1. Who we are
TuIA ("we", "our") is a personal artificial intelligence service developed by TuIA Inc. / TuIA Colombia SAS. This document describes how we collect, use and protect the personal information of users of the TuIA application and its associated website.
For any privacy-related question: privacy@tu-ia.com
2. Radical Privacy — Our founding principle
TuIA is designed to know nothing about you beyond what is strictly necessary for the service. Your memory, your conversations and your personal data live on your own servers or devices, under your total control.
The Anthropic (Claude) API processes every request in stateless mode: no conversation is stored on Anthropic servers between sessions. Each session is independent.
3. Data we collect
Account data (minimal):
- Email and name provided through Google Sign-In (OAuth 2.0)
- Anonymized unique account identifier
- Subscription plan and payment status (handled by Stripe)
Usage data (aggregated and anonymized):
- Token count consumed per billing period
- Modules activated (without their content)
- Anonymous technical error logs
Data we do NOT collect:
- The content of your conversations with the AI
- Photos, images or personal files
- Contacts, emails or calendar events
- Health or biometric data
- Precise geographic location
4. How we use data
The data we collect is used exclusively to:
- Authenticate and manage your account
- Handle billing and subscription management
- Provide technical support when requested by the user
- Improve the service through aggregated anonymous metrics
We do not sell, rent or share your personal data with third parties for commercial or advertising purposes.
5. Third-party services
TuIA integrates with the following services. Each has its own privacy policy:
- Anthropic (Claude API) — stateless AI processing. Anthropic Privacy Policy
- Google (OAuth, Calendar, Gmail) — only with the user's explicit authorization. Google Privacy Policy
- Stripe — payment processing. Card data never passes through our servers. Stripe Privacy Policy
- Cloudflare — hosting and DDoS protection. Cloudflare Privacy Policy
6. Data security
- End-to-end encryption for all communications (TLS 1.3)
- Configurable TTL (Time-To-Live) for each message
- Authentication via OAuth 2.0 with certified providers
- No sensitive data stored in plain text
- Infrastructure on Cloudflare with automatic protection
7. Your rights
In accordance with applicable regulations (GDPR, Ley 1581/2012 Colombia) you have the right to:
- Access — request a copy of your personal data
- Rectification — correct inaccurate data
- Erasure — request complete deletion of your account and associated data
- Portability — export your data in a readable format
- Objection — object to specific processing
To exercise your rights: privacy@tu-ia.com
8. Cookies and tracking
TuIA uses exclusively essential technical cookies required for the service to function (authenticated session). We do not use profiling cookies, advertising tracking or third-party behavioral analytics.
9. Minors
TuIA is not intended for users under the age of 16. We do not knowingly collect data from minors. If you believe a minor has created an account, contact us immediately at privacy@tu-ia.com.
10. Changes to this Privacy Policy
We reserve the right to update this policy. In the event of material changes, we will notify you by email or in-app notification at least 30 days before they take effect. Continued use of the service after that date constitutes acceptance of the changes.