Privacy Policy
Version 1.0 • Effective Date: October 13, 2025
1. Introduction
At AgentSearch ("we," "our," or "us"), we respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered search service.
This policy complies with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
2. Information We Collect
2.1 Information You Provide
- Account Information: Email address, name, password (encrypted)
- Profile Information: Optional profile details you choose to provide
- Payment Information: Processed securely through Stripe (we do not store credit card details)
- Search Queries: The questions and searches you submit to our service
- Feedback: Comments, ratings, and feedback you provide
2.2 Automatically Collected Information
- Usage Data: Search history, features used, time spent, interaction patterns
- Device Information: Browser type, operating system, device identifiers
- Log Data: IP address, access times, pages viewed, referring URLs
- Cookies: Session data, preferences, authentication tokens (see our Cookie Policy)
- Performance Metrics: API response times, error rates, system performance data
2.3 Information from Third Parties
- OAuth Providers: If you sign in via Google or other OAuth providers, we receive basic profile information
- Analytics Services: Aggregate usage statistics from analytics tools
3. How We Use Your Information
We use your information for the following purposes:
3.1 Service Delivery
- Processing and responding to your search queries
- Personalizing search results and recommendations
- Maintaining your account and preferences
- Providing customer support
3.2 Service Improvement
- Analyzing usage patterns to improve features
- Training and improving our AI models
- Identifying and fixing technical issues
- Testing new features and functionality
3.3 Communication
- Sending service updates and announcements
- Responding to your inquiries and support requests
- Sending marketing emails (with your consent, opt-out available)
- Notifying you of policy changes
3.4 Security and Compliance
- Preventing fraud and abuse
- Enforcing our Terms of Service
- Complying with legal obligations
- Protecting our rights and property
4. Legal Basis for Processing (GDPR)
We process your personal data under the following legal bases:
- Contractual Necessity: To provide the services you requested
- Legitimate Interests: To improve our service, prevent fraud, and ensure security
- Consent: For marketing communications and optional features
- Legal Obligations: To comply with applicable laws and regulations
5. Data Sharing and Disclosure
We do not sell your personal data. We may share your information with:
5.1 Service Providers
- OpenAI: For AI model processing (queries are sent to OpenAI API)
- Search APIs: Brave Search, Bing, ArXiv, GitHub, Reddit (anonymous queries when possible)
- Stripe: For payment processing
- Cloud Hosting: AWS, Google Cloud, or similar providers
- Analytics: Prometheus, Grafana, and other monitoring tools
5.2 Legal Requirements
We may disclose your information if required by law, court order, or government request, or to protect our legal rights.
5.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.
5.4 With Your Consent
We may share your information for other purposes with your explicit consent.
6. Data Retention
We retain your information for as long as necessary to provide the service and fulfill the purposes outlined in this policy:
- Account Data: Until you delete your account (plus 30 days for backup retention)
- Search History: 12 months (or until account deletion)
- Usage Logs: 90 days
- Payment Records: 7 years (tax compliance)
- Analytics Data: Aggregated data retained indefinitely (anonymized)
7. Your Rights (GDPR)
If you are in the EU/EEA, you have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your data ("right to be forgotten")
- Right to Restriction: Limit how we process your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Withdraw consent at any time (does not affect lawfulness of prior processing)
- Right to Lodge a Complaint: File a complaint with your local data protection authority
To exercise these rights, contact us at privacy@agentsearch.com
8. Data Security
We implement appropriate technical and organizational measures to protect your data:
- Encryption: Data in transit (HTTPS/TLS) and at rest (AES-256)
- Authentication: Secure password hashing (bcrypt), JWT tokens
- Access Controls: Role-based access, principle of least privilege
- Monitoring: 24/7 security monitoring and logging
- Regular Audits: Security assessments and vulnerability scanning
- Incident Response: Procedures for data breach notification
However, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security but are committed to protecting your data to the best of our ability.
9. Children's Privacy
Our service is not intended for children under 13 years of age (or 16 in the EU). We do not knowingly collect personal information from children. If you believe we have inadvertently collected data from a child, please contact us immediately.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws different from your jurisdiction. We ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) for transfers outside the EU/EEA.
11. Cookies and Tracking
We use cookies and similar tracking technologies. For detailed information, please see our Cookie Policy.
12. Third-Party Links
Our service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.
13. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights:
- Right to Know: Request information about data collected and how it's used
- Right to Delete: Request deletion of your personal data
- Right to Opt-Out: Opt-out of sale of personal information (we do not sell data)
- Right to Non-Discrimination: Equal service regardless of privacy choices
To exercise these rights, contact us at privacy@agentsearch.com
14. Updates to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via email or through a prominent notice on our website. The "Last Updated" date at the top indicates when the policy was last revised.
15. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices:
Email: privacy@agentsearch.com
Data Protection Officer: dpo@agentsearch.com
Support: support@agentsearch.com
16. Data Protection Officer
For EU/EEA users, our Data Protection Officer can be reached at dpo@agentsearch.com for any privacy-related inquiries or to exercise your GDPR rights.
If you have any questions about this document, please contact us at legal@agentsearch.com