Legal

Privacy Policy

How Barie.AI collects, uses, shares and protects your data — and the choices you have over it.

Effective Apr 16, 2025 11 sections 12 FAQs GDPR & CCPA/CPRA
01

Introduction

Barie.AI (“Barie,” “we,” “us,” or “our”) is a U.S.-based AI platform offering advanced general intelligence (AGI) tools that combine AI agents and large language models (LLMs). Our mission is to “Spark creativity. Achieve more. With Effortless Intelligence.” In delivering an AI that thinks, acts, and executes with precision to transform your ideas into impactful results, we are committed to protecting your privacy and complying with global data protection laws. This Privacy Policy explains what personal data we collect from users (“you” or “users”), how we use and share that data, your rights regarding your data, and how we safeguard it. We adhere to applicable privacy regulations worldwide, including the EU General Data Protection Regulation (GDPR) and U.S. laws such as the California Consumer Privacy Act (CCPA). By using Barie.AI’s services, you agree to the practices described in this Privacy Policy. If you do not agree, please do not use our services.

02

Information We Collect

We collect various types of information to provide and improve our services. This includes information you provide directly, data collected automatically through your use of our platform, and information from third parties (like payment processors or analytics providers). The categories of personal data we may collect include:

Account and Contact Information
When you sign up for a Barie.AI account, we collect information such as your name, email address, username, password, and any profile details you choose to provide. If you contact us for support or feedback, we collect the content of your communications (emails, chat messages, etc.) and your contact details.
User Content and Chat Logs
Our AI platform involves user interactions (e.g., chats, prompts, files uploaded). We collect and store the content you input into the system – including chat logs, prompts, documents, or other materials – as well as the AI-generated outputs (“User Content”). This data is used to operate the service (for example, to generate accurate responses and to maintain your conversation history) and to improve our AI models and features over time, in accordance with this Policy. We do not claim ownership of your User Content; however, by using our service, you grant Barie.AI a license to use your content for the purposes of providing and enhancing the services (as further described in the Terms of Service).
Payment and Transaction Data
Barie.AI operates on a credit-based model. If you choose to purchase credits or paid features, we (through our third-party payment processor) collect payment information. Payments are processed by Stripe, Inc. (“Stripe”), so you will provide payment card details (credit/debit card number, billing address, etc.) directly to Stripe. Stripe may collect and process your payment information (such as card number, billing address, email, and transaction amount) to facilitate the transaction. We do not store your full credit card numbers on our servers. We only receive limited information from Stripe such as a payment confirmation, your name, and the last four digits of your card or other tokenized identifiers. All such payment data is handled in accordance with Stripe’s own privacy policy (see Third-Party Services below for links).
Usage Data and Analytics
When you use Barie.AI, we automatically collect certain information about your device and how you interact with our platform. This may include:
Log and Device Data
IP address, browser type and version, operating system, device identifiers, time stamps of access, and pages or features you accessed.
Usage Analytics
We use analytics tools (such as Google Analytics) to gather data on user interactions, feature usage, session duration, and other usage metrics. Google Analytics uses first-party cookies and similar identifiers to collect information about how visitors use our site. This information helps us understand user engagement and improve our services (for example, by identifying popular features or troubleshooting technical issues). Google Analytics may collect data such as your IP address, geolocation (general region), device information, and on-site actions. We have configured Google Analytics to anonymize IP addresses where required. (See Cookies and Tracking below and our Cookies Policy for more details.)
Cookies and Similar Technologies
We use cookies, web beacons, and related tracking technologies to provide and personalize our services, keep you logged in, remember your preferences, and analyze usage. For instance, when you log in, we place a session cookie on your browser so you don’t have to re-enter your credentials on every page. Our Cookies Policy (see below or on our website) provides more information on the types of cookies we use and your choices.
Profile and Preference Information
You may have the option to create a user profile (e.g., add a profile picture or bio) or set preferences (such as language or notification settings). This information is stored to personalize your experience.
Communications
If you subscribe to newsletters, opt in to marketing emails, or participate in surveys or promotions, we will collect the information you provide (such as your email address and survey responses). You can opt out of marketing communications at any time by using the unsubscribe link in emails or contacting us.

