Convenience translation for information purposes only. The legally binding version is the German original („Datenschutzerklärung", privatai.com/datenschutz). In case of any discrepancy, the German version prevails.
Version: September 2026
Responsible for data processing on this website:
Artur Parutkin, Isestraße 35, 20144 Hamburg, Germany Email: datenschutz@privatai.com
Each time our website is accessed, the following data is automatically processed temporarily:
In addition, the web server keeps technical access logs containing the IP address in plain text. These logs serve exclusively security and malfunction analysis (Art. 6 (1) lit. f GDPR) and are deleted automatically after 14 days.
When you use our API or the chat, the following data is processed:
Your prompts (inputs) and the AI responses (outputs) are not stored. They are processed only for the duration of the request and discarded afterwards; they are not logged, not used for training AI models, and not accessible to model providers or other third parties.
Narrow security exception: In the event of detected malicious activity or of disruptions to service quality, the inference data centre (Scaleway) may temporarily retain the content of individual requests for root-cause analysis (in accordance with the Scaleway terms for AI services). Even in that case, there is no use for training and no access by third parties.
When you take out a paid subscription, your payment data is processed exclusively by our payment service provider Stripe. We receive from Stripe only a confirmation of payment, but no credit card data.
To create and manage your account, we process your email address. Login is passwordless via a login code sent by email (a short-lived, single-use digit code that can only be entered in the browser it was requested from). The legal basis is Art. 6 (1) lit. b GDPR (performance of a contract or pre-contractual measures). We also store the time of your last successful login: a single timestamp that is overwritten at each login; this does not create a permanent login history. It serves to detect unused accounts and to notice suspicious login patterns. The legal basis for both purposes is Art. 6 (1) lit. f GDPR (legitimate interest in the security and proper administration of the account). You may object to this processing at any time under Art. 21 GDPR (Section 5). For sending emails we use the service provider Scaleway (see Section 8.2).
So that we can trace whether a login code was delivered, we temporarily record which email address it was issued to and when it was used. This is the only place your address sits beside a login time — the statement above, that we keep no login history, refers to the timestamp stored permanently on your account. The delivery record is held only in Redis (which writes to a file on the same server), erases itself after 7 days, and reaches neither the database nor its backups; the operator view shows the 50 most recent events. The legal basis is Art. 6 (1) lit. f GDPR (legitimate interest in the deliverability of the login). You may object to this processing under Art. 21 GDPR (Section 5); independently of that, the entry is deleted after 7 days.
In the dashboard we ask you once which field you work in. Answering is voluntary: you can dismiss the card without answering, and it does not appear again. Your account and every feature remain fully available either way.
We store only one value from a fixed list — for example "Software & development" or "Law & legal practice" — together with the time you answered. No free text, and no analysis of your chats or API requests; asking you directly is precisely how we avoid that.
We use the answer to develop PrivatAI for particular professional fields. In the operator dashboard we evaluate it only as a count per field, including the number of accounts with specific requirements such as confidentiality under Section 203 of the German Criminal Code (StGB). We do not use the answer to contact individual accounts. The answer is not shared with third parties.
The legal basis is Art. 6 (1) lit. f GDPR (legitimate interest in needs-based product development). You may object to this processing at any time under Art. 21 GDPR (Section 5); we then delete the answer. It is deleted with your account in any case.
Data processing takes place on the following legal bases:
You have the following rights regarding your personal data:
To exercise these rights, contact us at datenschutz@privatai.com or at the address given in the legal notice (Impressum).
You have the right to complain to a data protection supervisory authority about the processing of your personal data. The supervisory authority responsible for us is:
The Hamburg Commissioner for Data Protection and Freedom of Information (HmbBfDI) Ludwig-Erhard-Straße 22, 7th floor, 20459 Hamburg, Germany Phone: +49 40 428 54-4040 · Email: mailbox@datenschutz.hamburg.de · Web: datenschutz-hamburg.de
Core processing takes place exclusively within the EU — platform, AI inference and email; for payment processing see section 8.1. The application runs on servers in Germany (Hetzner, Falkenstein); AI processing takes place in France (Scaleway). Operation of the AI inference in a German data centre is available as part of the Enterprise setup.
We use Stripe for payment processing. The contracting party is Stripe Payments Europe, Limited (1 Grand Canal Street Lower, Grand Canal Dock, Dublin, Ireland).
The transfer of payment, billing and identity data to the US company Stripe, LLC is a precondition of the service and therefore always takes place; it is expressly stipulated in section 6.1 of the Stripe DPA. Stripe offers no EU-only processing option for payments.
