Privacy Policy
Last updated: 21 September 2026
the UpAsk operator (address available on request) is the controller of the personal data described here. Contact: hello@example.com.
1. What we collect
- Account details: name, email address and the sign-in method (Google or email and password).
- Your content: the documents you upload, the text extracted from them (including text recognised from scans), your questions and the answers, and your thumbs up/down feedback.
- Usage counters (documents, storage, pages, questions) used to apply plan limits.
- Billing state: your plan and subscription status. Card details go to Paddle and never reach us.
- Product analytics: a few one-time milestones per account (sign-up, first upload, first question, upgrade) linked to your account ID, stored in our own database. No third-party analytics or advertising trackers are used.
- Messages you send through the feedback form or by email.
- Technical logs (request IDs, errors) and error reports needed to keep the service running.
2. How we use it
To provide the service: your documents are split into text passages, converted into embeddings for search, and the passages relevant to a question are sent to an AI model to write the answer. We also use data to apply plan limits, handle billing, prevent abuse, fix errors and answer support requests. We do not sell personal data and we do not use your documents to train our own models.
3. Isolation, storage and retention
Each workspace is private to its members; the service is built so that one customer's data is never used to answer another's questions. Files are kept in object storage and text and embeddings in our database until you delete them. Traffic between your browser and the service uses HTTPS.
- Deleting a document removes the file, its text and its search data.
- Deleting a workspace removes everything in it, including chats.
- Deleting your account removes your workspaces, chats, usage records and profile, and your sign-in account.
- Backups, if any, and payment records that we must keep by law may persist for a limited time afterwards.
You can export a workspace as a ZIP from its settings at any time.
Guests
You can try the service as a guest without an email address. A guest is an anonymous account with the Free plan limits and 2 questions in total. Guest documents, chats and usage records are deleted automatically after 7 days without activity. If you create an account, your guest data moves to it. To limit abuse we store a keyed hash of your IP address when a guest account is created; it is used only to cap how many guest accounts one network can start per day, and the raw address is not stored.
4. Sub-processors
We use these sub-processors to run UpAsk:
- Google (Gemini API): your document text and questions are sent to Google's Gemini API to create embeddings, recognise text in scans and generate answers. Google's own terms for the API apply to that processing.
- Google (Firebase Authentication): sign-in and account identity.
- Hosting and storage provider: runs the application, database and file storage.
- Sentry: error monitoring; reports may include technical details such as URLs and error messages.
- Paddle: payments, invoicing and taxes as merchant of record.
These providers may process data in countries outside your own.
5. Cookies
We only use essential cookies (your login session and theme preference). See the Cookie Policy.
6. Your rights
Depending on where you live you may have the right to access, correct, export or delete your data, to object to or restrict processing, and to complain to your data-protection authority. Most of this you can do yourself in the app (export, delete); for anything else write to hello@example.com.
7. Changes
We will update this page when our practices change and change the date above.