Privacy Policy
Last Updated: December 10, 2024
1. Introduction
Cristoforma ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered spiritual companion application (the "Service"). Please read this Privacy Policy carefully. By using the Service, you consent to the collection, use, and disclosure of your information as described in this Privacy Policy.
2. Information We Collect
We collect information that you provide directly to us and information that is automatically collected when you use the Service.
Personal Information You Provide:
- Email address (for account creation and communications)
- Name or display name (optional)
- Account credentials and authentication information
Usage and Conversation Data:
- Conversations and interactions with the AI (to provide personalized spiritual guidance)
- Your preferences, saved memories, and spiritual journey notes
- Device information (device type, operating system, browser type)
- Log data (IP address, access times, pages viewed, app features used)
3. How We Use Your Information
We use the information we collect for the following purposes:
- To provide, maintain, and improve the Service
- To personalize your experience and remember your spiritual journey
- To analyze usage patterns and improve our AI models and features
- To communicate with you about updates, features, and support
- To detect, prevent, and address technical issues and security threats
- To comply with legal obligations and enforce our Terms of Service
4. Information Sharing and Disclosure
We may share your information in the following circumstances:
- Service Providers: With third-party vendors who perform services on our behalf (hosting, analytics, customer support), subject to confidentiality obligations.
- Legal Requirements: When required by law, court order, or governmental authority, or when we believe disclosure is necessary to protect our rights or the safety of others.
- Protection of Rights: To enforce our Terms of Service, protect our operations, or protect the rights, privacy, safety, or property of ourselves or others.
- Business Transfers: In connection with any merger, acquisition, reorganization, sale of assets, or bankruptcy, your information may be transferred to a successor entity.
We DO NOT sell your personal information to third parties for marketing purposes.
5. Data Security
We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit and at rest
- Access controls and authentication requirements
- Regular security assessments and audits
- Employee training on data protection practices
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security. In the event of a data breach, we will notify affected users and relevant authorities as required by applicable law.
6. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes for which it was collected, including to provide you with the Service, comply with our legal obligations, resolve disputes, and enforce our agreements. You may request deletion of your data at any time through your account settings or by contacting us. When you delete your account, we will delete or anonymize your personal information within a reasonable timeframe, except where we are required to retain it for legal, regulatory, or legitimate business purposes.
7. Your Rights and Choices
Depending on your location, you may have the following rights regarding your personal information:
- Right to Access: Request a copy of the personal information we hold about you.
- Right to Correction: Request correction of inaccurate or incomplete personal information.
- Right to Deletion: Request deletion of your personal information, subject to certain exceptions.
- Right to Portability: Request a copy of your data in a structured, machine-readable format.
- Right to Withdraw Consent: Withdraw consent at any time where we rely on consent to process your information.
- Right to Object: Object to certain processing activities, including direct marketing.
8. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your experience, analyze usage, and provide personalized content. You can manage your cookie preferences through your browser settings. Essential cookies are required for the Service to function properly. Analytics cookies help us understand how users interact with the Service. You may disable non-essential cookies, but this may affect your experience with certain features.
9. Third-Party Services
The Service may contain links to third-party websites or services that are not operated by us. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party services you access through the Service. Our Service may use third-party AI services to process conversations; these providers are contractually bound to protect your data.
10. Children's Privacy
The Service is not intended for children under the age of 13 (or 16 in the European Economic Area). We do not knowingly collect personal information from children under these ages. If we become aware that we have collected personal information from a child under the applicable age, we will take steps to delete such information promptly. If you believe we have inadvertently collected information from a child, please contact us immediately.
11. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that are different from the laws of your country. We take appropriate safeguards to ensure that your personal information remains protected in accordance with this Privacy Policy, including standard contractual clauses approved by relevant authorities for transfers to third countries.
12. Data Breach Notification
In the event of a data breach that affects your personal information, we will notify you and relevant supervisory authorities as required by applicable law. Notification will be made within 72 hours of becoming aware of a qualifying breach, where feasible, and will include information about the nature of the breach, the data affected, potential consequences, and measures taken to address the breach.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page with an updated "Last Updated" date. For significant changes, we may also notify you via email or through a prominent notice on our Service. We encourage you to review this Privacy Policy periodically for any changes.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us through our website contact form or at the contact information provided on our website. We will respond to your inquiry within a reasonable timeframe.