Privacy Policy

Last modified: August 7, 2024

Introduction  

Patronus AI, Inc. (“Company,” “our,” “we”) respects your privacy and is committed to protecting it through our compliance with this Privacy Policy. This Privacy Policy is part of our Terms of Use available here

In this Privacy Policy we describe the types of information we may collect from you or that you may provide when you use our website (the “Platform”) and the services we offer through our website (collectively, the “Services”), plus our practices for collecting, using, protecting, and disclosing that information. This Privacy Policy does not apply to information collected by any third party, including through any application or content that may link to or be accessible from or on the Platform.

Please read this policy carefully to understand our policies and practices regarding your information and how we will treat it, as you agree to this Privacy Policy by using the Platform and/or creating an account on the Platform. If you do not agree with our policies and practices, do not use the Platform or the Services. 

Key Privacy Commitments

Privacy for your data, meaning your personal data and data about your organization, is at the core of our business model, and when you use our Platform we agree: 

  • We do not train models on your data. 
  • We do not share your data with other Platform customers. 
  • We do not share your data with any external vendors other than two that are critical to our business operations and adhere to the highest security protocols - AWS, to manage our infrastructure, and Amplitude, for usage analytics reports. 
  • We do not share your data with foundation model companies such as OpenAI. 

More information on how we protect the privacy of your data is throughout this Privacy Policy. 

Information We Collect And How We Collect It

Users’ Personal Information

The information we collect is used by the Company to identify users and provide them with Services, support, sales and marketing, billing, and to meet contractual obligations. While the Platform requires minimal personal information for its use, we do collect some types of information from and about users of the Platform, including: 

  • Information needed to create a unique Platform account through which individual users can use the Platform and Services for their organization, such as name, email address, photo, and other information you voluntarily add to your Platform profile; 
  • Information about the organization or enterprise user that is subscribing to the Services for use in its business activities, such as name, address, tax ID number, and business type; 
  • Custom test cases entered into the Platform for use in the Services, which may include personal information if voluntarily entered by the user; 
  • Billing information used to pay for the Services, such as credit card information, address, and billing contact information;   
  • Outputs generated by users’ custom language models for use in the Services, which may include personal information; 
  • Information that is ascertained through our use of third-party applications, including but not limited to your user behavior and trends;
  • Other information voluntarily entered by users, such as comments on test results, messages to other users within the same organization, and emails or other communications to the Company for support purposes; and 
  • Information about your internet connection, the equipment you use to access the Platform, and Platform usage details.

We collect this information in two ways, including: 

  • Directly from you when you provide it to us, such as signing up for an account, entering information to test a language model, or commenting on a report within your organization’s Platform account. 
  • Automatically as you navigate through the Platform, such as usage details, IP addresses, web browser preferences, and information collected through cookies and other tracking technologies. Although we do not correlate tracking information to individuals, some information collected, such as IP addresses, will be unique.

In some countries, including countries in the EEA, the information referenced above in this Privacy Policy may be considered personal information under applicable data protection laws. If you do not want us to collect this information, do not use the Platform. 

Your Organization’s Confidential Information

Additionally, in the course of using the Platform, you may submit information about your organization to the Company. We use, store, and disclose this information about your organization in compliance with this Privacy Policy as well, including the provisions herein that refer to your organization’s “Confidential Information”, which is defined as any confidential or proprietary information about or related to your organization submitted by you to the Platform or received by you in connection with your use of the Platform.  

User Contributions

You may provide information to be published or displayed (hereinafter, “posted”) on public areas of the Platform, or transmitted to other users of the Platform or third parties (collectively, “User Contributions”). Your User Contributions are only posted within your organization’s internal Platform account, so they can only be viewed by users who have been given access by your organization, but they are still posted and transmitted to others at your own risk. We cannot control the actions of other users of the Platform with whom you may choose to share your User Contributions. 

Additionally, account administrators for each organization give access to the organization’s internal Platform account in their sole discretion and we do not separately verify the veracity or credibility of any Platform users. Therefore, we cannot and do not guarantee that your User Contributions will not be viewed by unauthorized persons. 

