Skip to main content

Privacy Policy

Last updated: January 15, 2025

1. Introduction

Clario ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered financial intelligence platform.

By using our Service, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Personal Information

We collect information you provide directly to us:

  • Account information (name, email address, password)
  • Profile information (company name, industry, role)
  • Payment information (processed securely through Stripe)
  • Communication data (support requests, feedback)

2.2 Financial Data

We process financial data you upload to our platform:

  • Financial documents (CSV, Excel, PDF, QBO files)
  • Financial statements and reports
  • Transaction data and accounting records
  • Generated insights and analysis results

2.3 Usage Information

We automatically collect certain information:

  • Device information (IP address, browser type, operating system)
  • Usage patterns (pages visited, features used, time spent)
  • Performance data (response times, error logs)
  • Cookies and similar tracking technologies

3. How We Use Your Information

We use your information for the following purposes:

3.1 Service Provision

  • Process and analyze your financial data
  • Generate AI-powered insights and recommendations
  • Provide customer support and technical assistance
  • Maintain and improve our platform functionality

3.2 Communication

  • Send service-related notifications and updates
  • Respond to your inquiries and support requests
  • Send marketing communications (with your consent)
  • Notify you of important changes to our service

3.3 Legal and Security

  • Comply with legal obligations and regulatory requirements
  • Protect against fraud, abuse, and security threats
  • Enforce our Terms of Service and other agreements
  • Resolve disputes and troubleshoot problems

4. Information Sharing and Disclosure

We do NOT sell, trade, or rent your personal information to third parties. We may share information only in these limited circumstances:

4.1 Service Providers

We share information with trusted third-party service providers who assist us in operating our platform:

  • Google Cloud Platform: Hosting and infrastructure services
  • Firebase (Google): Authentication, database, and file storage
  • Stripe: Payment processing
  • Google Gemini/OpenAI: AI processing (data is not retained)
  • SendGrid: Email delivery services

4.2 Legal Requirements

We may disclose information if required by law or to:

  • Comply with legal process or government requests
  • Protect our rights, property, or safety
  • Protect the rights, property, or safety of our users
  • Investigate or prevent fraud or security issues

4.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.

5. Data Security

We implement comprehensive security measures to protect your information:

5.1 Technical Safeguards

  • AES-256 encryption for data at rest
  • TLS 1.3 encryption for data in transit
  • Secure key management using Google Cloud KMS
  • Regular security audits and penetration testing
  • Multi-factor authentication available

5.2 Administrative Safeguards

  • Role-based access controls
  • Regular security training for staff
  • Incident response procedures
  • Data minimization practices

5.3 Physical Safeguards

  • Secure data centers with 24/7 monitoring
  • Biometric access controls
  • Environmental controls and fire suppression
  • Redundant power and cooling systems

6. Your Rights and Choices

You have the following rights regarding your personal information:

6.1 Access and Portability

  • Request a copy of your personal information
  • Export your data in a machine-readable format
  • View your account information and usage history

6.2 Correction and Updates

  • Update your account information
  • Correct inaccurate personal information
  • Modify your communication preferences

6.3 Deletion and Restriction

  • Request deletion of your personal information
  • Restrict processing of your information
  • Object to certain types of processing

6.4 Communication Preferences

  • Opt out of marketing communications
  • Manage notification preferences
  • Unsubscribe from email lists

7. Data Retention

We retain your information for the following periods:

7.1 Account Data

  • Active accounts: Retained while account is active
  • Inactive accounts: Deleted after 2 years of inactivity
  • Deleted accounts: Permanently deleted within 30 days

7.2 Financial Data

  • Uploaded files: Retained while account is active
  • Analysis results: Retained for 7 years for audit purposes
  • Backup data: Deleted within 90 days of account deletion

7.3 Legal Requirements

Some information may be retained longer to comply with legal obligations, resolve disputes, or enforce our agreements.

8. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for international transfers:

  • Standard Contractual Clauses (SCCs) for EU data transfers
  • Adequacy decisions where applicable
  • Certification schemes and codes of conduct
  • Binding corporate rules for intra-group transfers

9. Children's Privacy

Our Service is not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If you become aware that a child has provided us with personal information, please contact us immediately.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by:

  • Posting the updated policy on our website
  • Sending you an email notification
  • Displaying a notice in our application

Your continued use of our Service after any changes constitutes acceptance of the updated Privacy Policy.

11. Contact Information

If you have questions about this Privacy Policy or our data practices, please contact us:

General Privacy Questions

Email: privacy@clario.finance

Phone: +1 (555) 123-4567

Data Protection Officer

Email: dpo@clario.finance

Address: [Your Business Address]

EU Representative

For EU residents, you may also contact our EU representative at eu-privacy@clario.finance

12. Regulatory Compliance

We comply with applicable privacy laws and regulations, including:

  • GDPR (EU): General Data Protection Regulation
  • CCPA (California): California Consumer Privacy Act
  • PIPEDA (Canada): Personal Information Protection and Electronic Documents Act
  • LGPD (Brazil): Lei Geral de Proteção de Dados
  • PDPA (Singapore): Personal Data Protection Act

Questions About Your Privacy?

Our privacy team is here to help you understand your rights and our data practices.