We Use Cookies

    We use cookies to enhance your browsing experience, analyze site traffic, and personalize content. By clicking "Accept All", you consent to our use of cookies. You can customize your preferences or reject non-essential cookies.

    Learn more about our cookie policy

    GDPR Compliance

    Your data protection rights and our commitment to GDPR compliance

    Last updated: December 11, 2025

    EU Data Residency

    All data stored and processed in German datacenters with ISO 27001 certification

    Zero Data Retention

    100% zero data retention policy for both text conversations and image generation

    Full User Rights

    Complete control over your data with right to access, erasure, and portability

    What is GDPR?

    The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect in the European Union on May 25, 2018. It strengthens and unifies data protection for individuals within the EU and addresses the export of personal data outside the EU.

    GDPR gives you greater control over your personal data and requires organizations to be transparent about how they collect, use, and protect your information.

    Our GDPR Compliance

    EU Data Residency

    All user data is stored and processed exclusively in German datacenters (Centron GmbH). Our infrastructure is ISO 27001 certified, ensuring enterprise-grade security and compliance with EU data protection requirements.

    100% Zero Data Retention (ZDR)

    We enforce a strict zero data retention policy for all AI interactions. This means your conversations, generated images, and any input/output data are never stored for training purposes. We only use ZDR-compliant AI models that guarantee no data retention.

    End-to-End Encryption

    All data is encrypted both in transit (TLS 1.3) and at rest. We use industry-standard encryption protocols to ensure your data remains secure throughout its lifecycle.

    No Training on Your Data

    Unlike many AI platforms, we guarantee that your conversations and generated content are never used to train AI models. Your data remains private and is never shared with third parties for training purposes.

    Certifications & Compliance

    Our hosting provider Centron GmbH maintains multiple certifications demonstrating their commitment to security, quality, and compliance. All our infrastructure is hosted in Centron's certified datacenters.

    ISO 27001

    Information Security Management Systems - Ensures robust security measures for data confidentiality, integrity, and availability

    ISO 9001

    Quality Management Systems - Ensures consistent, high-quality services and continuous process improvement

    ISO 14001

    Environmental Management - Demonstrates commitment to environmental protection and sustainability

    Allianz für Cyber Security

    Partnership with German cybersecurity alliance for enhanced threat protection and security best practices

    Your Rights Under GDPR

    Right to Access

    You have the right to request a copy of all personal data we hold about you, including conversations, preferences, and account information.

    Right to Rectification

    You can request correction of any inaccurate or incomplete personal data we hold about you at any time.

    Right to Erasure

    You can request deletion of your personal data and account at any time. We will permanently delete all your data within 30 days of your request.

    Right to Data Portability

    You can request an export of your data in a structured, machine-readable format (JSON) to transfer it to another service.

    Right to Restrict Processing

    You can request that we limit how we process your personal data in certain circumstances.

    Right to Object

    You can object to certain types of data processing, such as marketing communications or analytics.

    Right to Withdraw Consent

    You can withdraw your consent for data processing at any time through your account settings or by contacting us.

    Right to Lodge a Complaint

    You have the right to lodge a complaint with your local data protection authority if you believe we have violated GDPR.

    Data Processing and Storage

    We process personal data only to the extent necessary to provide our AI collaboration platform services. This includes account management, service delivery, and compliance with legal obligations.

    All data processing activities are conducted in accordance with GDPR principles: lawfulness, fairness, transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, and confidentiality.

    Types of Data We Process:

    • Account information (email, name, subscription tier)
    • Conversation history (stored locally, never used for training)
    • User preferences and settings
    • Usage statistics (anonymized, aggregate data only)
    • Payment information (processed by Paddle.com, our payment provider)
    • Technical data (IP address, browser type, device information)

    Data Security Measures

    We implement comprehensive security measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction.

    Encryption

    TLS 1.3 for data in transit, AES-256 encryption for data at rest

    Access Controls

    Role-based access control, multi-factor authentication, and regular access audits

    Security Monitoring

    24/7 security monitoring, intrusion detection, and automated threat response

    Backup & Recovery

    Regular encrypted backups with secure storage and tested recovery procedures

    Contact Us

    If you have questions about GDPR compliance, wish to exercise your rights, or need assistance with data protection matters, please contact us:

    chat@aicollab.app

    Ready to Experience 300+ AI Models?

    Get started today. Access models from OpenAI, Google, Anthropic, Grok and more.

    GDPR compliant · Zero data retention · Cancel anytime