Privacy Policy

Clarift.io · Last updated: June 2026 · Effective date: June 2026

1. Introduction

Clarift.io operates a software platform that processes customer feedback to generate structured product intelligence for software teams. This Privacy Policy governs the collection, use, storage, and disclosure of personal data in connection with your use of our platform.

2. Data We Collect

We collect only the data necessary to operate the platform:

  • Identity data: Email address and account credentials.
  • Operational data: Feedback text you submit for analysis, analysis outputs, and usage history.
  • Billing data: Subscription plan and billing cycle. Payment card details are processed exclusively by Stripe and are never stored on Clarift systems.
  • Technical data: IP address, browser type, and access logs, retained solely for security and reliability purposes.

3. How We Use Your Data

  • To authenticate your account and maintain session security.
  • To process and analyze feedback content and return product insights.
  • To manage your subscription and process billing via Stripe.
  • To communicate service-related updates, security notices, and billing information.
  • To maintain platform performance, reliability, and fraud prevention.

We do not sell, rent, or broker your personal data to any third party, under any circumstances.

4. AI Processing Disclosure

Clarift uses third-party AI infrastructure to process feedback content and return insights. Content you submit may be transmitted to Anthropic's API for inference. This transmission is strictly limited to generating the functionality you have requested.

Your content is not used to train, fine-tune, or improve any AI model — by Clarift or by any third-party AI provider we engage.

5. Infrastructure & Third-Party Providers

  • Supabase: Relational database, authentication, and row-level access control.
  • Vercel: Application hosting, edge deployment, and CDN.
  • Stripe: Payment processing and subscription management.
  • Anthropic: AI inference for feedback analysis.

6. Data Security

All data is encrypted at rest and in transit using industry-standard protocols. Access to customer data is restricted to authenticated personnel with a legitimate operational need.

7. Data Retention

We retain your data for as long as your account is active. Upon account deletion, personal data is permanently purged within 30 days, except where retention is required by applicable law.

8. Your Rights

You may request access, correction, or permanent deletion of your data. Contact privacy@clarift.io. We respond within 5 business days.

9. Cookies

We use only technically necessary cookies required for authentication and session integrity. We do not deploy advertising, behavioral tracking, or third-party analytics cookies.

10. Policy Updates

We will notify you by email at least 14 days before significant changes take effect.