We do not knowingly collect sensitive personal data (such as government ID numbers, financial account passwords, biometric data, or precise health information) unless it is explicitly provided by you for a specific purpose (and if so, we will obtain consent if required by law). We also do not intentionally collect personal data from children under 13 (see Children’s Privacy below).

03

How We Use Your Information

We use personal data for the following purposes, in accordance with applicable law:

To Provide and Maintain the Service
We process your account data and User Content to authenticate you, allow you to log in, and enable you to use the Barie.AI platform and its AI-powered tools. For example, we use your prompts and inputs to generate AI responses and to carry out tasks via our AI agents. We use chat logs and usage data to ensure continuity in your sessions and provide relevant results.
Service Improvement and AI Training
We are continually improving Barie.AI’s capabilities. To do so, we may analyze User Content (e.g. chat interactions and usage patterns) to debug issues, develop new features, and train or refine our AI models. Where feasible, we will aggregate or pseudonymize data used for improvement so it does not directly identify individuals. If you prefer that your personal data (including chat content) not be used for model training or improvement purposes, please contact us (or use any in-app privacy settings, if available) to opt out. We respect user choices and will comply with applicable laws regarding the processing of your data for improvement of our services.
Billing and Account Administration
If you make purchases, we use your information to process transactions (via Stripe) and maintain proper business records. We may send you invoices, receipts, account balance notifications, or alerts when your credit balance is low. We also use usage data to calculate charges (for example, if certain features consume credits per use).
Customer Support and Communication
When you contact us with questions, feedback, or issues, we use your contact and communications data to respond and help resolve any problems. We may also send service-related announcements or important notices, such as changes to terms or privacy policy, security alerts, or updates about our platform. These transactional communications are necessary for the operation of the service and are sent even if you opt out of marketing messages.
Analytics and User Experience
We use data (especially aggregated analytics data) to understand how our platform is used, which features are popular, how users navigate the interface, etc. This helps us optimize workflows, fix performance issues, and make informed decisions about product enhancements. For instance, usage data might inform us that a new feature is underused, indicating we need to improve its design or provide guidance.
Security and Fraud Prevention
We are dedicated to keeping Barie.AI secure. We may process data (including IP addresses, device info, and usage patterns) to monitor for suspicious or fraudulent activity, detect malicious use of the AI (such as attempts to generate disallowed content or scrape data), enforce our Terms of Service, and protect the integrity of our platform. If necessary, we will use data to investigate violations and to prevent harm to users, Barie.AI, or the public.
Legal Compliance
We may use or disclose your information as required to comply with applicable laws, regulations, legal processes, or governmental requests. For example, we may retain and produce records as necessary to comply with tax laws, law enforcement requests (under proper legal process), or to exercise or defend legal claims.
Marketing and Promotional Purposes
Only with your consent, we might use your contact information to send you newsletters, updates about new features, special offers, or events related to Barie.AI. You have control over receiving these communications, and we will honor opt-out/unsubscribe requests promptly. We do not spam, and we will never sell your personal data to third-party advertisers.

We will only process your personal data for purposes that are compatible with those described above or that you specifically authorize. If we need to use your data for an unrelated purpose, we will notify you and, if required, obtain your consent.

05

Cookies and Tracking Technologies

Barie.AI uses cookies and similar tracking technologies to operate and enhance our platform. Cookies are small text files stored on your device that allow us to recognize your browser or device and remember certain information. We use both first-party cookies (set by us) and third-party cookies (set by service providers) for several reasons:

Essential Cookies
These are necessary for our site to function. For example, authentication cookies keep you logged in as you navigate our platform, and security cookies help prevent fraudulent use of your account. Without these cookies, certain services or features (like maintaining your session or processing a credit purchase) would not work properly.
Analytics Cookies
We use Google Analytics and similar tools to collect information about how users interact with our site. Google Analytics sets cookies (such as _ga and others) to gather data on site usage and performance. This helps us analyze aggregate trends and improve the user experience. The information generated by Google Analytics cookies will be transmitted to and stored by Google on servers in the United States (or other countries where Google operates data centers). Google Analytics data is subject to Google’s privacy policies. We have enabled settings to respect Do-Not-Track or Global Privacy Control signals for California users where feasible, and we honor any consent requirements for EU users (the analytics cookies will not be set unless you have given consent via our cookie banner, when applicable).
Preference Cookies
These cookies remember your preferences and settings to provide a more personalized experience (for example, your chosen language, or whether you’ve dismissed a particular in-app tutorial).
Third-Party and Social Media Cookies
Currently, Barie.AI does not integrate social media login or plugins that set their own cookies. However, if in the future we do (for instance, allowing login via Google or using a support chat widget), those third-party tools may set cookies subject to their own privacy policies. We will update our Cookies Policy accordingly and inform you.
Advertising Cookies
Barie.AI does not display third-party ads nor use advertising cookies at this time. We do not allow third-party advertisers to collect data about you for targeted advertising through our site. If this ever changes, we will update our policies and obtain necessary consents.

