Privacy Policy
Effective Date: December 27, 2025
Last Updated: December 27, 2025
Version: 1.0
Introduction
Welcome to DabotCentral. We are committed to protecting your privacy and being transparent about how we collect, use, and protect your personal information.
This Privacy Policy explains:
- What information we collect
- How we use your information
- Who we share information with
- Your privacy rights and choices
- How we protect your information
By using DabotCentral, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
1.1 Information You Provide
Account Information:
- Email address (required for registered users)
- Name (from social login or optional)
- Profile picture (from social login)
- Username (optional)
Content You Create:
- Chat messages and conversations
- Documents created through the platform
- Voice input (processed in real-time, not stored)
- Exported files and artifacts
1.2 Information Automatically Collected
Usage Information:
- Messages sent (count and timestamps)
- Features used (voice, documents, AI models)
- Session duration and frequency
- Tier level and upgrade events
Technical Information:
- IP address (hashed for privacy compliance)
- Device type and browser information
- Operating system
- Device fingerprint (for abuse prevention)
1.3 Information from Third Parties
When you sign in with Google or GitHub, we receive:
- Email address
- Name and profile picture
- Account age (for trust scoring)
- Public profile information (GitHub repos, followers)
2. How We Use Your Information
2.1 Provide and Improve Services
We use your information to:
- Authenticate your identity
- Process your chat requests with AI models
- Generate voice responses (if enabled)
- Save and retrieve conversation history
- Enforce message limits and tier restrictions
- Personalize your experience
- Improve platform functionality
2.2 Prevent Abuse and Ensure Security
We use your information to:
- Detect and prevent multi-account abuse
- Identify suspicious or automated behavior
- Enforce rate limits fairly
- Protect against spam and fraud
- Secure the platform from attacks
We never sell your personal data to third parties.
3. Information Sharing and Disclosure
3.1 Third-Party Service Providers
We share information with trusted service providers:
AI Providers:
- xAI (Grok): Processes your messages to generate responses
- OpenAI (GPT-4): Processes your messages to generate responses
- Anthropic (Claude): Processes your messages to generate responses
- Data Shared: Your messages, conversation context, user tier
Voice Services:
- ElevenLabs: Generates voice responses from text
- Data Shared: Text to be converted to speech
- Storage: Audio not stored by us
Database and Hosting:
- Neon (PostgreSQL): Stores user accounts, chat history, usage data
- Supabase: Authentication and database services
- Privacy: Encrypted at rest and in transit
Authentication:
- Google OAuth: Social login verification
- GitHub OAuth: Social login verification
4. Data Retention
4.1 Account Data
- Active Accounts: Retained while account is active
- Inactive Accounts: Deleted after 180 days of inactivity (with notice)
- Deleted Accounts: Permanently deleted within 30 days
4.2 Conversation History
Guest Users:
- No conversation history saved
- Session data cleared after 30 days
Registered Users:
- Chat history retained for 30 days after last login
- Automatically deleted after retention period
Verified/Authorized/Admin Users:
- Chat history retained indefinitely while account is active
- Deleted 90 days after account deletion
5. Your Privacy Rights
5.1 Access Your Data
You have the right to:
- View your account information
- Download your conversation history
- Export your data in machine-readable format
5.2 Correct Your Data
You have the right to:
- Update your email address
- Change your name or profile information
- Correct inaccurate data
5.3 Delete Your Data
You have the right to:
- Delete individual conversations
- Delete your entire chat history
- Delete your account completely
To exercise these rights, contact admin@thadate.comor use account settings.
6. Security Measures
We implement industry-standard security measures:
- Encryption: HTTPS/TLS for data in transit, encryption at rest
- Authentication: Secure OAuth 2.0, email OTP
- Hashing: IP addresses hashed before storage (GDPR compliance)
- Access Controls: Limited employee access, role-based permissions
- Monitoring: Real-time security monitoring and alerts
Your Responsibility: You are responsible for keeping your email account secure, not sharing OAuth tokens, and logging out on shared devices.
7. Children's Privacy
DabotCentral is not intended for children under 18.
- We do not knowingly collect data from children under 18
- If we learn we have collected data from a child, we will delete it immediately
- Parents/guardians: Contact us if you believe your child has provided data
8. Cookies and Tracking
Essential Cookies:
- Session management (required)
- Authentication (required)
- Cannot be disabled
Functional Cookies:
- Theme preferences
- Language settings
- Can be disabled (may affect functionality)
We do not use advertising or third-party tracking cookies.
9. Changes to This Privacy Policy
We may update this Privacy Policy to reflect changes in our practices or comply with new regulations. When we make significant changes:
- We will update the "Last Updated" date
- We will notify you via email (if registered)
- You will have 30 days to review changes
Continued use after changes constitutes acceptance.
10. Contact Us
Privacy Questions:
- Email: admin@thadate.com
- Subject Line: "Privacy Inquiry"
- Response Time: Within 5 business days
Data Rights Requests:
- Email: admin@thadate.com
- Subject Line: "Data Rights Request - [Type of Request]"
- Response Time: Within 30 days
Security Issues:
- Email: admin@thadate.com
- Subject Line: "URGENT: Security Issue"
- Response Time: Within 24 hours
11. Privacy by Design
DabotCentral is built with privacy in mind:
- ✅ No password storage - OAuth and email OTP eliminate password vulnerabilities
- ✅ IP hashing - IP addresses hashed before storage (GDPR compliance)
- ✅ Minimal data collection - We collect only what's necessary
- ✅ End-to-end encryption - Data encrypted in transit and at rest
- ✅ User control - You control your data, history, and account
- ✅ Transparency - Clear communication about data practices
- ✅ No data selling - We never sell your personal data
Acknowledgment
By using DabotCentral, you acknowledge that you have read, understood, and agree to this Privacy Policy.
Last Updated: December 27, 2025
Effective Date: December 27, 2025
Version: 1.0
For questions or concerns, contact: admin@thadate.com
Your privacy matters to us. Thank you for trusting DabotCentral.