Loading...

Privacy Policy - How Zooli.ai Protects Your Data & Security

Zooli.ai Privacy Policy. This policy explains how Zooli.ai collects, uses, stores, and protects your personal information. Your privacy is fundamental to how we build and operate the platform.

Data Collection: We collect account information (email, name) when you register. Content you create (articles, posts, drafts) is stored in your account. Brand voice training samples you provide are used solely for your VoiceDNA profile. Usage analytics help us understand which features are most valuable and improve the platform. We do not collect data from your LinkedIn account beyond what is needed for OAuth authentication and authorized post publishing.

Data Protection: All data is encrypted at rest using AES-256 encryption and in transit using TLS 1.3. We use JWT authentication with session tracking, rate limiting to prevent abuse, CSRF protection with Redis-backed tokens, and comprehensive input validation on all API endpoints. Passwords are hashed using bcrypt with per-user salts.

AI Data Usage: Your content is never used to train AI models. AI processing uses the Anthropic Claude API, which does not retain prompts or responses for training purposes. Your writing samples, articles, and generated posts remain private and are never shared with third parties or used to improve AI systems.

Third-Party Services: We use Stripe for secure payment processing, Resend for transactional emails, Cloudflare for CDN and R2 image storage, and Google Analytics for anonymized usage statistics. Each third-party service processes only the minimum data necessary for its function.

OAuth Authentication: Google and LinkedIn OAuth data is used solely for authentication and account creation. We store only your OAuth identifier and email — we do not access your Google Drive, Gmail, LinkedIn messages, or other account data.

Data Retention and Deletion: You can delete your account and all associated data at any time from your Account Settings. Upon deletion, all articles, posts, brand voice data, performance metrics, and personal information are permanently removed within 30 days.

Cookie Policy: We use essential cookies for authentication session management. Optional analytics cookies (Google Analytics) can be declined through the cookie consent banner. No advertising or tracking cookies are used.

Contact: For privacy inquiries, data access requests, or deletion requests, email info@zooli.ai.