DRAFT — Not reviewed by legal counsel. Do not rely on this document. Legal review required before production launch.
We collect the following categories of data:
We use the data we collect to:
Important
Your matter data, client information, uploaded documents, and AI query content are not used to train any AI model — including Lexitio’s own models or any third-party model providers we work with.
We use Anthropic’s API under Anthropic’s zero-data-retention API terms, which prohibit Anthropic from using API input/output for model training. We apply the same contractual restriction to any other LLM provider we use.
[TODO: Lawyer review required. Verify this is contractually guaranteed with each LLM provider in use: Anthropic, OpenAI, DeepSeek, Google. Confirm zero-retention API agreements are in place before removing this TODO.]
We work with the following third-party services to provide the Service:
| Provider | Purpose | Data transferred |
|---|---|---|
| Anthropic | AI language model (Claude) | Query text, document excerpts |
| OpenAI | AI language model (GPT — optional fallback) | Query text, document excerpts |
| Amazon Web Services | File storage (S3) and infrastructure | Uploaded files (encrypted at rest) |
| Stripe | Payment processing | Billing details (Stripe stores card data; we do not) |
| SendGrid / SMTP | Transactional email delivery | Email address, email content |
| Sentry | Error monitoring | Stack traces, anonymized request metadata |
[TODO: Add or remove providers to match actual production configuration. Include Redis provider if cloud-hosted. Include any analytics tools (PostHog, Amplitude, etc.).]
Active account data is retained for the duration of your subscription. When you cancel, your data is retained for 30 days to allow for export, then deleted.
Firm administrators may configure a custom retention policy (in days) for closed and archived matters via the firm settings page. Matters subject to a legal hold are exempt from automatic deletion.
Audit logs are retained for a minimum of [TODO: specify — e.g., 7 years for legal compliance] and are append-only. They cannot be modified or deleted.
You have the right to:
[TODO: If serving EU/UK users, add explicit GDPR/UK GDPR rights language and DPO contact if applicable. Lawyer review required.]
[TODO: Add SOC 2 certification status when obtained. Add penetration test date when completed. Lawyer review required before making compliance claims.]
The Service uses a session token stored in your browser’s local storage for authentication. We do not use third-party advertising cookies. We may use first-party analytics to understand feature usage; this data is aggregate and not linked to individual clients or matters.
[TODO: If using any analytics, tracking pixels, or session recording tools (PostHog, Hotjar, etc.), list them here and ensure a cookie banner is displayed if required under GDPR. Lawyer review required.]
The Service is not intended for users under the age of 18. We do not knowingly collect personal data from children. If you believe we have inadvertently collected data from a minor, contact us at privacy@lexitio.com and we will promptly delete it.
We may update this Privacy Policy from time to time. We will notify you of material changes by email and by posting a notice in the application at least 30 days before changes take effect.
For privacy-related requests or questions, contact our privacy team at privacy@lexitio.com.
[TODO: If required by GDPR or state law, appoint a Data Protection Officer (DPO) or designated privacy representative and list their contact here.]