Privacy Policy
This Privacy Policy describes how PARADIGM EMBEDDED LAB (SMC-PVT) LTD ("Company," "we," "our," or "us") collects, uses, discloses, and protects your personal information when you use our AI2Human text humanization services, website, and related applications (collectively, the "Services").
We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains our data practices in compliance with applicable privacy laws, including the General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and other relevant regulations.
0. Human Review of Content
We do not perform human review of your input or generated content by default. Content may only be accessed by authorized personnel for troubleshooting or support at your request or where required to comply with law or enforce our Terms. We do not provide human-performed editing or writing services.
1. Information We Collect
Personal Information
We collect information you provide directly to us, including:
- Account Information: Name, email address, password, and profile details
- Contact Information: Email address, phone number, and communication preferences
- Billing Information: Payment method details (processed securely by Paddle)
- Support Communications: Messages, feedback, and support requests
Usage Information
We automatically collect information about your use of our Services:
- Service Usage: Text processing requests, feature usage, and interaction patterns
- Device Information: IP address, browser type, operating system, and device identifiers
- Log Data: Access times, pages viewed, clicks, and navigation patterns
- Performance Data: Response times, error logs, and system performance metrics
Content Data
We process the content you submit to our Services:
- Input Text: Text content you submit for humanization
- Generated Content: AI-processed output text and results
- User Preferences: Settings, customizations, and service configurations
🔒 Data Minimization: We only collect information that is necessary to provide and improve our Services.
2. How We Use Your Information
Service Provision
- Process and humanize your text content using AI algorithms
- Provide access to our platform and maintain your account
- Process payments and manage subscriptions through Paddle
- Deliver customer support and respond to your inquiries
- Send service-related notifications and updates
Service Improvement
- Analyze usage patterns to improve our AI models and algorithms
- Develop new features and enhance existing functionality
- Conduct research and development for better service quality
- Optimize performance and ensure system reliability
Legal & Security
- Comply with legal obligations and regulatory requirements
- Protect against fraud, abuse, and security threats
- Enforce our Terms of Service and acceptable use policies
- Respond to legal requests and protect our rights
3. Legal Basis for Processing (GDPR/EEA)
For users in the European Economic Area (EEA) and United Kingdom, we process your personal data based on the following legal grounds:
Contract Performance
- • Providing our Services as requested
- • Processing payments and subscriptions
- • Maintaining your account and preferences
- • Delivering customer support
Legitimate Interests
- • Improving our Services and AI models
- • Security monitoring and fraud prevention
- • Analytics and performance optimization
- • Business operations and development
Consent
- • Marketing communications
- • Optional cookies and tracking
- • Research and development
- • Third-party integrations
Legal Obligation
- • Tax and accounting requirements
- • Regulatory compliance
- • Legal requests and court orders
- • Data retention obligations
4. Information Sharing & Disclosure
Service Providers
We share information with trusted third-party service providers who assist us in operating our Services:
- Paddle: Payment processing, billing, and subscription management
- Cloud Providers: Data hosting, storage, and infrastructure services
- Analytics Services: Usage analysis and performance monitoring
- Customer Support: Help desk and communication tools
- Security Services: Fraud detection and security monitoring
Legal Requirements
We may disclose your information when required by law or to:
- Comply with legal processes, court orders, or government requests
- Protect our rights, property, or safety, or that of our users
- Investigate potential violations of our Terms of Service
- Prevent fraud, abuse, or security threats
Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction, subject to the same privacy protections.
🚫 We do NOT sell, rent, or trade your personal information to third parties for marketing purposes.
5. Paddle Payment Processing
Payment Data Handling
Merchant of Record: Paddle acts as our merchant of record and payment processor. They handle all payment-related data according to their own privacy practices and security standards.
Data We Don't Store: We do not store credit card numbers, bank account details, or other sensitive payment information. All payment data is processed and stored securely by Paddle.
Paddle's Privacy Policy: Please review Paddle's Privacy Policy to understand how they handle your payment information.
Controller Roles: For buyer data related to checkout and billing, Paddle acts as an independent data controller. We act as the controller for product usage data. Limited personal data (e.g., email, plan, status) is shared with Paddle to enable billing, tax, fraud prevention, and subscription management, consistent with Paddle's Data Sharing Addendum.
Billing Information: We may receive billing-related information from Paddle (such as subscription status and payment history) to provide customer support and manage your account.
6. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for international transfers:
Transfer Mechanisms
- Standard Contractual Clauses (SCCs): EU-approved contractual terms for data transfers
- Adequacy Decisions: Transfers to countries with adequate data protection
- Certification Programs: Privacy Shield successor frameworks where applicable
- Consent: Your explicit consent for specific transfers
🌍 Global Operations: We maintain the same level of data protection regardless of where your data is processed.
