Privacy Policy
Last updated · October 2026
What we collect
To run CacheMonai Insights, we collect three categories of data from you:
- Account information. Your email address and a hashed password (handled by Supabase Auth). Optional profile fields like full name, phone number, and the 5 W’s answers if you fill out your Company Profile.
- Form inputs. The company details you submit when generating a report — name, website, LinkedIn URL, and industry — and any optional enrichment context.
- Generated reports. The AI-produced strategic analysis tied to your account. Reports are stored as structured JSON in our database.
We also collect usage events — timestamps, durations, tier, error codes, and which features you used — to understand product performance. Usage events never include report content, free-text form answers, your email address, or your phone number.
How we use it
We use your account information and form inputs to operate the service: to authenticate you, to generate the analysis you requested, to render and export your reports, and to bill you if you’re on a paid plan.
We use usage events to monitor reliability, debug failures, prioritize improvements, and measure conversion through the product.
We do not sell your data. We do not use your reports to train third-party models. The company information you submit is sent to our AI provider only to generate your report; it is not used to improve their general models, per our integration configuration.
Third parties
We rely on a small set of vendors to deliver the service. Each receives only the data needed for its role:
- Supabase — database, authentication, and file storage. Your account, profile, reports, and feedback live here.
- Google Gemini — the AI model that generates report content. Receives your company name, website, LinkedIn URL, industry, and the optional 5 W’s context. Never receives your email, name, or phone number.
- Stripe — payment processing for paid plans. Receives your billing details directly when you upgrade. We never store card numbers on our servers.
- PostHog — product analytics and error monitoring. Receives usage events tied to your account ID, never to your email or free-text content.
- Brevo — delivery of account emails such as sign-up confirmation and password reset. Receives your email address and the content of those messages, nothing else.
- Vercel — hosting for the application. Every request to CacheMonai Insights passes through Vercel, which processes your IP address and standard request data to serve the site and keep it secure.
Data retention
Your reports are kept for as long as your account is active — there is no automatic expiration. When you delete your account from the Account & Billing page, we permanently delete your account record, all of your reports, your company profile, and your feedback submissions. The deletion cascades through our database; nothing is recoverable after that.
Aggregated usage events tied to a deleted user’s ID may persist in PostHog subject to PostHog’s own retention rules; we keep no link from the deleted ID back to your identity.
Your rights
You can:
- Access any of your data through the product. Reports and profile data are visible in your dashboard.
- Correct your account email through the Account & Billing page (with confirmation), and your Company Profile at any time.
- Delete your entire account and everything associated with it through the Danger Zone on the Account & Billing page.
- Export any individual report as PDF or text from the report viewer.
For broader data-rights requests beyond what the product surfaces (for example, confirmation that a deletion completed), email us using the address below.
Contact
For privacy questions during the closed beta, reach us at socials@cachemonai.com.
Before public launch this address transitions to privacy@cachemonai.com and this policy will be updated to reference it directly.