This Privacy Policy explains what personal data Yani AI (the "Service") collects, how we use it, and the controls you have over it. It applies to your use of the Service.
1. Data we collect
We collect the account details you provide (such as your name and email), the content you submit to run tasks (prompts, uploaded files, and generated output), and operational metadata needed to run the Service — session records, build-run outcomes, and your credit ledger. We record a limited, append-only activity log of security-sensitive actions such as sign-ins, publishes, and API-key changes, which you can review under Settings → Account activity.
2. How we use your data
We use your data to operate and secure the Service: to run your agent tasks, maintain your workspace and history, meter and bill usage, prevent abuse, and provide support. We do not use your prompts, files, or generated content to train our models, and we do not share them with model providers for training.
3. Sub-processors
To deliver the Service we route data to third-party model and infrastructure providers strictly to fulfil your requests. The providers configured on this deployment are listed on our Trust Center, which reflects the actual set of processors in use.
4. How your data is protected
Provider credentials and OAuth tokens are encrypted at rest with AES-256-GCM using a unique 96-bit nonce per secret. Traffic is served over TLS. Your sessions, files, memories, and billing records are scoped to your account on every read and write, and agent code runs inside isolated per-session sandboxes rather than on shared application hosts.
5. Data retention
We retain your account data for as long as your account is active. Sessions and generated files persist until you delete them or your account. Operational logs are retained for a limited period for security and billing integrity.
6. Your rights and controls
You can export a machine-readable copy of your data at any time, and you can request deletion of your account, from Settings → Data controls. We action verified deletion requests within 30 days. You can also manage personalization and cookie preferences in Settings.
7. Cookies
We use functional cookies required for the product to work, and — only with your consent — analytics and marketing cookies. You control these under Settings → Manage cookies.
8. Children
The Service is not directed to children and is not intended for anyone below the age required to consent to data processing in their jurisdiction.
9. Changes to this policy
We may update this policy from time to time. When we make material changes we will update the date above and, where appropriate, notify you in the product.
10. Contact
Privacy questions or requests can be sent to [email protected]. To report a security issue, contact [email protected].