Privacy Policy
Last updated: January 27, 2025
1. Introduction
Lexaro ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and services (collectively, the "Service").
By using the Service, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies and practices, please do not use the Service.
2. Information We Collect
2.1 Information You Provide
- Account Information: When you create an account, we collect your name, email address, and password.
- Profile Information: Any additional information you choose to add to your profile, such as a profile picture.
- User Content: Documents, text, and other files you upload to the Service for processing.
- Payment Information: When you subscribe to a paid plan, our payment processor (Stripe) collects your payment card details. We do not store your full card number on our servers.
- Communications: Information you provide when you contact us for support, provide feedback, or communicate with us.
2.2 Information Collected Automatically
- Usage Data: Information about how you use the Service, including features accessed, pages visited, and actions taken.
- Device Information: Device type, operating system, browser type, and unique device identifiers.
- Log Data: IP address, access times, referring URLs, and other standard log information.
- Cookies and Similar Technologies: We use cookies and similar tracking technologies to collect information about your browsing activities.
2.3 Information from Third Parties
We may receive information about you from third-party services if you choose to link or connect them to the Service (e.g., signing in with Google).
3. How We Use Your Information
We use the information we collect to:
- Provide the Service: Process your documents, generate study materials, convert text to speech, and deliver other core features.
- Manage Your Account: Create and maintain your account, process subscriptions, and handle billing.
- Improve the Service: Analyze usage patterns to enhance features, fix bugs, and develop new functionality.
- Personalize Your Experience: Remember your preferences and customize the Service to your needs.
- Communicate with You: Send service-related announcements, respond to inquiries, and provide customer support.
- Ensure Security: Monitor for fraudulent activity, prevent abuse, and protect the security of our Service and users.
- Comply with Legal Obligations: Meet legal requirements, respond to lawful requests, and protect our rights.
4. How We Share Your Information
We do not sell your personal information. We may share your information in the following circumstances:
4.1 Service Providers
We share information with third-party service providers who perform services on our behalf:
- Cloud Infrastructure: Amazon Web Services (AWS) for hosting and storage
- Payment Processing: Stripe for subscription billing
- Text-to-Speech: Amazon Polly and other TTS providers for audio generation
- AI Services: OpenAI and other AI providers for study features
- Analytics: Services that help us understand usage patterns
These providers are contractually obligated to protect your information and may only use it to provide services to us.
4.2 Legal Requirements
We may disclose your information if required by law, court order, or government request, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
4.3 Business Transfers
If Lexaro is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change.
4.4 With Your Consent
We may share your information for other purposes with your explicit consent.
5. Data Retention
We retain your information for as long as your account is active or as needed to provide the Service. We may also retain certain information as required by law or for legitimate business purposes, such as:
- Resolving disputes and enforcing our agreements
- Maintaining security and preventing fraud
- Complying with legal obligations
When you delete your account, we will delete or anonymize your personal information within a reasonable timeframe, except where retention is required by law.
6. Data Security
We implement appropriate technical and organizational measures to protect your information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit (HTTPS/TLS)
- Encryption of sensitive data at rest
- Secure password hashing
- Regular security assessments
- Access controls and authentication
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
7. Your Rights and Choices
Depending on your location, you may have certain rights regarding your personal information:
7.1 Access and Portability
You can access and download your data through your account settings, or by contacting us.
7.2 Correction
You can update your account information at any time through your account settings.
7.3 Deletion
You can request deletion of your account and personal information by contacting us. Note that some information may be retained as required by law.
7.4 Marketing Communications
You can opt out of marketing emails by clicking the "unsubscribe" link in any marketing email or by updating your preferences in your account settings. Note that you will still receive transactional emails related to your account.
7.5 Cookies
Most browsers allow you to control cookies through their settings. However, disabling cookies may affect the functionality of the Service.
8. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Essential Cookies: Required for the Service to function (e.g., authentication, security)
- Preference Cookies: Remember your settings and preferences
- Analytics Cookies: Help us understand how you use the Service
We do not use cookies for third-party advertising purposes.
9. Children's Privacy
The Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us and we will delete such information.
Users between 13 and 18 years of age should use the Service only with parental or guardian consent and supervision.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your own. These countries may have different data protection laws. By using the Service, you consent to the transfer of your information to the United States and other countries where we and our service providers operate.
We take appropriate safeguards to ensure your information remains protected in accordance with this Privacy Policy when transferred internationally.
11. California Privacy Rights
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to Know: You can request information about the categories and specific pieces of personal information we have collected about you.
- Right to Delete: You can request deletion of your personal information, subject to certain exceptions.
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights.
We do not sell personal information as defined by the CCPA.
12. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):
- Legal Basis: We process your data based on your consent, contract performance, legal obligations, or legitimate interests.
- Right to Object: You can object to processing based on legitimate interests.
- Right to Restriction: You can request that we restrict processing of your data in certain circumstances.
- Right to Portability: You can receive your data in a structured, machine-readable format.
- Right to Withdraw Consent: Where processing is based on consent, you can withdraw it at any time.
- Right to Lodge a Complaint: You can lodge a complaint with a supervisory authority.
13. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to read the privacy policies of any third-party services you access.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email or by posting a prominent notice on the Service prior to the changes taking effect. The "Last updated" date at the top of this policy indicates when it was last revised.
Your continued use of the Service after any changes indicates your acceptance of the updated Privacy Policy.
15. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
Email: swemattcodes@gmail.com
We will respond to your request within a reasonable timeframe.