Privacy Policy
Effective date: February 27, 2026
1. Information We Collect
We collect the following types of information: account information (email address, name, and password hash), conversation data between your chatbot and its visitors, visitor interactions with your deployed chatbots, knowledge sources you upload to train your chatbot, analytics and usage data, and payment information (processed securely by Paddle — we do not store your full card details).
2. How We Use Your Data
We use the information we collect to provide and maintain the BotPlot service, process AI chatbot responses, improve AI accuracy and platform performance, send transactional emails (via Resend), process payments (via Paddle), and analyze usage patterns to enhance the product.
3. Third-Party Services
BotPlot integrates with the following third-party services, each of which operates under its own privacy policy: OpenAI (for embeddings and text processing), Anthropic (for AI-generated responses), Paddle (for payment processing), Resend (for transactional email delivery), Railway (for application hosting and infrastructure), and Google Analytics (for website analytics). We encourage you to review the privacy policies of these services.
4. Data Storage & Security
Your data is stored in PostgreSQL databases hosted on Railway. All data is encrypted in transit using TLS. Access to the platform is protected by API key authentication and per-project data isolation. Redis is used for session management and rate limiting. While no system is completely secure, we take reasonable measures to protect your information.
5. Cookies
We use a single httpOnly session cookie for authentication purposes. We do not use tracking cookies. Google Analytics, which we use for website analytics, uses its own cookies for website visitors. You can manage cookie preferences through your browser settings.
6. Data Retention
Account data and conversation history are retained for as long as your account remains active. Upon receiving an account deletion request, we will delete your data within 30 days. Rate limiting data auto-expires on a monthly basis.
7. Your Rights
You have the right to access your data, export your data, request deletion of your data, and update your personal information at any time. To exercise any of these rights, please contact us at support@botplot.app.
8. Children's Privacy
BotPlot is not intended for users under the age of 18. We do not knowingly collect personal information from minors. If we become aware that we have collected data from a user under 18, we will take steps to delete that information promptly.
9. International Users
Data collected by BotPlot is processed in the United States. If you are located in the European Union, we respect your rights under the General Data Protection Regulation (GDPR). Please contact us at support@botplot.app for data access or deletion requests.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Registered users will be notified of changes by email. The “effective date” at the top of this page indicates when the policy was last revised. Continued use of the service after changes are posted constitutes your acceptance of the updated policy.
11. Contact
If you have any questions about this Privacy Policy, please contact us at support@botplot.app.