.

Portability

Receive personal data in a transferable format.

Withdraw Consent

Opt out of marketing communications anytime. Contact privacy@citta.ai to exercise your rights. We may need to verify your identity before processing requests.

9. Children's Privacy

Our Services are not intended for children under 16. We do not knowingly collect personal data from children. If you believe a child's data has been collected, contact us immediately at privacy@citta.ai.

10. Third-Party Links

Our website may contain links to third-party websites. We are not responsible for their content or privacy practices. You should review their privacy policies before interacting with them.

11. Automated Decision-Making

Citta AI does not use personal data for automated decision-making that produces legal or significant effects on users. Aggregated usage data may be used to optimize performance or user experience.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. If changes are significant, we will provide notice via email or in the platform. Your continued use of the Services after updates constitutes acceptance.

13. Contact Information

If you have any questions or concerns about this Privacy Policy, contact us:

Citta AI Inc.

Email: contact@citta.ai

Website: https://www.citta.ai

Address:: 2261 Market Street STE 86002 San Francisco, CA 94114

Get started with Citta today

Explore Citta to start appifying your data pipelines today!