Privacy Policy
Last updated: January 8, 2025
1. Introduction
Reduxy.ai ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our privacy gateway service.
2. Information We Collect
2.1 Account Information
When you create an account, we collect your email address, name, and company information for account management and billing purposes.
2.2 API Usage Data
We collect metadata about your API requests, including timestamps, request/response sizes, detected PII categories, and routing decisions. We do not store the actual content of your requests unless explicitly configured for audit purposes.
2.3 Automatically Collected Information
We automatically collect certain technical information, including IP addresses, browser type, operating system, and usage patterns to improve our service and ensure security.
3. How We Use Your Information
We use the information we collect to:
- Provide and maintain our privacy gateway service
- Process and route your API requests securely
- Detect and mask PII in your data streams
- Generate audit logs and compliance reports
- Improve our service quality and security
- Communicate with you about your account and our services
4. PII Processing
4.1 Detection and Masking
Our core service involves detecting PII in your data. When PII is detected, it is immediately masked using reversible tokenization. The original PII is stored in an encrypted vault with strong access controls.
4.2 Data Minimization
We implement data minimization principles. PII is only processed to the extent necessary to provide our masking service and is not used for any other purposes.
5. Data Sharing and Disclosure
We do not sell, trade, or otherwise transfer your personal information to third parties except:
- With your explicit consent
- To comply with legal obligations
- To protect our rights and safety
- To service providers under strict confidentiality agreements
6. Data Security
We implement industry-standard security measures including:
- End-to-end encryption for all data in transit
- AES-256 encryption for data at rest
- Regular security audits and penetration testing
- SOC 2 Type II compliance
- Role-based access controls
7. Data Retention
We retain your data only as long as necessary to provide our services and meet legal obligations. You can configure retention policies for your audit logs and request deletion of your data at any time.
8. Your Rights
You have the right to:
- Access your personal information
- Correct inaccurate data
- Delete your personal information
- Object to processing
- Data portability
- Withdraw consent
9. International Transfers
Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers.
10. Contact Us
If you have any questions about this Privacy Policy, please contact us at:
- Email: privacy@reduxy.ai
- Address: [Company Address]
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.