Cookiedoc

Privacy Policy

Last updated: August 6, 2026

1. What we process

This includes your registered email, display name, login and security records, point ledger, recharge orders, conversation content and the files you upload. We record the necessary model usage and billing snapshots for metering, reconciliation, support and security auditing.

2. How files and conversations are processed

To complete the analysis, files and conversations are sent to the configured model relay service, which in turn accesses the upstream model. Do not upload materials you are not entitled to process. In production, the operator is responsible for configuring separate relays, databases and credentials.

3. Third-party services

Login may use Google; payments use Stripe; transactional email uses Resend; model analysis uses the operator-configured relay routes; production backups use the configured S3-compatible service. Different environments should use separate databases, credentials and third-party test/production configurations.

4. Retention and deletion

Account, order and ledger information is retained for as long as needed for reconciliation, anti-fraud and legal obligations. Conversations and uploaded files are retained per product settings; you can delete conversations from the workspace. Production backups are retained for at least 30 days per operational policy, and copies inside backups may be deleted after the backup cycle ends. To request deletion or export of your data, contact the support email in the footer.

5. Security

We use host-only cookies, access control, one-time cross-domain SSO, server-side API keys and rate limiting to protect the service. Internet transmission and third-party processing still carry objective risks — please redact sensitive information before uploading.