Privacy Policy

Effective Date: January 1, 2025

Last Updated: January 1, 2025

Introduction

This Privacy Policy ("Policy") describes how FratGPT ("Company," "we," "us," or "our") collects, uses, discloses, and protects information about users ("you" or "your") of our educational AI assistance service, including our website and Chrome browser extension (collectively, the "Service").

By accessing or using the Service, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree with the terms of this Policy, you must not access or use the Service.

1. Information We Collect

1.1 Information You Provide

  • Account Information: Email address, password (encrypted), and account preferences
  • Payment Information: Billing information processed securely through Stripe (we do not store credit card numbers)
  • Content Data: Screenshots, images, or text you submit for AI analysis
  • Communications: Messages, feedback, or inquiries you send to us

1.2 Automatically Collected Information

  • Usage Data: Number of problems solved, features used, session duration, and interaction patterns
  • Device Information: Browser type, operating system, device identifiers, and IP address
  • Cookies and Similar Technologies: Session tokens, preferences, and analytics data
  • Log Data: Timestamps, error logs, and performance metrics

2. How We Use Your Information

We use the collected information for the following purposes:

2.1 Service Provision

  • Process and analyze submitted problems using AI technology
  • Generate step-by-step explanations and solutions
  • Maintain your solve history and user preferences
  • Authenticate your account and manage access

2.2 Service Improvement

  • Analyze usage patterns to improve AI accuracy and performance
  • Develop new features and enhance user experience
  • Monitor and prevent technical issues or service disruptions
  • Conduct research and analytics (using aggregated, de-identified data)

2.3 Communication

  • Send service-related notifications, updates, and security alerts
  • Respond to your inquiries and provide customer support
  • Send marketing communications (you may opt-out at any time)

2.4 Legal and Security

  • Comply with legal obligations and enforce our Terms of Service
  • Detect, prevent, and address fraud, security breaches, or technical issues
  • Protect the rights, property, and safety of our users and the public

3. Information Sharing and Disclosure

3.1 Third-Party Service Providers

We share information with trusted third-party service providers who assist in operating our Service:

  • Google (Gemini API): Processes submitted images and text to generate AI-powered solutions. Subject to Google's Privacy Policy.
  • Stripe: Processes payment transactions securely. Subject to Stripe's Privacy Policy.
  • Railway: Hosts our application and database infrastructure. Subject to Railway's Privacy Policy.
  • Analytics Providers: Help us understand service usage and performance.

These service providers are contractually obligated to use your information only to perform services on our behalf and to protect your information with appropriate security measures.

3.2 Business Transfers

In the event of a merger, acquisition, bankruptcy, or sale of assets, your information may be transferred to the acquiring entity. We will notify you via email and/or prominent notice on our Service before your information becomes subject to a different privacy policy.

3.3 Legal Requirements

We may disclose your information if required by law or in good faith belief that such action is necessary to:

  • Comply with legal obligations, court orders, or government requests
  • Enforce our Terms of Service and investigate violations
  • Protect against fraud, security threats, or illegal activities
  • Protect the rights, property, or safety of our users or the public

3.4 With Your Consent

We may share your information with third parties when you have given us explicit consent to do so.

4. Data Security

We implement industry-standard technical and organizational security measures to protect your information against unauthorized access, alteration, disclosure, or destruction:

  • Encryption: All data transmissions use TLS/SSL encryption (HTTPS)
  • Password Security: Passwords are hashed using bcrypt with salt
  • Access Controls: Restricted access to personal information on a need-to-know basis
  • Regular Security Audits: Periodic reviews of our security practices and infrastructure
  • Secure Infrastructure: Data hosted on SOC 2-compliant cloud providers

However, no method of electronic transmission or storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your account credentials.

5. Data Retention

We retain your information for as long as necessary to provide the Service and fulfill the purposes outlined in this Policy:

  • Account Data: Retained while your account is active and for 90 days after account deletion
  • Solve History: Retained while your account is active; deleted upon account deletion
  • Payment Records: Retained for 7 years to comply with financial regulations
  • Log Data: Typically retained for 90 days for security and troubleshooting purposes

After the retention period, we will securely delete or anonymize your information. Some information may be retained in backup systems for an additional period but will be deleted in due course.

6. Your Privacy Rights

Depending on your location, you may have the following rights regarding your personal information:

6.1 Access and Portability

You have the right to request a copy of the personal information we hold about you. You can export your solve history through your account dashboard.

6.2 Correction

You have the right to correct inaccurate or incomplete personal information. You can update your email address and preferences in your account settings.

6.3 Deletion

You have the right to request deletion of your personal information. You can delete your account through your account settings or by contacting us at privacy@fratgpt.com. Please note that some information may be retained as required by law or for legitimate business purposes.

6.4 Objection and Restriction

You have the right to object to or request restriction of certain processing of your personal information, including marketing communications.

6.5 Withdraw Consent

Where processing is based on your consent, you have the right to withdraw that consent at any time.

6.6 Lodge a Complaint

You have the right to lodge a complaint with a supervisory authority if you believe we have violated your privacy rights.

To exercise any of these rights, please contact us at privacy@fratgpt.com. We will respond to your request within 30 days.

7. Children's Privacy

Our Service is intended for users who are at least 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete such information promptly.

If you are a parent or guardian and believe your child has provided us with personal information, please contact us at privacy@fratgpt.com.

8. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your country.

We ensure that such transfers comply with applicable data protection laws and implement appropriate safeguards, including:

  • Using service providers that comply with international data protection frameworks
  • Implementing standard contractual clauses approved by regulatory authorities
  • Ensuring adequate security measures are in place to protect your information

9. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: You can request information about the categories and specific pieces of personal information we have collected, the sources, purposes, and third parties with whom we share it.
  • Right to Delete: You can request deletion of your personal information, subject to certain exceptions.
  • Right to Opt-Out: We do not sell personal information. If our practices change, we will update this Policy and provide an opt-out mechanism.
  • Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights.

To exercise these rights, contact us at privacy@fratgpt.com or call us at [PHONE NUMBER]. We may require verification of your identity before processing your request.

10. European Privacy Rights (GDPR)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have rights under the General Data Protection Regulation (GDPR):

  • Right of access, rectification, erasure, and restriction of processing
  • Right to data portability
  • Right to object to processing
  • Right to withdraw consent
  • Right to lodge a complaint with a supervisory authority

The legal basis for processing your personal information includes:

  • Contractual Necessity: To provide the Service you have subscribed to
  • Legitimate Interests: To improve our Service, prevent fraud, and ensure security
  • Consent: For marketing communications and optional features
  • Legal Obligation: To comply with applicable laws and regulations

11. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience, analyze usage, and deliver personalized content:

  • Essential Cookies: Required for authentication and basic functionality
  • Analytics Cookies: Help us understand how users interact with our Service
  • Preference Cookies: Remember your settings and preferences

You can control cookies through your browser settings. However, disabling cookies may affect the functionality of the Service.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes by:

  • Posting the updated Policy on our website with a new "Last Updated" date
  • Sending an email notification to the address associated with your account
  • Displaying a prominent notice on our Service

Your continued use of the Service after changes become effective constitutes acceptance of the revised Policy. We encourage you to review this Policy periodically.

13. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:

Email: privacy@fratgpt.com

Support: support@fratgpt.com

Response Time: We aim to respond to all privacy inquiries within 30 days.