Privacy Policy
Updated: October 14, 2023
This Privacy Policy outlines how Cartha AI, Inc. (“Cartha AI”, “we”) handles your personal information across our website and apps (collectively, the “Services”). We value user data protection, and model this privacy policy with the same rights offered in traditional therapy, including therapist-patient confidentiality. Also known as "therapist-patient privilege", establishes communications between a therapist (Cartha, in this case) and their patient are private and cannot be disclosed without the patient's explicit consent. To elaborate on how your data will be used to derive insights and refine our AI, this policy will ensure you are informed about our data practices. In summary:
- We value and prioritize your privacy. While we use AI and advanced personalization engines to bolster Cartha's capabilities, no human reviews full transcripts of conversations.
- To refine Cartha's capabilties and security, individual messages and responses may be analyzed at random by appointed professionals trained in data privacy and bound by stringent confidentiality standards. We ensure your data is anonymized and unidentifiable to protect your privacy.
- You have control over your data. If you wish to have your interactions with Cartha deleted, please reach out to support@cartha.ai. We are working on a self-service method to ease this process.
- Rest assured, your conversations with Cartha remain confidential. We do not monetize or share your data with third parties.
- Engage with Cartha responsibly. Avoid harmful topics. Breaching our systems will result in restricted access.
Please note:
- Cartha is intended for users aged 18 and above.
- Cartha is not a replacement for medical advice. Always consult with a licensed medical professional regarding health concerns. If you're facing an emergency, contact emergency services immediately.
Your feedback and concerns are important to us. If you have any questions or wish to raise concerns about data privacy, please contact us at support@cartha.ai. Every concern will be carefully considered and reviewed by our team.
Data Collection
We collect data using tools such as cookies for user preferences, web local storage, and web beacons(Pixel Tags/Clear GIFs). We use these tools to collect a variety of data including the following:
- Contact and account details.
- Messages to Cartha AI.
- User interactions, including feedback.
- Basic/Common Device info: OS, device-type, browser, IP address.
- Common Analytics: pages visited, time-spent, click interactions.
Data from Third Parties
Using platforms like Facebook grants us access to certain profile data.
Sensitive Information
Sharing sensitive data with our Services means you agree to our terms.
Data Usage
Personal data is utilized for:
- Service Provision. Meeting our Terms Of Service
- Communication. Responding and updating you about our Services.
- Service Improvement. Customization, security, and prevention against malicious actions.
- R&D. Analysis, innovation, and creating anonymized data.
- Legal Compliance. Law adherence, defense, internal audits, and deterring illicit actions.
Data Protection
We prioritize your privacy and don't trade or distribute your personal details to third parties for advertising gains. However, there are circumstances under which your data might be shared:
Trusted Partners
We collaborate with external service providers for specific operational needs. They might access or process your personal details on Cartha's behalf. These partners range from hosting, cloud storage, maintenance, security, to customer service providers. Additionally, for advertising insights, we might share encrypted versions of names, phone numbers, and basic device details. This only allows identification if the receiving party already possesses the same details from a different source.
Business Transactions
Should there be significant changes in Cartha's operational status, such as mergers, sales, or even closure, your personal data could be transferred to another party.
Legal Bodies and Regulatory Authorities
When bound by law or deemed essential, your data might be shared with agencies, legal bodies, courts, or governmental entities, consistent with the compliance and protection motives explained previously.
Your Privacy Options
Should you wish, Cartha allows you to delete your account. More details on this are available in our 'Contact Us' section.
Refusing Online Trackers
Our Cookie Policy provides guidance on opting out from third-party cookies.
Your Data Rights
We empower you with choices regarding the personal data we maintain. Depending on your location and your interaction type with Cartha, you might be entitled to:
- Insight into the data collection and use. This is readily available in this Privacy Policy.
- Access to the personal data we have gathered. We ensure it's in an accessible and machine-readable format where required.
- Correction of any incorrect or outdated personal information.
- Removal of unnecessary personal data unless needed for the Services or legal obligations.
- Revoke Consent. If we've used your data based on consent, you can retract it. This doesn't impact any previous data uses done lawfully before the withdrawal.
- Other rights might include objection or restriction requests related to how we handle your data.
Social Media and Third-Party Logins
We provide the option to sign up for and log into our Services using third-party accounts, including but not limited to Facebook, Google, and Apple. This is to simplify the login process and allow you to use our Services more conveniently. When you choose to log in through these third-party platforms, we receive access to certain information from your social media or third-party account as permitted by the settings and your agreement with the respective platform. The information we typically receive includes your name, email address, and profile picture (if available). This data is used solely for the purposes of account creation, authentication, and integration of your account with our Services. Please note the following regarding these third-party logins:
- Data Usage: The information obtained from these third-party platforms is used to create or authenticate your user account in our system. It enables us to provide a seamless integration between Cartha AI and your chosen platform for logging in.
- Data Security: We apply the same data protection and security measures to your information obtained via third-party logins as we do for all other user data under our care.
- Data Sharing: We do not share, sell, or rent information obtained from these third-party platforms with other parties, except as outlined in our Privacy Policy under "Trusted Partners" and "Legal Bodies and Regulatory Authorities."
