Privacy & Cookie Policy
Last updated: January 2025
1. Introduction
CompareLabs Corporation ("we", "us", or "our") operates CompareLabs.ai. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
We are committed to protecting your privacy and complying with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
2. Information We Collect
2.1 Personal Information
We collect the following personal information when you create an account:
- Email address
- Full name
- Payment information (processed securely through Stripe)
Note on Authentication: Your password is managed securely by Supabase, our authentication provider. We never store, access, or have visibility into your password. Supabase uses industry-standard encryption and security practices to protect your credentials.
2.2 Usage Data
We automatically collect certain information when you use the Service:
- Queries submitted to AI models
- AI model responses
- Usage statistics (credits consumed, models used)
- Device information and IP address
- Browser type and version
- Pages visited and time spent on pages
3. Cookies and Tracking Technologies
3.1 What Are Cookies
Cookies are small text files that are placed on your device when you visit our website. They help us provide you with a better experience by remembering your preferences and understanding how you use our Service.
3.2 Types of Cookies We Use
Strictly Necessary Cookies
These cookies are essential for the Service to function and cannot be disabled. They include:
- Authentication cookies (to keep you logged in)
- Security cookies (to protect against fraud)
- Session cookies (to maintain your session)
Analytics Cookies
We use Google Analytics to understand how visitors interact with our Service. These cookies collect information such as pages visited, time spent on pages, browser and device information, and geographic location.
Preference Cookies
These cookies remember your choices and preferences, such as language preferences, theme preferences, and cookie consent preferences.
3.3 Third-Party Cookies
We use the following third-party services that may set cookies:
- Google Analytics: For website analytics
- Stripe: For payment processing
3.4 Managing Cookies
You can control and manage cookies through your browser settings. Most browsers allow you to refuse or delete cookies. Please note that disabling certain cookies may affect the functionality of the Service.
4. How We Use Your Information
We use your information for the following purposes:
- To provide and maintain the Service
- To process your transactions and manage your subscription
- To send you service-related communications
- To improve and optimize the Service
- To detect and prevent fraud or abuse
- To comply with legal obligations
- To analyze usage patterns and trends
5. Legal Basis for Processing (GDPR)
Under GDPR, we process your personal data based on the following legal grounds:
- Contract Performance: Processing necessary to provide the Service you requested
- Legitimate Interests: Improving our Service and preventing fraud
- Legal Obligation: Complying with applicable laws and regulations
- Consent: Where you have given explicit consent for specific processing activities
6. Data Sharing and Disclosure
We may share your information with:
- Third-Party AI Providers: Your queries are sent to AI model providers (OpenAI, Anthropic, Google, Meta) to generate responses
- Payment Processors: Stripe processes payment information securely
- Service Providers: Companies that help us operate the Service (hosting, analytics)
- Legal Requirements: When required by law or to protect our rights
We do not sell your personal information to third parties.
7. Your Rights Under GDPR
If you are in the European Economic Area (EEA), you have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data
- Right to Restrict Processing: Limit how we use your data
- Right to Data Portability: Receive your data in a structured format
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent at any time
To exercise these rights, contact us at privacy@comparelabs.ai
8. Data Retention
We retain your personal data for as long as necessary to provide the Service and comply with legal obligations. When you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required to retain it by law.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit and at rest
- Regular security assessments
- Access controls and authentication
- Secure authentication managed by Supabase (passwords are never stored in our database)
- Secure data storage with Supabase
10. International Data Transfers
Your data may be transferred to and processed in countries outside the EEA. We ensure appropriate safeguards are in place, such as Standard Contractual Clauses, to protect your data in accordance with GDPR requirements.
11. Children's Privacy
Our Service is not intended for children under 16 years of age. We do not knowingly collect personal data from children under 16. If you believe we have collected data from a child, please contact us immediately.
12. Changes to This Policy
We may update this Privacy & Cookie Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date.
13. Contact Us
If you have questions about this policy or wish to exercise your rights, contact us at:
Email: privacy@comparelabs.ai
Data Protection Officer: dpo@comparelabs.ai
14. Supervisory Authority
If you are in the EEA and believe we have not addressed your concerns, you have the right to lodge a complaint with your local data protection supervisory authority.
