Privacy Policy

Last updated: December 18, 2024

1. Introduction

Welcome to NativeDoc ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our PDF management and AI-powered document processing platform.

By accessing or using NativeDoc, you agree to the terms of this Privacy Policy. If you do not agree with our policies and practices, please do not use our service.

2. Information We Collect

We collect several types of information to provide and improve our service:

2.1 Account Information

  • Email address (required for account creation)
  • Name (if provided)
  • Profile information from social login providers (Google, if used)
  • Password (securely hashed, never stored in plain text)

2.2 Document Data

  • PDF files you upload for processing
  • Images converted to or from PDF format
  • Text extracted from documents for AI processing
  • AI-generated content (summaries, translations, quizzes, etc.)

2.3 Payment Information

  • Billing name and address
  • Payment card details (processed securely by Stripe — we never see or store your full card number)
  • Transaction history and subscription status

2.4 Usage Information

  • Features and tools you use
  • Frequency and duration of use
  • Device information (browser type, operating system)
  • IP address and general location (country/region level)
  • Error logs and performance data

3. How We Use Your Information

We use your information for the following purposes:

  • Service Delivery: To provide PDF processing, AI-powered features, and document management capabilities
  • Account Management: To create and manage your account, authenticate your identity, and provide customer support
  • Payment Processing: To process subscriptions, handle billing, and prevent fraud
  • AI Processing: To send document text to AI providers (OpenAI) for generating summaries, translations, quizzes, and other AI features
  • Service Improvement: To analyze usage patterns, fix bugs, and develop new features
  • Communication: To send service updates, security alerts, and (with your consent) promotional messages
  • Legal Compliance: To comply with applicable laws and protect our legal rights

4. Document Processing & AI

Your documents are processed as follows:

Client-Side Processing

Many PDF operations (viewing, basic editing, compression) are performed locally in your browser. These files are not uploaded to our servers.

AI-Powered Features

When you use AI features (summarization, translation, chat, etc.), text extracted from your documents is sent to OpenAI's API for processing. OpenAI processes this data according to their privacy policy. We do not use your data to train AI models.

Cloud Storage

Files you choose to save to your account are stored securely in Supabase cloud storage with encryption at rest. You can delete your files at any time.

5. Data Sharing & Third Parties

We share your information only with the following categories of third parties:

  • Supabase: Our backend and database provider, handling authentication and file storage
  • Stripe: Our payment processor, handling all billing and subscription management
  • OpenAI: AI processing for document analysis, summarization, translation, and other AI features
  • Vercel: Our hosting provider, serving the application

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

6. Data Security

We implement industry-standard security measures to protect your data:

  • All data transmitted over HTTPS with TLS encryption
  • Passwords hashed using secure algorithms
  • Files encrypted at rest in cloud storage
  • Regular security audits and monitoring
  • Access controls limiting employee access to user data
  • Secure authentication via Supabase Auth

While we strive to protect your information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.

7. Data Retention

We retain your data as follows:

  • Account Data: Retained while your account is active and for 30 days after deletion request
  • Uploaded Files: Retained until you delete them or close your account
  • AI Processing Data: Not stored permanently; processed and discarded after generating results
  • Payment Records: Retained as required by tax and accounting laws (typically 7 years)
  • Usage Logs: Retained for 90 days for service improvement and troubleshooting

8. Cookies & Tracking

We use essential cookies to:

  • Maintain your login session
  • Remember your preferences (theme, settings)
  • Ensure security and prevent fraud

We do not use third-party advertising cookies or sell data to advertisers.

9. Your Rights

Depending on your location, you may have the following rights:

  • Access: Request a copy of your personal data
  • Correction: Update inaccurate or incomplete data
  • Deletion: Request deletion of your account and data
  • Portability: Export your data in a machine-readable format
  • Objection: Opt out of certain data processing activities
  • Withdraw Consent: Revoke previously given consent at any time

To exercise these rights, please contact us at the email below. We will respond within 30 days.

10. International Data Transfers

Your data may be processed in countries outside your residence, including the United States, where our service providers operate. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.

11. Children's Privacy

NativeDoc is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we discover that we have collected data from a child under 13, we will delete it promptly.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last updated" date. For significant changes, we may also send an email notification. Your continued use of the service after changes constitutes acceptance of the updated policy.

13. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:

NativeDoc Support

Email: support@spendjot.app