Last Updated: December 23, 2025
1. Introduction
Welcome to Citra AI. We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our application and services.
2. Information We Collect
2.1 Personal Information
We collect personal information that you voluntarily provide to us when you:
- Register for an account
- Use our services
- Contact us for support
- Subscribe to our newsletter
This information may include:
- Name and email address
- Mobile phone number
- Account credentials
- Profile information
- Payment information (processed securely through third-party payment processors)
2.2 Google User Data We Access
When you choose to sign in with Google, we access the following Google user data:
- Email Address: To create and identify your account
- Profile Information: Your name and profile picture to personalize your experience
- User ID: A unique identifier from Google to securely link your Google account with Citra AI
Important: We only request the minimum permissions necessary to provide authentication services. We do not access your Google Drive, Gmail, Calendar, or any other Google services beyond the basic profile information required for account creation and sign-in.
2.3 Usage Data
We automatically collect certain information when you use our services, including:
- Device information (type, operating system, browser)
- IP address and location data
- Usage patterns and preferences
- Application performance data
- Error logs and diagnostic information
2.4 Documents and Content
When you upload documents or create content using Citra AI:
- We store and process your documents to provide our services
- We do not use your data for AI training or building AI knowledge bases
- Your documents are encrypted and securely stored
- You retain full ownership of your content
3. How We Use Your Information
We use your information for the following purposes:
3.1 How We Use Google User Data
The Google user data we collect (email, name, profile picture) is used exclusively for:
- Account Creation: Creating your Citra AI account using your Google credentials
- Authentication: Verifying your identity when you sign in
- Personalization: Displaying your name and profile picture in the application
- Communication: Sending you service-related emails (password resets, account notifications, important updates)
We do NOT:
- Use your Google data to train AI models
- Share your Google data with third parties for advertising or marketing purposes
- Access any Google services beyond the basic profile information you authorize
- Store or process your Google account password (authentication is handled securely by Google OAuth)
3.2 General Data Usage
Beyond Google authentication data, we use your information for:
- Service Delivery: To provide, maintain, and improve our services
- Account Management: To manage your account and provide customer support
- Communication: To send you updates, security alerts, and support messages
- Personalization: To customize your experience and provide relevant content
- Analytics: To understand how users interact with our services and improve functionality
- Security: To detect, prevent, and address technical issues and fraudulent activity
- Legal Compliance: To comply with legal obligations and protect our rights
4. Data Storage and Security
4.1 Security Measures
We implement industry-standard security measures to protect your information:
- End-to-end encryption for data in transit
- Encryption at rest for stored data
- Regular security audits and penetration testing
- Access controls and authentication mechanisms
- Secure cloud infrastructure (Microsoft Azure, AWS)
- Regular backups and disaster recovery procedures
4.2 Data Retention
We retain your information for as long as necessary to:
- Provide our services to you
- Comply with legal obligations
- Resolve disputes and enforce our agreements
You can request deletion of your account and data at any time through your account settings or by contacting us.
4.3 Google User Data Retention and Deletion
Retention Period: We retain your Google user data (email, name, profile picture) only for as long as:
- Your account remains active
- Required to provide our authentication services
- Legally required to maintain records
Data Deletion: You can request deletion of your Google user data at any time by:
- Deleting Your Account: Go to Account Settings → Delete Account. This will permanently delete all your data, including Google authentication information.
- Unlinking Google Account: Go to Account Settings → Connected Accounts → Disconnect Google. This removes the Google authentication link but preserves your Citra AI account.
- Email Request: Contact us at [email protected] to request immediate data deletion.
Upon account deletion, we will:
- Permanently delete your Google user data within 30 days
- Remove all associations between your Citra AI account and Google account
- Retain only anonymized usage statistics as required by law
5. Information Sharing and Disclosure
We do not sell your personal information or Google user data to anyone.
5.1 Google User Data Sharing
Your Google user data (email, name, profile picture) is:
- Never shared with third parties for advertising, marketing, or any commercial purposes
- Never used to train AI models or build knowledge bases
- Only used internally for the authentication and personalization purposes described in Section 3
- Stored securely with industry-standard encryption and access controls
We comply with the Google API Services User Data Policy, including the Limited Use requirements.
5.2 General Information Sharing
We may share non-Google information in the following limited circumstances:
5.3 Service Providers
We may share information with trusted third-party service providers who assist us in:
- Cloud hosting and data storage (Microsoft Azure, AWS)
- Payment processing (Stripe, PayPal)
- Analytics and performance monitoring
- Customer support services
- Email and communication services
These service providers are contractually obligated to protect your data and use it only for the purposes we specify. They do not have permission to use your Google user data for their own purposes.
5.4 Legal Requirements
We may disclose your information if required to do so by law or in response to:
- Valid legal requests by public authorities
- Court orders or subpoenas
- Protection of our rights and safety
- Investigation of fraud or security issues
5.5 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change.
6. Your Privacy Rights
Depending on your location, you may have the following rights:
- Access: Request access to your personal information
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your personal information
- Portability: Request a copy of your data in a portable format
- Objection: Object to processing of your personal information
- Restriction: Request restriction of processing in certain circumstances
- Withdrawal: Withdraw consent where processing is based on consent
To exercise these rights, please contact us at [email protected]
7. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to:
- Remember your preferences and settings
- Understand how you use our services
- Improve user experience and functionality
- Provide personalized content and recommendations
You can control cookie preferences through your browser settings. Note that disabling cookies may affect the functionality of our services.
8. Third-Party Services
Our services may contain links to third-party websites and services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any personal information.
8.1 Third-Party AI Services
We use advanced AI technologies from reputable third-party providers to deliver AI-powered features. Your data is processed in accordance with our security standards and industry-standard privacy practices.
9. Children's Privacy
Our services are not intended for users under the age of 13 (or 16 in the European Union). We do not knowingly collect personal information from children. If we become aware that we have collected information from a child, we will take steps to delete such information promptly.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy.
11. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to know whether personal information is sold or disclosed
- Right to say no to the sale of personal information
- Right to access your personal information
- Right to equal service and price
12. GDPR Compliance (European Users)
If you are located in the European Economic Area (EEA), we process your personal information based on the following legal grounds:
- Contract performance: To provide our services to you
- Consent: Where you have provided explicit consent
- Legitimate interests: To improve our services and ensure security
- Legal obligations: To comply with applicable laws
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the updated policy on our website
- Sending you an email notification
- Displaying a prominent notice in our application
Your continued use of our services after any changes indicates your acceptance of the updated Privacy Policy.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
- Email: [email protected]
- Phone: +91-8496977722
- Address: Citra AI Software (A Subsidiary of Trustedwear Tech Private Limited), India
- Website: https://citra-ai.com
15. Data Protection Officer
For questions specifically related to data protection and privacy compliance, you can contact our Data Protection Officer at: [email protected]
16. Your Consent
By using Citra AI, you consent to our Privacy Policy and agree to its terms. If you do not agree with this policy, please discontinue use of our services.