For more details on our use of cookies and how to control them, please see our Cookies Policy (below). There you will find a comprehensive list of cookies and tracking technologies in use and their purposes, as well as instructions on managing your cookie preferences.

Managing Cookies
Most web browsers allow you to control cookies through settings that can be configured to refuse some or all cookies or prompt you before accepting. You can also delete cookies from your device at any time. Keep in mind that if you disable essential cookies, some features of our service (like staying logged in) may not function correctly. For Google Analytics specifically, Google provides an opt-out browser add-on that you can install to prevent your data from being used by Google Analytics. Additionally, if applicable, our site’s cookie consent banner allows you to set your preferences for optional cookies.
06

How We Share and Disclose Information

We understand the importance of your personal data and share it only in certain circumstances, primarily to operate our business and comply with the law. We do not sell your personal information to third parties. The types of entities with whom we may share data are:

Service Providers (“Processors”): We use trusted third-party companies to perform services on our behalf, and they may process personal data as needed for those services. These include:

Payment Processor – Stripe
As noted, we use Stripe to handle credit card payments and billing. Stripe will process your payment transactions and related data. We share with Stripe the information needed to charge your card or payment method (such as your name, email, and purchase amount), and Stripe collects your payment card details directly via secure iFrames or redirects. Stripe may also use cookies or device identifiers to detect fraud and ensure secure transactions. Stripe is contractually bound to protect your data and only use it for payment processing and compliance. For more information, see the Stripe Privacy Policy.
Analytics Provider – Google Analytics
We use Google Analytics (a service provided by Google LLC) to understand how users engage with our site. Google acts as our data processor for analytics data. Google Analytics may receive certain usage data (as described above in “Usage Data and Analytics”), which it processes to compile reports for us. We have a data processing agreement with Google to ensure GDPR compliance. You can learn more about how Google handles data by reading Google’s Privacy Policy. We do not send Google any directly identifying personal information (such as your name or email); Google Analytics is configured to use randomized or truncated identifiers.
Cloud Hosting and Infrastructure
Barie.AI is hosted on secure cloud servers. We use reputable cloud service providers (such as Amazon Web Services (AWS), Google Cloud Platform, or similar) to store and process data. These providers may have access to personal data for storage, backup, and computing purposes. They are not allowed to use or disclose your data except as instructed by us and as necessary to provide their services. We employ encryption and other safeguards within our cloud infrastructure to protect your data.
Email and Communication Tools
If we send emails or support communications, we may use a third-party email service provider or CRM (e.g., SendGrid, MailChimp, Zendesk). These providers would process your contact information and message content on our behalf solely for the purpose of sending communications or managing support tickets.
Other Service Providers
We might use additional vendors for things like error monitoring (e.g., Sentry), user support chat, or other functionality. We will update this policy if we introduce new significant providers processing personal data. All our service providers are subject to data protection obligations and will only process personal data as necessary and in line with this Privacy Policy.
Business Partners
In the future, Barie.AI may partner with universities, researchers, or other companies to jointly develop features or conduct research on AI. We will only share data in such collaborations after anonymizing or aggregating it, unless we have your consent or another legal basis to share identifiable data. If any co-branded features or events involve sharing your information in a way not covered by this policy, we will provide details at the point of collection or via a separate agreement.
Affiliates and Corporate Transactions
We may share data with our parent company, subsidiaries, or other companies under common ownership (our “affiliates”) for purposes consistent with this Policy (such as internal administration, platform improvement, or to offer new services). If Barie.AI is involved in a merger, acquisition, sale of assets, bankruptcy, or other corporate change, your information may be transferred to the successor or partner entity as part of that transaction. In such cases, we will ensure the new entity is bound to protect your data in line with this Privacy Policy and applicable law, and we will notify you of any change in ownership or data handling.
Legal Compliance and Protection
We may disclose your information if required to do so by law or pursuant to a valid legal process (e.g., a subpoena, court order, or search warrant). We may also disclose data when we believe in good faith that it is necessary to: enforce our Terms of Service; investigate or protect against harmful activities, fraud, or security issues; protect our rights, property, and safety, or those of our users or the public. This may include exchanging information with law enforcement or other companies and organizations for fraud prevention, spam/malware protection, or similar purposes. We will endeavor to notify you of legal demands for your data when appropriate, unless prohibited by law or court order.
With Your Consent
In situations where you explicitly consent to or request data sharing, we will share your information accordingly. For example, if you authorize us to share your testimonial on our website, or integrate Barie.AI with a third-party service at your request, we will transfer data as needed with your permission.

