CustomerGPT LogoCustomerGPTBack to Home
Legal

Privacy Policy

This policy describes how CustomerGPT collects, protects, and handles your product documentation and customer interactions.

Effective date: May 30, 2026

1. Information We Collect

We collect information necessary to train your customized AI assistants and optimize chatbot performance:

  • Documentation and Uploads: Any website links, FAQ copy-pastes, or PDF manuals you ingest into our training vectors.
  • Conversation History: Transcripts of interactions between website visitors and your custom chatbots (stored for analytical lead captures).
  • Developer Identifiers: Account emails, Google OAuth metadata, and usage tokens.

2. Encryption & Data Processing Standards

All trained training texts and database chunks are encrypted at rest using AES-256 and in transit using TLS 1.3. We leverage multi-tenant vector segmentation inside PostgreSQL database systems, ensuring that no tenant's data or vector weights are ever cross-shared or exposed to other chatbots.

3. Compliance Commitments (GDPR, SOC-2, HIPAA)

CustomerGPT is fully compliant with GDPR regulations. Customers can request full deletions of trained indexes or customer interaction logs at any time. We support standard Data Processing Agreements (DPA) and provide BAA contracts for HIPAA-eligible customers on our Enterprise packages.

4. Third-Party Embed Integrity

Our embed widget does not track visitor browsing habits, inject tracking cookies, or parse third-party session IDs. All dialogues are grounded solely in the scope of your custom vector database chunks, protecting your end-users from tracking.

5. Contact Privacy Officers

If you have any inquiries regarding data processing, indexing boundaries, or wish to execute a Right to Be Forgotten request, please email our privacy compliance team at [email protected].