The transfer is safeguarded primarily by the EU-US Data Privacy Framework, under which Stripe, LLC is certified (European Commission adequacy decision of 10 July 2023). As a fallback — should the certification lapse or not apply — the EU Standard Contractual Clauses apply (Implementing Decision (EU) 2021/914, Art. 46(2)(c) GDPR). This order of precedence follows from Stripe's Data Transfers Addendum.
Stripe acts in a dual role: as a processor settling the payment on our instructions, and at the same time as an independent controller for payment operations, fraud prevention and compliance with anti-money-laundering and identity-verification obligations (KYC/AML). We have no influence over the processing Stripe carries out as a controller; its legal basis is Art. 6(1)(c) and (f) GDPR.
Card details never reach our systems: checkout takes place entirely on a Stripe page. The legal basis is Art. 6(1)(b) GDPR (performance of a contract). Further information is available in Stripe's privacy policy.
Apart from that, no personal data is transferred to third countries; app hosting (Germany) and AI processing (France) take place exclusively within the EU.
Receiving. We receive inbound email ourselves. Our domains' MX records point to our own server at Hetzner in Germany; no further provider is involved in receiving or storing it.
Sending. For sending emails (e.g. login codes, notifications and – with consent – the newsletter) we use Scaleway Transactional Email (Scaleway S.A.S., France). The data processed comprises your email address, your name where applicable, and the content of the respective email. Processing takes place exclusively within the EU; no third-country transfer takes place.
Legal basis: Art. 6 (1) lit. b GDPR (performance of a contract) or Art. 6 (1) lit. a GDPR (consent for the newsletter).
A complete and always current list of our sub-processors – including Hetzner (hosting, Germany) and Scaleway (AI inference, France) – can be found at privatai.com/unterauftragsverarbeiter. For business customers, our Data Processing Agreement additionally applies (privatai.com/avv).
We use exclusively technically necessary cookies that are strictly required for operating the website. These cookies do not require consent (Art. 6 (1) lit. f GDPR; Section 25 (2) of the German Telecommunications Digital Services Data Protection Act (TDDDG)).
Session cookie — Name: session · Purpose: authentication after login (login code); before login, binding the emailed login code to this browser; before login also to carry the chosen plan and the email address through the signup flow · Storage period: 30 days or until logout; before login until the flow ends · Type: essential / strictly necessary
Language preference (cookie) — Name: lang · Purpose: carries the language you requested — through the language switcher or the /de/ or /en/ address you opened — to those pages that have no language-specific address of their own, so that they appear in your language too · Content: the value "de" or "en" only · Storage period: 365 days · Type: essential / strictly necessary
Language preference (browser storage) — Name: privatai_lang (localStorage) · Purpose: records that you have already chosen a language, so the one-time redirect based on your browser language does not run again on your next visit · Content: the value "de" or "en" only · Storage period: until you clear your browser storage · Type: essential / strictly necessary
Both language entries contain the language and nothing else. No recognition and no analysis takes place.
Beyond the two language entries, the application stores further purely functional settings in your browser that never leave your device: the model and response length last chosen in the chat (privatai_chat_model, privatai_chat_effort), and a flag that switches visit statistics off for your own browser (skipgc). These contain no personal data either and serve no recognition purpose.
We do not use tracking cookies, analytics cookies or marketing cookies. For anonymized visit statistics we use GoatCounter (see Section 11).
If you sign up for our newsletter with your consent, we use your email address exclusively to send you product and news emails. The sending frequency is at most once per month.
Sign-up uses double opt-in: after entering your address you receive a confirmation email, and no subscription is created without your confirmation.
We archive the wording of the sign-up form and of the confirmation email in versioned, immutable form, so it remains verifiable which text you agreed to. On request we will provide this record in printable form.
German is the legally binding version; this English text is a convenience translation.
On selected pages we use the open-source tool GoatCounter to collect anonymized visit statistics (e.g. views per page). GoatCounter is self-hosted by us (stats.privatai.com) and designed to be privacy-friendly:
The legal basis is Art. 6 (1) lit. f GDPR (legitimate interest in analysing the use of our website). Further information: goatcounter.com.
Retention of analytics and security data: page views, bot visits and honeypot triggers are deleted automatically after 90 days. IP addresses in this data are stored only as a salted hash, never in clear text. Web server access logs (which do contain the IP address) are deleted separately after 14 days.
We amend this privacy policy when changes in the law or changes to our service require it. The version published on this page at the relevant time applies.
Your message goes straight to Artur's inbox — no queue, no ticket number.
We use your address only to reply. More in our privacy notice.
Received. Artur will reply personally, usually within one business day.
Sending failed. Please write to us directly at artur@privatai.com.
You've just sent several messages. Please wait a moment.