We require all third parties with whom we share personal data to have appropriate data protection and security controls. Where applicable, we have Data Processing Agreements (DPAs) in place, incorporating Standard Contractual Clauses (SCCs) for international data transfers, to ensure your data receives the same level of protection as within your home jurisdiction. We do not allow our service providers to use your data for their own marketing or other purposes not authorized by us.

07

Data Retention

We retain personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. For example:

Account information and profile data are kept as long as your account is active. If you delete your account or request deletion, we will erase or anonymize this data (except to the extent we need to retain some information for legal obligations or resolving disputes).

Chat logs and user content are stored to provide you with your conversation history and for service improvement. If you delete specific conversations (if our interface allows), we will remove those logs from active use. Even if not visible to you, residual copies may remain in our backups for a short period, but we will purge them in accordance with our backup retention schedule.

Payment and transaction records are retained to comply with financial regulations and auditing requirements (typically at least 7 years in the U.S.). However, your sensitive payment details (card numbers) are stored by Stripe, not us.

Analytics data is retained as long as needed for analysis – Google Analytics data, for instance, may be kept for a set period (e.g., 14 months) unless we configure otherwise. We have configured our analytics to not retain user-level data indefinitely.

If you communicate with us (support emails, etc.), we may retain those communications for a period to track our service performance and any recurring issues.

We periodically review the data we hold. When data is no longer needed, we either delete it or anonymize it (so it can no longer be associated with you). For instance, we may aggregate usage data for long-term statistical trends after removing personal identifiers.

Please note that due to technical reasons, immediate deletion of all residual copies from all systems (especially backups) may not be feasible, but we implement deletion and anonymization through our systems such that your data will be fully removed or irreversibly de-identified in accordance with our retention policies. We also take steps to ensure that any third parties we have shared data with (e.g., processors) delete the data when it is no longer needed.

08

Data Security

We employ a variety of security measures to protect your personal data from unauthorized access, use, or disclosure. These measures include:

Encryption
All communication between your browser/app and Barie.AI is encrypted using HTTPS/TLS. Sensitive data (such as passwords and API keys) is encrypted at rest. We also ensure that data stored with third-party providers (Stripe, cloud servers) is encrypted in transit and at rest as provided by those services.
Access Controls
Personal data is accessible only to authorized personnel who need it to perform their job (for example, customer support or engineers investigating an issue). We enforce the principle of least privilege and regularly review access permissions. Multi-factor authentication is used for administrative access to systems with sensitive data.
Monitoring and Testing
Our systems are monitored for security events, and we employ tools to detect anomalies or potential intrusions. We conduct periodic security assessments, vulnerability scans, and code reviews. We also stay updated on security best practices for AI systems to mitigate unique risks (such as prompt injection or data poisoning).
Training and Policies
We train our team on data protection best practices and have internal policies in place to handle user data safely and lawfully.
Incident Response
In the event of a data breach or security incident affecting your personal data, we have a response plan to contain the incident and mitigate harm. Where required by law, we will notify you and relevant authorities of any breach involving your personal data.

While we strive to protect your data, no method of transmission over the internet or electronic storage is 100% secure. Therefore, we cannot guarantee absolute security. You also play a role in keeping your information safe. Please use a strong, unique password for your Barie.AI account and do not share your login credentials. Notify us immediately if you suspect any unauthorized access to your account.

09

Your Rights and Choices

Depending on your jurisdiction, you have certain rights regarding your personal data. Barie.AI is committed to honoring these rights and providing you with control over your information. Below, we outline the rights of users under GDPR (for EU/EEA, UK, Switzerland) and under California privacy law, as well as how you can exercise them.

