Privacy Policy

Your privacy and data security are fundamental to our mission. Learn how CodeGuardian AI protects your information and maintains the highest standards of data protection.

Last Updated
January 15, 2025
Effective Date
January 15, 2025
Data Controller
LoveLogicAI LLC

Introduction

LoveLogicAI LLC ("we," "our," or "us") operates the CodeGuardian AI platform ("Service") that provides AI-powered security analysis for software codebases. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.

We are committed to protecting your privacy and maintaining the security of your data. This policy applies to all information collected through our website, platform, API, and related services.

1. Information We Collect

1.1 Account Information

  • • Name and email address
  • • Company name and job title (optional)
  • • Account preferences and settings
  • • Payment information (processed by third-party providers)
  • • Profile information and avatar (if provided)

1.2 Code and Project Data

  • • Source code files and project structures
  • • Configuration files and dependencies
  • • Project metadata and file information
  • • Analysis results and security findings
  • • Custom rules and configurations (if applicable)

Important: Your code is processed securely and is never shared with third parties. We implement strict access controls and encryption to protect your intellectual property.

1.3 Usage and Technical Data

  • • IP addresses and browser information
  • • Platform usage patterns and feature interactions
  • • API usage logs and performance metrics
  • • Error logs and debugging information
  • • Device and system information

2. How We Use Information

Service Provision

  • • Analyze your code for security vulnerabilities
  • • Generate security reports and recommendations
  • • Provide platform access and functionality
  • • Process API requests and webhooks
  • • Maintain and improve our AI models

Account Management

  • • Create and maintain your account
  • • Process payments and subscriptions
  • • Provide customer support
  • • Send service notifications and updates
  • • Enforce terms of service

Platform Improvement

  • • Analyze usage patterns and performance
  • • Develop new features and capabilities
  • • Improve security detection accuracy
  • • Optimize platform performance
  • • Conduct research and development

Legal Compliance

  • • Comply with legal obligations
  • • Respond to law enforcement requests
  • • Protect rights and property
  • • Investigate security incidents
  • • Maintain regulatory compliance

3. Information Sharing

Our Commitment

We do not sell, rent, or trade your personal information or code to third parties. Your source code and intellectual property remain confidential and are only accessed by our secure AI systems for analysis purposes.

3.1 Limited Sharing Scenarios

Service Providers
Trusted third parties who provide infrastructure, payment processing, and analytics (under strict confidentiality agreements)
Legal Requirements
When required by law, court order, or to protect rights and safety
Business Transfers
In the event of merger, acquisition, or asset sale (with notice and user consent)
With Your Consent
When you explicitly authorize us to share specific information

4. Data Security

Encryption & Protection

  • • End-to-end encryption for data in transit
  • • AES-256 encryption for data at rest
  • • Secure API authentication and authorization
  • • Regular security audits and penetration testing
  • • SOC 2 Type II compliance framework

Access Controls

  • • Multi-factor authentication required
  • • Role-based access control (RBAC)
  • • Principle of least privilege
  • • Regular access reviews and audits
  • • Employee security training programs

Infrastructure Security

  • • Cloud-native security architecture
  • • Network segmentation and firewalls
  • • Intrusion detection and monitoring
  • • Automated vulnerability scanning
  • • 24/7 security operations center

Monitoring & Response

  • • Real-time security event monitoring
  • • Incident response procedures
  • • Data breach notification protocols
  • • Regular backup and recovery testing
  • • Continuous compliance monitoring

5. Data Retention

Retention Periods

Account Information
Retained while your account is active and for 90 days after account deletion
Code and Analysis Data
Retained for 30 days after project deletion or account termination
Usage and Log Data
Retained for 12 months for security and performance analysis
Payment Information
Retained as required by payment processors and tax regulations

Data Deletion

You can request deletion of your data at any time through your account settings or by contacting our support team. We will process deletion requests within 30 days, except where we are required to retain data for legal or regulatory purposes.

Some aggregated, anonymized data may be retained for research and platform improvement purposes, but this data cannot be linked back to your individual account.

6. Your Rights

Access Rights

Request access to personal information we hold about you, including data sources and processing purposes.

Rectification Rights

Correct or update inaccurate personal information through your account settings or by contacting support.

Portability Rights

Export your data in a structured, machine-readable format for transfer to another service provider.

Erasure Rights

Request deletion of your personal information, subject to legal and regulatory retention requirements.

Objection Rights

Object to processing of your personal information for direct marketing or other legitimate interest purposes.

Restriction Rights

Request restriction of processing while we verify accuracy or assess objections to processing.

Exercising Your Rights

To exercise any of these rights, contact us at privacy@lovelogicai.com. We will respond to your request within 30 days and may require identity verification.

Contact Privacy Team or email privacy@lovelogicai.com

7. Regulatory Compliance

GDPR

Full compliance with EU General Data Protection Regulation for European users

CCPA

California Consumer Privacy Act compliance for California residents

SOC 2

SOC 2 Type II certified security and availability controls

Additional Certifications

  • • ISO 27001 Information Security Management
  • • NIST Cybersecurity Framework alignment
  • • Privacy Shield Framework (where applicable)
  • • PIPEDA compliance for Canadian users
  • • Regular third-party security audits
  • • Industry standard encryption protocols

8. Contact Information

Data Controller

LoveLogicAI LLC
1234 Innovation Drive
Tech Valley, CA 94105
United States

Privacy Contacts

Privacy Officer:
privacy@lovelogicai.com
Data Protection Officer:
dpo@lovelogicai.com

Policy Updates

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of material changes via email or platform notification at least 30 days before they take effect.