At UID Studio LLC, the privacy and security of your information are our fundamental priority. This Policy explains how we collect, use, and protect your data.
1. Information We Collect
- Registration Information: Name, email address, and access credentials.
- Billing Information: Securely processed by Stripe. We do not store card data on our systems.
- Security Data: Information about vulnerabilities, assets, and activity logs uploaded by the User to manage their security posture.
- AI Usage: If you use our AI features, text snippets (findings) will be processed to generate mitigation suggestions.
2. Use of Information
We use your data exclusively to:
- Provide and maintain the vulnerability management operating system.
- Improve the accuracy of our AI-based suggestions (with consent and anonymization where applicable).
- Send critical security notifications and technical support.
3. Artificial Intelligence Privacy
UID Studio integrates third-party models (DeepSeek, Gemini, OpenAI, Anthropic).
- Privacy by Design: Data sent via API to these providers is subject to their enterprise terms of use, which typically prohibit using this data to train public models.
- User Control: You may opt out of AI features or use your own API keys (BYOK), in which case privacy is governed by your direct contract with the provider.
4. Data Security
We implement industry-grade security measures:
- Data encryption at rest (AES-256) and in transit (TLS 1.2+).
- Logical database isolation per workspace.
- Periodic internal audits and penetration testing.
5. Your Rights
You have the right to access, export, or request the deletion of your data at any time through your account settings or by contacting [email protected].
6. Service Providers
We share the minimum necessary data with trusted providers for service operation: Stripe (payments) and Amazon AWS (cloud infrastructure).
7. Notices and Contact
All legal communications, support requests, or inquiries regarding the processing of personal data must be addressed to [email protected]. UID Studio LLC and UID Studio SPA (Chile) will process these requests within a timeframe consistent with applicable law in Delaware (USA) and Chile, as applicable.