Rights Under GDPR (EU/EEA, UK, etc.)

If you are in the European Union or a similar jurisdiction with equivalent rights, you have the following data subject rights under the GDPR:

Right of Access
You have the right to request confirmation of whether we are processing your personal data, and if so, to receive a copy of that data along with information about how it’s used, who we share it with, and relevant details.
Right to Rectification
You have the right to have inaccurate personal data corrected and incomplete data completed. If any of your information held by Barie.AI is outdated or incorrect (e.g., you changed your email), please let us know and we will update it.
Right to Erasure (Right to be Forgotten)
You can request that we delete your personal data when it’s no longer needed for the purposes for which it was collected, or if you withdraw consent (where applicable) or object to processing and we have no overriding legitimate grounds. Upon valid request, we will erase your data (subject to certain exceptions like legal obligations that require retention).
Right to Restrict Processing
You have the right to ask us to restrict (pause) processing of your data if you contest its accuracy, or if the processing is unlawful but you oppose erasure, or if you need us to retain data for establishing or defending legal claims, or if you have objected to processing and verification of our grounds is pending.
Right to Data Portability
You can request a copy of personal data you provided to us in a structured, commonly used, machine-readable format, and you have the right to transmit that data to another controller (for example, another service) where technically feasible. This applies to data processed by us by automated means, based on your consent or in performance of a contract.
Right to Object
You have the right to object to our processing of your personal data in certain circumstances. In particular, you can object at any time to processing of your data for direct marketing purposes, or to any processing based on our legitimate interests (if you believe it impacts your rights). If you object, we will cease the processing unless we have compelling legitimate grounds that override your interests, or if needed for legal claims.
Right to Withdraw Consent
If we rely on your consent to process any personal data (for example, for sending marketing emails or certain analytics cookies), you have the right to withdraw that consent at any time. Withdrawal of consent will not affect the lawfulness of processing done before the withdrawal.
Right not to be Subject to Automated Decisions
Barie.AI does not make any legal or similarly significant decisions about you solely by automated means without human involvement. If that changes, you would have the right to request human review of any decision made purely by an algorithm that significantly affects you.
Right to Lodge a Complaint
If you have concerns about our data practices, you have the right to lodge a complaint with a supervisory data protection authority, particularly in the country where you live or work, or where an alleged infringement occurred. We welcome you to contact us first so we can address your concerns directly, but you are free to contact an authority at any time. For example, EU users can reach out to their local Data Protection Authority; UK users can contact the Information Commissioner’s Office (ICO); and users in Switzerland can contact the FDPIC. We can provide contact details for these authorities upon request, or you may refer to resources such as the European Data Protection Board list of authorities.

To exercise your GDPR rights, please contact us at the information provided in the Contact Us section below. We may need to verify your identity (for instance, through your account email or other verification) before fulfilling your request, to ensure we do not disclose data to the wrong person. We will respond to your request as soon as possible, and in any case within the timeframe required by law (generally one month for GDPR requests, with possible extension for complex requests). Note that some rights may be limited – for example, if fulfilling your request would adversely affect others’ rights or if we have overriding legitimate grounds to keep certain data. We will explain any such limitations in our response.

Rights Under California Privacy Law (CCPA/CPRA)

If you are a resident of California, you have specific privacy rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA). These rights (collectively referred to here as “CCPA rights”) include:

