CommAI Privacy Policy
Effective 29 August 2026.
CommAI is responsible for the personal data described here. Contact [email protected] with questions or rights requests.
Information we collect
- Account details such as name, email, verification status and dates.
- Optional profile details, images, interests, country, profession and age.
- Posts, comments, votes, follows, blocks, reports, reviews and submissions.
- Saved tools, workflow stacks, notification choices, security events, diagnostics and tool interactions, including clicks through to a tool's own website. A click-through from a visitor without an account is counted using a salted, one-way hash of the network address, kept for 24 hours only so the same visitor is not counted twice.
- When you sign in, CommAI stores a private cloud backup of your personal AI stack so it can be restored after clearing a browser or on another device. It can contain tool identifiers and names, copied public catalogue facts, and the price, plan and renewal details you enter. It is not public, and client workspaces are excluded.
- If a Pro customer separately enables the Monthly Stack Health summary, CommAI calculates only total tool, confirmed-price and upcoming-renewal counts from that private backup. The notification and any independently enabled verified-email fallback contain no tool names, exact prices, plan names, prompts or client-workspace data.
- AI Advisor prompts, clarification answers, shortlist feedback, comparisons and tools marked as chosen.
- Verified subscription purchase and renewal events, including product, store, transaction value and estimated tax or store deductions. Customer and transaction identifiers are stored only as one-way hashes in CommAI's financial reporting records.
- If you ask us to email a Stack Autopsy result to yourself without creating an account, we send that one message and do not keep your address. It contains the tool names, totals and finding count already shown in that Autopsy. There is no subscription and nothing to unsubscribe from. To limit abuse we keep a salted, one-way hash of the address and of the sending network address, with a counter, for two hours.
- When you explicitly request a founder review, your account email and the structured tool names, prices and finding count shown in that Stack Autopsy. If you take part, an administrator can record the savings, subscriptions removed, usefulness and short outcome notes that you confirm during the review. Advisor prompts and private notes are not included.
- Customer email replies: authorised administrators can read mail sent to monitored support, billing and privacy addresses and reply from those addresses. CommAI stores the outgoing reply text, recipient, sender and subject, together with restricted operational records used to track submissions and prevent duplicate sends. Incoming message bodies are fetched from Resend and are not persisted in CommAI's application database.
How and why we use data
We process data to perform our contract with you, operate and secure CommAI, moderate content and improve reliability under our legitimate interests, meet legal obligations, and provide optional notifications or marketing with consent. The monthly Stack Health summary is enabled independently and is not inferred from weekly-digest, push or email-fallback consent.
AI Advisor and providers
When you choose the AI Advisor, prompts are sent to CommAI's recommender hosted on Google Cloud Run and processed using OpenAI services. Do not submit sensitive information. Other providers include Google Firebase, Expo, DiceBear, Apple and Google. Resend processes the destination email address, subject and plain-text message body to deliver transactional account-security messages and notification email fallbacks. Signup messages contain a short-lived account-completion link; notification messages can contain the notification text and an in-app link. Some processing may occur outside the UK using lawful transfer safeguards.
Resend also processes administrator replies and incoming mail sent to monitored support, billing and privacy addresses, including sender and recipient addresses, subject, message content and attachment metadata. CommAI forwards monitored plain-text messages to its support inbox; attachments are not automatically forwarded.
We use shortlist feedback and chosen-tool signals to measure successful discovery and improve recommendation quality.
To control costs and prevent abuse, we record request counts, model names, input/output token totals and estimated processing cost. These operational records do not contain prompt or AI response text. Account and guest identifiers used for this purpose are one-way hashed.
Subscriptions and financial reporting
RevenueCat and the applicable app store or web billing provider process subscriptions and send CommAI verified production purchase events. Sandbox purchases are not counted as revenue.
Retention
Account data is retained while your account is active. Typical limits are: notifications 90 days, diagnostics 30 days, reports 180 days, user blocks until you unblock the user or delete your account, tool engagements two years and inactive push tokens 180 days. Limited encrypted backups may persist until overwritten.
Per-account AI usage and cost records are generally retained for up to 400 days and removed with account deletion. Aggregate financial totals may be kept for up to two years.
Pseudonymised subscription transaction and aggregate financial records may be retained for up to seven years where needed for accounting, tax, fraud prevention and reconciliation.
Founder-review requests are kept until the review is handled or your account is deleted.
One-off result email rate-limit records are kept for two hours and hold only a salted one-way hash and a counter, never the address itself.
Signup-mail outbox state is generally retained for 30 minutes. Resend processes email delivery data and message content according to its configured retention and privacy terms.
Outgoing administrator email replies: text, recipient, sender and subject are available in the restricted reply history for 30 days, then hidden from the application and removed from the database by a daily cleanup job. Physical removal normally follows on the next daily run; delays or failed runs require operational attention. Submission and provider/message identifiers, the administrator account identifier, request hashes, status and timestamps are kept longer for operational auditing and duplicate-send prevention and currently have no automatic expiry. These records are not anonymous. This cleanup does not remove copies held by Resend, the support inbox or the recipient.
Your private personal-stack backup is kept while your account remains active and is removed when you clear that stack or delete the account, subject to the limited encrypted-backup recovery period. Monthly-summary scheduling state is kept only while that separate preference remains enabled and the account remains entitled; it is removed when you opt out, lose entitlement or delete the account.
Your rights
You may request access, correction, deletion, restriction, objection or a copy of your data, and withdraw consent. Delete your account from Privacy & Account inside the app, or use the web deletion page. UK users may complain to the ICO at ico.org.uk.
Children and security
CommAI is not intended for children under 16. We use access controls, encrypted connections and role-based administration, but no service can guarantee absolute security.
Web storage and changes
The web app uses necessary local storage for login, preferences, security and offline functions. CommAI does not currently sell personal data or use third-party advertising cookies. Material policy changes will be communicated in the app.