We reserve the right, at the Company’s sole discretion, to remove, either temporarily or permanently, any User Contribution for any reason whatsoever. However, our right to remove any User Contribution does not obligate the Company to police, review, or verify User Contributions in any way. The Company is not liable for any User Contributions. 

How We Use Your Information  

We use the information that we collect about you or that you provide to us, including any personal information:

  • To develop,  modify, and improve the Platform and the Services; however, this does not include training models on your data. 
  • To provide the Platform and the Services to you, such as creating an account and profile for you and testing existing language models and any custom language models to which you provide us with access.
  • For external and internal marketing purposes, provided that such use does not directly or indirectly identify you, your organization, or your organization’s Confidential Information. 
  • To provide you with information, products, or services that you request from us, including to respond to user inquiries or technological issues or problems.
  • To provide you with notices about your account and/or subscription, including billing, expiration, and renewal notices.
  • To carry out our obligations and enforce our rights arising from any contracts entered into between you and us, including for billing and collection.
  • To notify you about changes to the Platform or any Services we offer or provide through it.
  • In any other way we may describe when you provide the information.

All the data we collect on the Platform is necessary for the Company to deliver the Platform and the Services to you and other users. The amount of data we collect has been minimized wherever possible to respect your privacy.


You can withdraw your consent at any time by discontinuing use of the Platform or contacting us at contact@patronus.ai to delete your account and information.

Sharing and Disclosure of Your Information  

We may disclose aggregated, anonymized information about our users, and information that does not identify any individual person or organization or disclose any of your organization’s Confidential Information, without restriction.

Additionally, we may disclose information that we collect or you provide:

  • To any third parties that own, host, and/or operate the existing and/or custom language models that you wish to test for your organization. 
  • To other users in your organization who also have access to your organization’s internal Platform account; we do not share your data with any customers or users outside of your organization’s internal Platform account. 
  • To contractors, service providers, employees, and other third parties we use to support and operate our business who have agreed to confidentiality obligations with regards to the information they receive from the Company related to the Platform, including the third parties listed below under Third-Party Use of Cookies and Other Tracking Technologies that we use to analyze Platform performance and user behavior and/or to improve the Platform and AWS, with whom we conduct periodic architecture and security reviews to ensure we are following best practices; however, we do not share your data with foundation model companies such as OpenAI.
  • To our subsidiaries and affiliates.
  • To a buyer or other successor in the event of a merger, divestiture, restructuring, reorganization, dissolution, or other sale or transfer of some or all of the Company’s assets, whether as a going concern or as part of bankruptcy, liquidation, or similar proceeding, in which information held by the Company about the Platform users is among the assets transferred.
  • To fulfill the purpose for which you provide it. For example, if you give us an email address to use the “email another user” feature of the Platform, we will transmit the contents of that email and your email address to the recipients.
  • To comply with any court order, law, or legal process, including to respond to any government or regulatory request.
  • If we believe disclosure is necessary or appropriate to protect the rights, property, or safety of the Company, our users, or others.
  • For any other purpose disclosed by us when you provide the information.

Data Retention

We retain personal information we collect from you where we have an ongoing legitimate business need to do so (for example, to provide you with a service you have requested or to comply with applicable legal, tax, or accounting requirements).

When we have no ongoing legitimate business need to process your personal information, we will either delete or anonymize it or, if this is not possible (for example, because your personal information has been stored in backup archives), then we will securely store your personal information and isolate it from any further processing until deletion is possible. 

Accessing and Correcting Your Information  

You can review and change your personal information by logging into the Platform and visiting your account profile page. You may also send us an email at contact@patronus.ai to request access to, correct, or delete any personal information that you have provided to us. We may not accommodate a request to change information if we believe the change would violate any law or legal requirement or cause the information to be incorrect.

If you delete your User Contributions from the Platform, copies of your User Contributions may remain viewable in cached and archived pages, or might have been copied or stored by other Platform users. 

Third-Party Use of Cookies and Other Tracking Technologies

The Platform uses third-party analysis and tracking services to track the performance of our Platform and Services, understand how you use the Platform and our Services, and offer you an improved and safer experience. By using these third party services, the Company is necessarily sharing your information with these third-party analysis and tracking service companies to receive their services.