Right to Know
You have the right to know what personal information we collect, use, disclose, and sell (if applicable) about you. This includes the categories of personal information, the categories of sources, the business or commercial purposes for collection, the categories of third parties with whom we share personal info, and the specific pieces of personal information we hold about you. We provide much of this information in this Privacy Policy. You also have the right to request that we provide you with additional details or a copy of your personal data that we have collected in the past 12 months.
Right to Delete
You can request that we delete personal information we have collected from you (and direct our service providers to do the same), subject to certain exceptions. For example, we may retain information needed to complete transactions you requested, detect security incidents, comply with legal obligations, or other reasons permitted by CCPA. If you request deletion, we will explain any information we cannot delete due to an exception.
Right to Opt-Out of Sale or Sharing
The CCPA gives you the right to opt out of the “sale” or “sharing” of your personal information. Sale is defined broadly in CCPA, and while Barie.AI does not sell personal data for money, some sharing of data for advertising or analytics could be considered a “sale” under CCPA’s definitions. However, we do not share data with third parties for cross-context behavioral advertising except with your consent (and currently we do not engage in targeted advertising). If in the future we consider using personal data for advertising that falls under “sale” or “sharing,” we will implement a “Do Not Sell or Share My Personal Information” link or similar mechanism to allow you to opt out. We also recognize Global Privacy Control (GPC) signals; if we detect a GPC signal from your browser, we will treat it as a valid opt-out request for sale/sharing of personal info.
Right to Non-Discrimination
We will not discriminate against you for exercising any of your CCPA rights. This means we will not deny you services, charge you a different price, or provide a different level of quality because you exercised your privacy rights. (However, please note that if deletion of your data prevents us from providing the service, we may need to disable your account – for example, if you request deletion of all data we need to keep your account active, that’s a consequence of your request, not discrimination.)
Right to Correct
Under the CPRA amendments, you have the right to request correction of inaccurate personal information that we maintain about you. If you become aware that any of your information is incorrect, please contact us and we will rectify it (taking into account the nature of the personal info and the purposes of processing).
Right to Limit Use of Sensitive Personal Information
The CPRA also gives consumers the right to limit our use or disclosure of sensitive personal information (SPI) if we use it for purposes beyond certain exempted purposes. Barie.AI does not collect or use SPI for purposes that would trigger this right (as we do not engage in profiling or marketing using sensitive data). In the event we ever do handle sensitive data in a way that grants this right, we will provide a clear method for you to exercise it (such as a “Limit Use of My Sensitive Info” link).
Submitting CCPA Requests
You or your authorized agent can submit requests to exercise your California rights by contacting us via the methods listed in Contact Us below (please indicate you are making a “CCPA Request”). For requests to know, delete, or correct, we will need to verify your identity to a “reasonable degree of certainty” or “reasonably high degree” depending on the sensitivity of the information requested. This may involve verifying information associated with your account, or asking you to confirm certain data points we have on file. We will respond to verifiable requests within 45 days as required by CCPA (with the possibility of a 45-day extension with notice). If we cannot comply with a request, we will explain the reasons in our response.
Categories of Personal Information Collected
For transparency per CCPA, in the last 12 months we have collected the following categories of personal information (as defined by CCPA) from consumers: identifiers (e.g., name, email, IP address); personal information categories listed in Cal. Civ. Code 1798.80(e) (e.g., payment information, where collected by Stripe); characteristics of protected classifications (only if you voluntarily provide, e.g., in content – we do not request this); commercial information (transaction history of purchases); internet or electronic activity information (usage data, cookies, interaction logs); and inferences drawn from the above (e.g., to personalize content). We do not collect categories like biometric information, geolocation that is precise (we may infer region from IP), sensory data, or professional/employment/education information except if a user volunteers it in use of the service. We use these categories of information for the business and commercial purposes described in “How We Use Your Information” above. We disclose these categories only to the service providers and third parties as described in “How We Share Information.” Again, we do not sell personal data and have not sold personal data in the past 12 months.
10

International Data Transfers

Barie.AI is headquartered in the United States, and our servers and service providers may be located in the U.S. or other countries. This means that if you are using our services from outside the U.S., your personal information will likely be transferred to, stored, or processed in the United States or other jurisdictions which may not have the same data protection laws as your home country. We take steps to ensure that appropriate safeguards are in place to protect your data during such transfers, in compliance with GDPR and other international regulations. These measures include:

Standard Contractual Clauses
For EU/EEA, UK, or Swiss users, we rely on the European Commission’s Standard Contractual Clauses (SCCs) or equivalent mechanisms as a legal basis for data transfers to the U.S. and other countries. Our agreements with service providers (like our cloud hosts and processors) include SCCs where required, committing them to protect EU personal data to EU standards.
Additional Safeguards
We assess on a case-by-case basis whether additional technical or organizational measures are needed for specific transfers. For example, we utilize strong encryption for data in transit and at rest, which helps protect data if accessed by foreign authorities. We also carefully select vendors with strong privacy and security practices.
Binding Corporate Rules / Certifications
Although Barie.AI is a single-company platform (not a large multinational with different branches), we adhere to internal policies aligning with GDPR principles. If in the future we expand internationally, we may implement Binding Corporate Rules or certify under frameworks like the EU-U.S. Data Privacy Framework (if applicable and approved). We will update this section accordingly.

