ContractPilot
AI-Assisted Contract Review
Privacy Policy
Effective Date: April 28, 2026
Vision Tech Solutions ("Company," "we," "us," or "our") operates ContractPilot. This Privacy Policy explains how we collect, use, store, and share information when you use our Service.
1. Data We Collect
- Account Information: Name, email address, and password when you register.
- Contract Uploads: Documents you submit for AI review, including file contents.
- Usage Data: Pages visited, features used, review history, and timestamps.
- Payment Information: Billing details processed by Stripe; we do not store full card numbers on our servers.
- Device Information: Browser type, operating system, and IP address collected automatically.
2. How We Use Your Data
We use collected data to:
- Provide, maintain, and improve the contract review Service.
- Process payments and manage your subscription.
- Communicate with you about your account, billing, and updates.
- Monitor Service performance and prevent abuse or security incidents.
- Comply with legal obligations.
We do not use your uploaded contracts to train, fine-tune, or improve our AI models.
3. Data Storage and Security
Your data is encrypted at rest using AES-256 and in transit using TLS 1.3. Uploaded contracts are stored in isolated, access-controlled storage and purged after the retention period. We restrict access to personal data to authorized personnel who require it to operate the Service. While no system is completely secure, we implement industry-standard measures to protect your information.
4. Data Sharing
We share data only with service providers necessary to operate the platform:
- Stripe — processes payments securely. Stripe's privacy policy governs any payment data they handle.
- Cloud Infrastructure — hosting providers that store and serve data under strict access controls.
We do not sell, rent, or trade your personal data or contract documents to third parties for their own marketing or commercial purposes.
5. Cookies and Analytics
We use Plausible Analytics, a privacy-first analytics tool that does not use cookies or collect personal data. Plausible does not track users across websites, does not collect or store personal information, and is fully compliant with GDPR, CCPA, and PECR without requiring a cookie banner. We do not use advertising trackers or third-party tracking pixels.
6. Data Retention
We retain your account information for as long as your account is active. Uploaded contract documents and generated reviews are retained for 90 days after the review is completed, after which they are permanently deleted. You may request earlier deletion at any time. Anonymized usage statistics may be retained indefinitely.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access — request a copy of the personal data we hold about you.
- Delete — request deletion of your personal data and uploaded documents.
- Export — receive your data in a structured, machine-readable format.
- Opt Out — unsubscribe from non-essential communications at any time.
To exercise any of these rights, contact us at privacy@contractpilot.xyz. We will respond to verified requests within 30 days.
8. Children's Privacy
ContractPilot is not intended for use by individuals under 18 years of age. We do not knowingly collect personal data from children. If we learn that we have collected data from a minor, we will delete it promptly.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will post the revised policy on this page with an updated effective date. If we make material changes, we will notify you via email or a prominent notice in the Service. Continued use after changes constitutes acceptance.
10. Contact
For questions or requests about this Privacy Policy, contact us at privacy@contractpilot.xyz.