Legal

Privacy Policy

Last updated: June 2026

1. Who we are

Pseudora Cloud ("we", "us", "our") provides a privacy-engineering platform that anonymizes personally identifiable information (PII) before it reaches AI models and third-party services. Our registered office is in Italy.

2. What data we collect

We collect only the data necessary to operate the service:

  • Account data — name, email address, hashed password.
  • Billing data — plan, payment status. Card details are processed exclusively by Stripe; we never store raw card numbers.
  • Usage logs — anonymized request counts, character volumes, error rates. These contain no original PII.
  • Audit logs — token-based audit trail of API calls, scoped per tenant. Original values are not stored.

3. How we use your data

  • Provide and improve the Pseudora Cloud service.
  • Send transactional emails (license activation, billing receipts).
  • Comply with legal obligations under GDPR (Regulation EU 2016/679).

4. Legal basis (GDPR Article 6)

We process your data on the basis of contract performance (Art. 6(1)(b)) for operating the service, and legitimate interest (Art. 6(1)(f)) for security monitoring.

5. Data retention

Account data is retained for the duration of your subscription plus 90 days. Usage and audit logs are retained for 90 days by default (configurable per tenant). Mapping records respect your configured TTL.

6. Sub-processors

We use the following sub-processors: Stripe (billing), Hetzner / AWS (infrastructure). All sub-processors are GDPR-compliant and located in the EU or operate under Standard Contractual Clauses.

7. Your rights

Under GDPR you have the right to access, rectify, erase, restrict, and port your data. Contact us at [email protected]. We respond within 30 days.

8. Contact

Data controller: PII Protect S.r.l. — [email protected]