Privacy Policy

How InventDB Software LLP handles your data, AI requests, encryption keys, and your rights.

Effective: 9 May 2026 Updated: 9 May 2026 Version: 3.0
The short version: Your data lives encrypted on our managed AWS infrastructure with a per-instance master key (KMS-backed customer-managed keys on the Business roadmap). AI requests route through the InventDB AI Gateway to Anthropic Claude Opus 4.7 with the no-training opt-out applied at the API level — today via the Anthropic API directly; at production launch via AWS Bedrock through the Gateway. We log only what we need to bill you (token counts, costs) and keep the audit log you can query yourself. You own your data; you can export it any time.

1. Data We Collect

1.1 Account information

Email, name, billing address, payment method (processed by Razorpay; we never see card numbers).

1.2 Platform usage telemetry

Login times, MCP token issuance, AI Canvas turn count and token usage (for billing line-item accounting), error logs (without record content).

1.3 Your data in InventDB

Whatever you import or create in your Instance. Encrypted at rest with your encryption key. Not used by us for any purpose other than serving your queries.

2. How AI Requests Are Routed

When you use the AI Canvas, the InventDB AI Gateway routes your prompts (and the records, schemas, or document text needed to answer them) from your Instance to Anthropic for inference. Specifically:

3. Encryption Keys

3.1 Today — what ships

A 32-byte AES-256-GCM master encryption key is generated for each instance at provisioning. On Personal, the key is per-user; on Business, the key is per-instance. The key lives in the instance configuration (optionally derived from a passphrase via Argon2id). You can rotate it from the admin console. We hold the running key in memory only as long as needed to serve your queries.

3.2 Roadmap — AWS KMS-backed CMEK for Business

Customer-Managed Encryption Keys backed by AWS KMS are on the Business roadmap: the master key will live in your AWS account, with every key access audited via CloudTrail, and revocation cuts our access without our intervention. We'll update this section when KMS integration ships.

4. Sharing

We do not sell, rent, or trade your personal information. We share data only:

5. Your Rights

6. Data Retention

Active subscription: data retained as long as your subscription is active. After cancellation: 30-day grace period during which you can export, then complete deletion.

7. Security

AES-256-GCM encryption at rest with a per-instance master key (rotatable from the admin console). TLS 1.3 in transit. Audit log on every read, write, and access (queryable via the audit_log MCP tool). On the roadmap: AWS KMS-backed CMEK for Business plans, third-party penetration testing, and SOC 2 Type II audit (no audit firm engaged yet; we'll publish a date when one is). See the Security page for the full have / roadmap / won't-have breakdown.

8. International Transfers

Our managed cloud runs on AWS US East regions by default. Customers requiring EU residency or other regions can request that during onboarding (Business tier).

9. Children's Privacy

Our services are not directed to individuals under 16. We do not knowingly collect data from children. If you believe we have, contact us and we will delete it.

10. Changes

We may update this policy with at least 30 days' prior notice via email to subscribers.

11. Contact

For privacy questions, contact privacy@inventdb.com.