Information on your usage of our Services may be collected and processed by the Company or a third party engaged by the Company using a unique identification number assigned to you. Such usage information will be deleted as soon as practicable after this information is no longer required for the purpose collected.

Your Consent for Company Tracking and Analysis

By using the Platform and the Services you consent to the Company’s usage of cookies and the below third-party services on the Platform, and agree that the Company may collect your usage data under a unique identifier, for the purposes of tracking, analyzing, and improving our Services.

You may withdraw your consent at any time, by either disabling cookies on your device or following the instructions on how to withdraw your consent individually for each third-party provider the Company uses for its third party tracking and analysis services, as described below.

Cookies and Web Beacons

We use cookies for the Platform, which are small text files that are intended to make the Platform better for you to use. In general, cookies are used to retain preferences, store information for features like shopping carts, and provide tracking data to third-party applications like Google Analytics. You can prevent cookies from being stored on your computer by changing your browser settings; however, if you choose to do this, your experience when using the Platform and the Services may be altered. We suggest consulting the help section of your browser or doing your own research on how to disable cookies in your web browser.

If you turn on the “Do Not Track” (“DNT”) setting in your browser, this setting will not be considered by the Platform. Even if this is enabled, we continue to track users for the reasons described in this Privacy Policy. The DNT standard isn’t widely supported, and even popular and trusted platforms such as Google Analytics and Amplitude do not respect it. 

Please note that linked third-party websites may also use cookies. We cannot control the use of cookies by these third-party websites. For example, when you click on a link from the Platform to a third-party website, that website may have the ability to recognize that you have come from the Platform by using cookies. If you have any questions about how third-party websites use cookies, you should contact such third parties directly.

We may also employ software technology known as “web beacons” or “clear GIFs,” which helps us keep track of what content on the Platform is effective. Web beacons are small graphics with a unique identifier that are used to track the online movements of Internet users. Web beacons are embedded in the web pages you review, so they are not stored on your hard drive. The web beacons we may use will not track or collect any personally identifiable information about you and they are in no way linked to your personally identifiable information.

Google Analytics

We use Google Analytics on the landing page of our website, which is a web analysis service operated by Google Inc. (“Google”). Google Analytics uses cookies stored on your computer to allow for analysis of your visits to websites and interactions with them in order to personalize your experience and improve our services. Information produced via cookies will be transferred to and stored on a server in the USA operated by Google.

Google analyzes this information to offer reports for the Company about your usage of the Platform and the Services. Google may also transfer this information to third parties either when this is required by law or when third parties are contracted by Google to process this data. Google will not allow your IP address to be linked to any other personal data.

Amplitude

We use the third party service Amplitude on the Platform to capture user session data to understand how users are using the Platform and the Services. With Amplitude, we track feature usage analytics, run experiments, and measure user engagement and retention metrics. Amplitude processes your information in accordance with our instructions and does not share it with third parties except if required to do so by law. 

Children Under the Age of 13  

The Platform is not intended for children under 13 years of age and you are not allowed to use the Platform or provide information on it if you are under 13 years of age. If we learn we have received personal information from or about a child under 13 without verification of parental consent, we will delete that information immediately. If you believe we might have any information from or about a child under 13, please contact us immediately at contact@patronus.ai.

If you are based in the European Economic Area (“EEA”) you may only use the Platform if you are over the age at which you can provide consent to data processing under the laws of your country or if verifiable parental consent for your use of the Platform has been provided to us. 

Transferring Your Information

The Company is a worldwide service. By using the Platform, you authorize us to transfer and store your information outside your home country, including in the United States, for the purposes described in this policy. The privacy protections and the rights of authorities to access your information in these countries may not be the same as in your home country. We take additional measures when information is transferred from the European Economic Area (EEA). This includes having standard clauses approved by the European Commission in our contracts with parties that receive information outside the EEA. We also rely on European Commission adequacy decisions about certain countries, as applicable, for data transfers to countries outside the EEA.