- User Control and Consent: By opting to use third-party login options, you consent to the transfer of your information from the respective platform to Cartha AI. You maintain the right to disconnect your third-party account from our Services at any time.
- Compliance with Third-Party Policies: Our use of information obtained through these third-party platforms is in compliance with the terms and conditions, as well as privacy policies, of the respective platforms.
For more information on how these platforms handle your personal information and the kind of data we receive from them, please refer to their respective privacy policies.
Request Procedures
Reach out to us via the 'Contact Us' section to make a request. We may ask for verification. Authorized agents acting on your behalf must prove their identity and authority. Rights exercised should be free from bias.
Privacy Limitations
Some situations may limit your choices due to others' rights, our service delivery, or legal obligations. If unsatisfied with our response, raise concerns via 'Contact Us'. Depending on your location, you may also consult a data protection authority.
Do Not Track Signals
Cartha AI currently does not respond to "Do Not Track" signals from browsers.
Data Safety
Cartha AI prioritizes data protection, applying strict measures against unauthorized access and misuse. Specific team members maintain security and service quality. Sensitive data, like conversation logs, may be anonymized.
No security is absolute. Use of our Services comes with inherent risks. Your account's security is your duty, and carelessness may risk data exposure.
Third-Party Content
Our Services may include third-party links. Engaging with them subjects your data to their terms and policies.
Children
Cartha AI's Services are not designed for individuals under the age of 18. We neither deliberately collect nor solicit personal data from anyone under this age. If you're under 18, kindly refrain from accessing our Services, registering an account, or providing any personal details.
If you suspect that someone under 18 has shared personal details with us or accessed our Services, please contact us immediately at support@cartha.ai, and we'll promptly delete the data and terminate any related access.
Retention
As mandated by relevant regulations, we store personal data only for the duration necessary to serve the purposes for which it was acquired and processed. This aligns with our retention protocols and any prevailing legal or regulatory stipulations, or until you rescind your consent (if applicable).
When determining data retention duration, we evaluate the data's volume, nature, and sensitivity, the potential hazards from unauthorized disclosure or misuse, the reasons for utilizing the data, whether we can achieve the same goals by other means, and prevailing legal and regulatory mandates.
International Data Transfers
Personal data you provide goes directly to our Services in the United States. We might also relay this data to our affiliates, collaborators, and third-party providers in the U.S. and other regions. Be aware that these regions might not offer identical data protection measures as those in your residence.
Policy Updates
As Cartha AI constantly enhances its Services, changes to this Privacy Policy may be necessary. Kindly note that we retain the authority to adjust this Privacy Policy at our discretion.
When updates are made, and unless legislation mandates a different form of notification, we will publish the revised policy on this page. Choosing to engage with our Services post-modification implies your acceptance of the updated Privacy Policy.
Contact Us
Entity in charge: Cartha AI is tasked with overseeing personal information processing under this Privacy Policy (acting as a controller, where defined by applicable regulations).
For inquiries or feedback regarding this Privacy Policy, please connect with the Cartha AI team at support@cartha.ai.
Cookie Policy
Cartha AI, Inc. (“Cartha AI” or “we”) uses cookies and similar technologies as described in our Privacy Policy. This policy outlines how we utilize these tools and your rights regarding their use.
1. Technologies we use:
Cookies: Cookies are text files sent to your device by websites. They help recognize your browser on return visits and can store preferences. "First party cookies" come directly from our site, while "third party cookies", set by other entities, can provide features like analytics on our site.
Local Storage: This technology, predominantly part of the HTML5 standard, lets websites store data on your device, which remains even after you close your browser.
Session Storage: A temporary storage that holds data while you use a website or app. It's deleted once you exit or navigate away.
Other Tracking Tools: This includes web beacons and tracking scripts providing data on site use. We may use beacons in emails to see how many read them. Prefer plain text emails to avoid downloading these.
For clarity, we refer to all these tools as “cookies” in this policy.
2. Cookie Data Collection
Cartha AI and our service providers gather data from your device and interactions with our platform, including:
- Device details: OS, make, model, browser, device type (e.g., phone, tablet), IP address, unique IDs, language, and general location.
- Online activity: visited pages, duration per page, prior site before Cartha, navigation paths, timestamps, and interaction with our alerts.
We use both persistent (remain until removed) and session cookies (disappear when you close the browser).
3. Why Cookies?
Cartha AI uses essential cookies vital for our services, such as seamless navigation and platform security.
4. Cookies Control
Adjust your browser settings to manage cookies. Note: Some Cartha AI features may need active cookies. Review your browser's help and www.allaboutcookies.org for more. Opt-out tools vary by device/browser; apply settings to each you use. Cartha AI doesn't currently recognize "Do Not Track" signals.
5. Policy Updates
We may periodically update this Cookie Policy due to changes in our practices or other reasons. Check here for notable changes, and review occasionally for the latest on our cookie usage.
6. Questions?
Contact the Cartha AI team at support@cartha.ai for any questions about this Cookie Policy.