CommAI Privacy Policy

Effective 29 August 2026.

CommAI is responsible for the personal data described here. Contact [email protected] with questions or rights requests.

Information we collect

How and why we use data

We process data to perform our contract with you, operate and secure CommAI, moderate content and improve reliability under our legitimate interests, meet legal obligations, and provide optional notifications or marketing with consent. The monthly Stack Health summary is enabled independently and is not inferred from weekly-digest, push or email-fallback consent.

AI Advisor and providers

When you choose the AI Advisor, prompts are sent to CommAI's recommender hosted on Google Cloud Run and processed using OpenAI services. Do not submit sensitive information. Other providers include Google Firebase, Expo, DiceBear, Apple and Google. Resend processes the destination email address, subject and plain-text message body to deliver transactional account-security messages and notification email fallbacks. Signup messages contain a short-lived account-completion link; notification messages can contain the notification text and an in-app link. Some processing may occur outside the UK using lawful transfer safeguards.

Resend also processes administrator replies and incoming mail sent to monitored support, billing and privacy addresses, including sender and recipient addresses, subject, message content and attachment metadata. CommAI forwards monitored plain-text messages to its support inbox; attachments are not automatically forwarded.

We use shortlist feedback and chosen-tool signals to measure successful discovery and improve recommendation quality.

To control costs and prevent abuse, we record request counts, model names, input/output token totals and estimated processing cost. These operational records do not contain prompt or AI response text. Account and guest identifiers used for this purpose are one-way hashed.

Subscriptions and financial reporting

RevenueCat and the applicable app store or web billing provider process subscriptions and send CommAI verified production purchase events. Sandbox purchases are not counted as revenue.

Retention

Account data is retained while your account is active. Typical limits are: notifications 90 days, diagnostics 30 days, reports 180 days, user blocks until you unblock the user or delete your account, tool engagements two years and inactive push tokens 180 days. Limited encrypted backups may persist until overwritten.

Per-account AI usage and cost records are generally retained for up to 400 days and removed with account deletion. Aggregate financial totals may be kept for up to two years.

Pseudonymised subscription transaction and aggregate financial records may be retained for up to seven years where needed for accounting, tax, fraud prevention and reconciliation.

Founder-review requests are kept until the review is handled or your account is deleted.

One-off result email rate-limit records are kept for two hours and hold only a salted one-way hash and a counter, never the address itself.

Signup-mail outbox state is generally retained for 30 minutes. Resend processes email delivery data and message content according to its configured retention and privacy terms.

Outgoing administrator email replies: text, recipient, sender and subject are available in the restricted reply history for 30 days, then hidden from the application and removed from the database by a daily cleanup job. Physical removal normally follows on the next daily run; delays or failed runs require operational attention. Submission and provider/message identifiers, the administrator account identifier, request hashes, status and timestamps are kept longer for operational auditing and duplicate-send prevention and currently have no automatic expiry. These records are not anonymous. This cleanup does not remove copies held by Resend, the support inbox or the recipient.

Your private personal-stack backup is kept while your account remains active and is removed when you clear that stack or delete the account, subject to the limited encrypted-backup recovery period. Monthly-summary scheduling state is kept only while that separate preference remains enabled and the account remains entitled; it is removed when you opt out, lose entitlement or delete the account.

Your rights

You may request access, correction, deletion, restriction, objection or a copy of your data, and withdraw consent. Delete your account from Privacy & Account inside the app, or use the web deletion page. UK users may complain to the ICO at ico.org.uk.

Children and security

CommAI is not intended for children under 16. We use access controls, encrypted connections and role-based administration, but no service can guarantee absolute security.

Web storage and changes

The web app uses necessary local storage for login, preferences, security and offline functions. CommAI does not currently sell personal data or use third-party advertising cookies. Material policy changes will be communicated in the app.