Skip to content
BACK

Privacy policy

LAST UPDATED · 15 May 2025

In short

Two fields live on our servers: your name and your email address. Your threads, context and interaction history stay on your device. We do not monetise, analyse, or resell any of it.

What we collect

  • Your name — used for account identification.
  • Your email address — required for login, communication and password recovery.

We collect no other personal details unless you explicitly provide them.

AI context and interaction data

  • Contextual data — previous threads, interaction memory — is stored locally on your device via cookies and browser cache.
  • Your interaction history is not transmitted to or stored on our servers.
  • You can clear your local cache and context at any time.

How your data is protected

  • End-to-end encryption for all communications.
  • Data is encrypted in transit and at rest.
  • Hosted on SOC 2-certified infrastructure.
  • Regular audits and vulnerability testing.
  • Internal access is limited by role-based permissions.

Our own team cannot access user interaction data without explicit authorisation.

Compliance

  • SOC 2 — secure system design and operation, with ongoing audits.
  • HIPAA — required safeguards for healthcare-related data.
  • GDPR — transparent collection, and full rights for EU residents to access, correct, delete or restrict processing.

Retention and deletion

The only data retained on our servers, encrypted, is your name and your email address. To delete your account or personal data, email contact@inlex.ai. We confirm and process the request within 72 hours.

Questions

For access to, or deletion of, your data, email contact@inlex.ai.