7. Data Security
Security Measures
We implement comprehensive security measures to protect your information:
- Encryption: Data encrypted in transit and at rest using industry-standard protocols
- Access Controls: Role-based access and multi-factor authentication
- Network Security: Firewalls, intrusion detection, and monitoring systems
- Regular Audits: Security assessments and vulnerability testing
- Staff Training: Privacy and security awareness programs
⚠️ Security Notice: While we implement strong security measures, no system is 100% secure. Please use strong passwords and report any suspicious activity immediately.
8. Data Retention
Retention Periods
We retain your information for different periods depending on the type of data:
- Account Information: Retained while your account is active and for 3 years after closure
- Usage Data: Retained for 2 years for analytics and service improvement
- Content Data: Processed in real-time and not stored permanently
- Billing Records: Retained for 7 years for tax and accounting purposes
- Support Communications: Retained for 3 years for customer service purposes
Data Deletion
When data is no longer needed, we securely delete or anonymize it. You can request deletion of your personal data at any time, subject to legal and operational requirements.
9. Your Privacy Rights
Depending on your location, you may have the following rights regarding your personal information:
Access & Control
- • Access your personal data
- • Request data portability
- • Update or correct information
- • Delete your account and data
Processing Rights
- • Restrict processing
- • Object to processing
- • Withdraw consent
- • Opt-out of marketing
📧 Exercise Your Rights: Contact us at [email protected] to exercise any of these rights. We will respond within 30 days.
10. Cookies & Tracking Technologies
Types of Cookies
- Essential Cookies: Required for basic website functionality and security
- Performance Cookies: Help us understand how visitors use our website
- Functional Cookies: Remember your preferences and settings
- Marketing Cookies: Used for targeted advertising and marketing (with consent)
Cookie Management
You can control cookies through your browser settings or our cookie preference center. Note that disabling certain cookies may affect website functionality.
11. Children's Privacy
Age Restrictions: Our Services are not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at [email protected].
12. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
CCPA Rights
- Right to Know: Request information about personal information collected and used
- Right to Delete: Request deletion of personal information
- Right to Opt-Out: Opt-out of the sale of personal information (we do not sell personal information)
- Right to Non-Discrimination: Equal service and pricing regardless of privacy choices
📞 California Residents: Contact us at [email protected] to exercise your CCPA rights.
13. Browser Extension (AI2Human for Chrome)
Our Chrome extension lets a signed-in AI2Human user humanize text or check an AI-detection score for text selected on any webpage, using their existing AI2Human account. This section describes exactly what the extension accesses, stores, and sends.
What the Extension Accesses
- Your AI2Human sign-in session: The extension reads the sign-in token that ai2human.app already stores in its own browser storage when you're signed in on our website, so you don't have to sign in twice. It does not read data from any other website.
- Text you select or paste: The extension only reads page content when you actively invoke it — by right-clicking selected text and choosing a menu option, or by opening the extension popup. It does not read or monitor pages in the background.
What the Extension Stores on Your Device
- Session token: Stored locally by the browser so you stay signed in between uses of the extension.
- Theme preference: Light/dark display setting for the extension popup.
This local data stays on your device and is removed automatically if you uninstall the extension.
What the Extension Sends to Our Servers
When you use the Humanizer or AI Detector from the extension, the text you submitted and your session token (to authenticate the request) are sent to the same AI2Human API our website uses. Processing follows the rest of this Privacy Policy, including Section 8 (Data Retention) — content is processed in real time and not stored permanently.
🚫 The extension does not sell your data, does not serve ads, does not track your general browsing activity, and does not access any website other than ai2human.app.
14. Policy Updates
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:
- Post the updated Privacy Policy on our website
- Update the "Effective Date" at the top of this policy
- Send email notification to registered users for significant changes
- Provide additional notice for material changes affecting your rights
Your continued use of our Services after the effective date of any changes constitutes your acceptance of the updated Privacy Policy.
15. Contact Information
Questions about your privacy or this policy?
Company: PARADIGM EMBEDDED LAB (SMC-PVT) LTD
Privacy Officer: [email protected]
Data Protection Inquiries: [email protected]
General Support: [email protected]
Additional Legal Information
Data Controller: PARADIGM EMBEDDED LAB (SMC-PVT) LTD is the data controller for personal information processed through our Services.
Supervisory Authority: If you are in the EEA/UK and have concerns about our data practices, you may contact your local data protection supervisory authority.
Third-Party Services: This Privacy Policy does not apply to third-party services that may be linked from our website or integrated with our Services.
Last updated: October 31, 2025