Privacy Policy
Last updated: March 30, 2026
1. Information We Collect
Account information: When you create an account, we collect your email address, name, and profile information provided through OAuth (e.g., Google).
Usage data: We collect information about how you use Pandi, including features used, projects created, and build/automation activity.
Integration data: When you connect third-party services (Gmail, Slack, etc.), we access data from those services only as needed to perform the actions you request. We do not store the content of your emails, messages, or files beyond what is needed for your active session or automation.
Payment information: Payment processing is handled by Stripe. We do not store your credit card details.
2. How We Use Your Information
We use your information to: (a) provide and improve the Service; (b) process payments; (c) send transactional communications (magic link emails, billing notifications); (d) monitor and maintain service reliability; and (e) comply with legal obligations.
3. AI and Data Processing
Pandi uses third-party AI models (from providers such as Anthropic, OpenAI, and Google) to generate code and process your requests. Your prompts and project context are sent to these providers for processing. We do not use your project data to train AI models. Third-party providers are bound by their own data processing agreements.
4. Data Sharing
We do not sell your personal information. We share data only with: (a) service providers necessary to operate Pandi (hosting, payment processing, AI providers); (b) when required by law; or (c) with your explicit consent.
5. Data Security
We implement industry-standard security measures including encryption at rest and in transit, access controls, and regular security reviews. Integration credentials (OAuth tokens, API keys) are stored encrypted and scoped to your workspace.
6. Data Retention
We retain your account data and project data for as long as your account is active. Upon account deletion, we remove your personal data within 30 days, except where retention is required by law or for legitimate business purposes (e.g., billing records).
7. Your Rights
You have the right to: (a) access your personal data; (b) correct inaccurate data; (c) request deletion of your data; (d) export your data; and (e) object to processing. To exercise these rights, contact us at privacy@pandi.app.
8. Cookies
We use essential cookies for authentication and session management. We do not use third-party advertising or tracking cookies.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email or in-app notification.
10. Contact
Questions about privacy? Contact us at privacy@pandi.app.