By using Barie.AI, you understand that your information may be transferred to our facilities and those third parties with whom we share it as described in this Policy. We will always handle your personal data in accordance with this Privacy Policy wherever it is processed. If you have questions about our international transfer practices, please contact us.

11

Updates to This Privacy Policy

We may update or revise this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. If we make material changes, we will notify you by appropriate means – for example, by emailing you at the address associated with your account, or by posting a prominent notice on our website or in the app. The “Effective Date” at the top of this Policy indicates when the latest changes were made.

We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information. If you continue to use Barie.AI after any updated Privacy Policy has been posted, it means you acknowledge and agree to the changes. For significant changes that require your consent (under applicable laws), we will obtain such consent. Older versions of this Policy will be archived and available upon request for your review.

12

Frequently Asked Questions

We believe privacy should be simple and transparent. This policy explains — in plain language — what data our app accesses, how we use it, and how we keep it safe. If you have questions, reach out to us anytime [email protected].

What Google account data does your app access?

When you connect your Google account, we access only the Workspace services you choose to enable. This may include your emails, calendar, and files — strictly limited to what is needed to deliver the features you use.

We request only the minimum permissions required and nothing more. You remain in full control and can disconnect at any time.

Why does your app need access to my Google account?

We access your Google Workspace data solely to provide the functionality you request within the app — such as helping you manage your work, organise information, and interact with your content more efficiently.

Your data is never used for advertising, profiling, or any purpose beyond what you have explicitly asked the app to do.

Do you sell my data?

No. We never sell, rent, or trade your personal data to anyone, under any circumstances.

Who do you share my Google data with?

We share your data only where strictly necessary to operate the app:

We do not share your data with advertisers, data brokers, or any other third party.

  • AI service providers — to process specific actions you initiate within the app. These providers are bound by commercial agreements and do not use your data for any other purpose. See Section 3 for details.
  • Cloud infrastructure — our servers are hosted in Europe, where your data is securely processed and stored.
Does the app use AI?

Yes. We use AI language models to power intelligent features within the app. All AI capabilities are delivered through paid, enterprise-grade APIs from reputable providers, ensuring your data is handled to the highest commercial standards.

Will my data be used to train AI models?

No. Every AI provider we work with is contractually bound not to use your data to train, improve, or develop their models. We exclusively use paid, enterprise-grade API tiers — not free or consumer-facing versions of any AI service — precisely because those tiers carry this contractual guarantee.

Our AI integrations (Anthropic Claude API, OpenAI API, and Google Gemini API — paid tier) are all governed by commercial data agreements that prohibit model training on customer data.

How do you keep my data secure?

We take the security of your data seriously. Appropriate technical and organisational measures are in place to protect your information against unauthorised access, loss, or misuse. Access to your data is strictly limited to authorised personnel on a need-to-know basis.

Where is my data stored?

Your data is stored on servers located in Europe. We do not transfer your data outside of Europe for storage purposes.

How long do you keep my data?

We retain different types of data for different periods, depending on how it is used:

We do not retain any data beyond these periods unless we are legally required to do so.

  • Chats and prompts — retained for 7 days on the Free plan and 21 days on paid plans, after which they are permanently and securely deleted.
  • Google connector credentials — retained only for as long as the connector remains active. These are permanently deleted when you remove the connector or delete your account.
How do I delete my data?

You have full control over your data and can delete it at any time:

For further assistance, contact us at: [email protected]

  • Chats and prompts — can be deleted manually, one by one, directly within the app.
  • Connector credentials — are permanently deleted the moment you disconnect or remove a connector from your account.
  • Full account deletion — permanently removes all data associated with your account, including credentials and any remaining conversation history.
What rights do I have over my data?

As a user — and particularly as a user in Europe — you have the right to:

To exercise any of these rights, contact us at: [email protected]

  • Access the data we hold about you
  • Correct any inaccurate data
  • Request deletion of your data at any time
  • Withdraw your consent by disconnecting your Google account
Will this policy change?

We may update this policy from time to time. If we make significant changes, we will notify you within the app or by email before those changes take effect. The date at the top of this page always reflects the latest version.

<