1. Who this covers
This policy applies to visitors of visioant.com, people who submit the contact form, and signed-in workspace users. For questions or data requests, use Contact.
2. Data we collect
- Account data — email, authentication identifiers (including Google OAuth tokens when you connect), org membership, and seat invites.
- Billing data — plan, wallet activity, and Stripe customer / checkout references. Card details are handled by Stripe; we do not store full card numbers.
- Workspace content — chats, flows, boards, Content Wizard jobs, uploads you save to a knowledge base, and similar product data you create.
- Usage & telemetry — API call logs for metering, product analytics (for example PostHog), and basic server logs (IP, user agent) for security and debugging.
- Marketing leads — name, email, optional company, topic, and message when you contact us.
3. Why we process data
We process data to provide and secure the Service, meter provider usage, bill subscriptions and wallets, improve the product, respond to support and sales requests, and meet legal obligations. Where EU/EEA GDPR applies, bases typically include contract performance, legitimate interests (security, product improvement), and consent where required (for example certain cookies or optional messaging).
4. Processors and subprocessors
We use infrastructure and APIs that may process data on our behalf, including cloud hosting (Google Cloud), databases, Stripe (payments), email delivery for contact leads, model gateways (for example OpenRouter), SEO data providers (for example DataForSEO), and analytics. Data may be processed in the EU and other regions depending on the provider.
5. Retention
Account and workspace data are kept while your account is active and for a reasonable period afterward for backups, disputes, and legal requirements. Contact-form leads are retained to handle your request and for follow-up. You can ask us to delete account data via Contact; we will honor requests where we are not required to retain records.
6. Sharing
We do not sell personal data. We share data with processors needed to run Visioant, with advisors or authorities when legally required, and with your own org teammates according to seats and permissions you configure.
7. Security
We use industry-standard controls (encrypted transport, access-restricted production systems, secrets management). No method of transmission or storage is perfectly secure; report suspected issues via Contact (security topic).
8. Cookies and local storage
The site and app use cookies and local storage for sign-in sessions, theme and appearance preferences, and (where you opt in) marketing analytics.
- Essential — session/auth, theme, appearance, and low-consumption mode. These are required for the Service to function and do not need consent.
- Analytics (optional) — on public marketing pages we may use Google Analytics 4 (GA4) to measure page views and referrers. GA4 loads only after you choose Accept analytics in the cookie banner, or later via Cookie settings in the footer. You can withdraw consent at any time with Essential only.
- Product telemetry — signed-in workspace usage may be logged for metering and reliability (for example PostHog and
api_call_log), separate from marketing GA4.
9. Your rights
Depending on your location, you may have rights to access, correct, delete, restrict, or export personal data, and to object to certain processing. Contact us to exercise these rights. You may also lodge a complaint with your local supervisory authority.
10. Children
Visioant is aimed at professionals and businesses. It is not directed at children under 16, and we do not knowingly collect their data.
11. Changes
We may update this policy. The “Last updated” date at the top will change when we do. Continued use after updates means you acknowledge the revised policy.
12. Contact
Privacy requests: Contact. Related: Terms of Service.
This policy is a practical baseline for Visioant’s closed beta and public launch. It is not a substitute for tailored legal advice.