Privacy Policy
Effective Date: March 8, 2026
Owner: Bindu Intelligence LLC
Introduction
COSMIC AI ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and share your personal information when you use our mobile applications (Android/iOS) and website.
Information We Collect
- Account Data: Name, email address, and profile pictures provided via Google, Apple, or X (Twitter) OAuth.
- Chat & Input Data: Text prompts, uploaded files (PDFs, images, CSVs), and voice recordings used to generate AI responses.
- Long-Term Memory: Our system extracts and stores facts/preferences (e.g., "User prefers Python") in a semantic memory database to personalize your experience.
- Financial Data: Transaction history and credit balances. Note: We do not store credit card numbers; all payments are processed through Stripe or PayPal.
- Technical Data: IP address (used for admin security/allowlisting), device identifiers, and crash logs (via Arize Phoenix).
How We Use Your Data
- To facilitate "Smart Routing" of your queries to appropriate AI models.
- To maintain your personalized AI memory.
- To manage your "Wallet" and deduct credits based on model usage.
- To prevent fraud and abuse through IP monitoring and rate limiting.
Data Sharing and Third-Party AI Providers
To provide our service, we transmit your prompts to third-party providers including, but not limited to: OpenAI, Anthropic, Google (Gemini), DeepSeek, and Suno.
Limited Use Disclosure: COSMIC AI's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
We do not sell your personal data to third parties.
Data Retention & Deletion (Google/GDPR Compliance)
- Account Deletion: You may delete your account at any time within the App Settings. Upon deletion, all personal data, chat history, and semantic memories are permanently purged from our PostgreSQL/Pgvector databases.
- Manual Deletion: You can delete individual chat sessions or specific "Memory" facts at any time.
Security
We implement a "Defense-in-Depth" strategy, including:
- VPC-internal MCP servers.
- Encryption of data in transit (TLS) and at rest.
- Strict IP allowlisting for administrative access.
Contact Us
For data requests, contact: support@cosmicai.io