Privacy Policy
This Privacy Policy explains how LimAI (“we”, “our”) collects, uses, and shares your information when you use our service. We’ve tried to write it in plain English; if anything is unclear, email hello@limai.app.
1. Information we collect
- Account info: email address, display name, and authentication provider (Google, Apple, GitHub).
- Billing info: handled entirely by Stripe; we only store your Stripe customer ID and subscription status. We never see your full card number or CVC.
- Prompts and generations: the text you send to the AI, and the code/output the AI returns. Stored to render your project history and chat.
- Usage data: build counts, model selections, project names, integration toggles. Used for billing, fair-use enforcement, and product improvement.
- Device info: browser, OS, IP address, referrer (collected by Vercel and our error monitoring tools for security and reliability).
2. How we use your information
- Provide and improve the LimAI service.
- Bill you for subscriptions and overage usage.
- Send transactional emails (receipts, password resets, security alerts) and, with your consent, product update emails.
- Detect and prevent abuse, fraud, and violations of our Terms.
- Comply with legal obligations.
3. Sub-processors
We share data with the following service providers only as needed to operate the service:
- Anthropic — your prompts and conversation context are sent to Anthropic’s Claude API to generate code. Anthropic’s data-handling terms apply.
- Stripe — billing, subscriptions, payment processing.
- Vercel — hosting, CDN, logs, analytics.
- Expo — when you preview an app via QR code, the code is sent to Expo’s Snack service to run.
- Email provider (Resend or similar) — transactional email delivery.
- Error monitoring (Sentry or similar) — diagnose crashes and bugs.
We do not sell your personal information.
4. Data retention
- Account data: kept while your account is active. Deleted within 30 days of account closure.
- Prompts and generations: kept as long as the project exists. Deleted when you delete the project or close your account.
- Billing records: kept for 7 years to meet tax/legal obligations.
- Server logs: retained for up to 30 days, then purged.
5. Your rights
Depending on where you live (GDPR, CCPA, and similar laws), you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Delete your account and associated data.
- Export your data in a machine-readable format.
- Object to or restrict certain processing.
- Withdraw consent (e.g. for marketing emails) at any time.
Exercise any of these rights from your account settings or by emailing privacy@limai.app. We respond within 30 days.
6. Cookies
See our Cookie Policy for details on the cookies and local-storage keys we use.
7. Security
We use industry-standard practices to protect your data — HTTPS everywhere, encrypted databases, role-restricted access. No system is 100% secure; if a breach occurs, we’ll notify affected users within 72 hours where required by law.
8. International transfers
Your data may be processed in the United States and other countries where our service providers operate. By using LimAI, you consent to these transfers.
9. Children
LimAI is not directed at children under 13. We do not knowingly collect personal information from children. If you believe we have, contact us and we will delete it.
10. Changes
We’ll notify you of material changes to this policy via email or in-product notice at least 30 days before they take effect.
11. Contact
Email privacy@limai.app for any privacy-related question or request.
This is a template. Have a lawyer review this policy before live launch — particularly the data-retention, sub-processor list, and jurisdiction sections — to ensure it accurately reflects your actual practices and complies with the laws of the countries you operate in.