Data Security  

We have implemented measures designed to secure your personal information from accidental loss and from unauthorized access. For example, access by a user to his or her personal information is available through a password and unique customer ID selected by the user. This information is encrypted through the Platform with Secure Socket Layer technology (SSL) and is also encrypted when it is stored by us to prevent unauthorized parties from viewing such information. We also use industry-standard, trusted services to create and manage users’ cryptographic keys. Also, we perform regular malware scanning of the Platform and all servers and computers used by us to support the Platform. All Company employees are required to adhere to our security and confidentiality procedures and undergo training related to maintaining the security of user personal information.

Unfortunately, the transmission of information via the internet is not completely secure. Although we do our best to protect your personal information, we cannot guarantee the security of your personal information transmitted to the Platform. Any transmission of personal information is at your own risk. We are not responsible for circumvention of any privacy settings or security measures contained on the Platform.

EEA Users

You have options in relation to the information and data that we have about you.  To exercise any of the options discussed below, please contact us at contact@patronus.ai. As a user of the Platform and the Services, you may exercise your user rights to:

  1. Request information on your personal data processed by the Company. Upon your request, this information will be provided to you electronically. If you reside in the EU or Switzerland, you may access your information by sending a request to the Company at the address specified in “Contact Us” information below. If you reside in California and have provided your personally identifiable information to us, you may request information once per calendar year about our disclosures of certain categories of your personally identifiable information to third parties for their direct marketing purposes. Such requests must be submitted in writing using the email address in the “Contact Us” section below.
  2. Gain access to your information by requesting a backup of your data in a format that is readable by other companies or organizations (data portability). We will make an effort to share this information with you within a reasonable time.
  3. Correct or delete your information in your profile settings available through the Services.
  4. Withdraw your consent from data processing at any time by deleting your account and/or unsubscribing from our newsletter by clicking the link at bottom of the email. You may also contact contact@patronus.ai. Withdrawing your consent will not affect the lawfulness of any processing we conducted prior to your withdrawal, nor will it affect the processing of your personal information conducted in reliance on lawful processing grounds other than consent.
  5. Request the complete deletion of your data, including all past data sent to third-party services used for tracking and analysis, by reaching out to contact@patronus.ai. Your data will be deleted within 30 days. We will not delete the posts or comments you've written and shared publicly, including on social media or in any review. 
  6. Log a complaint with the relevant supervising authority if you believe the Company is processing your personal data under violation of applicable data protection regulations. For more information, please contact your local data protection authority.

We respond to all requests we receive from individuals wishing to exercise their data protection rights in accordance with applicable data protection laws.

Legal Basis for Processing Personal Information

Our legal basis for collecting and using the personal information described in this Privacy Policy will depend on the personal information concerned and the specific context in which we collect it. However, we will normally collect personal information from you only (i) where we need the personal information to perform a contract with you, such as providing Services that you or the organization you are affiliated with requested from us; (ii) where the processing is in our legitimate interests and not overridden by your rights; or (iii) where we have your consent to do so.  We have a legitimate interest in operating our Platform and communicating with you as necessary to provide these Platform, for example when responding to your queries, improving our Platform, undertaking marketing, or for the purposes of detecting or preventing illegal activities.

In some cases, we may also have a legal obligation to collect personal information from you or may otherwise need the personal information to protect your vital interests or those of another person. If we ask you to provide personal information to comply with a legal requirement or to perform a contract with you, we will make this clear at the relevant time and advise you whether the provision of your personal information is mandatory or not (as well as of the possible consequences if you do not provide your personal information). 

Third Party Links

The Platform may contain links that lead to other websites, and the Company is not responsible for the privacy practices, content, and/or activities of these linked websites. Nonetheless, we seek to protect the integrity of the Platform and welcome any feedback about these external websites. 

Changes to Our Privacy Policy  

We will post any changes we make to our privacy policy on this page and you will be notified of any material changes on the Platform home page and in an email to the most recent email address that you provided to us, if any. 

Organization and Contact Information  

The Platform is property of Patronus AI, Inc., a Delaware corporation. For general information about the Platform, this Privacy Policy, or anything else, you can contact us at:

Anand Kannappan, Representative

anand@patronus.ai

Rebecca Qian, Data Protection Officer

rebecca@patronus.ai