← Back to HomeLast updated: February 2026
1. Data We Collect
We collect the following categories of information when you use GetABrain.ai:
- Account information: Name, email address, password (hashed), and account type (Worker or Requestor).
- Response data: Queries submitted by Requestors and responses provided by Workers, including metadata such as timestamps and quality ratings.
- Payment information: Billing details processed through Stripe. We do not store full credit card numbers on our servers.
- Behavioral data for bot detection: Mouse movements, keystroke patterns, typing cadence, and interaction timing used to verify that responses are human-generated.
- Device and browser information: Browser type, operating system, screen resolution, and language preferences.
- IP addresses: Collected for security, fraud prevention, and rate limiting purposes.
2. How We Use Your Data
We use the data we collect for the following purposes:
- Provide and maintain the Service: To operate the platform, match Workers with queries, and deliver responses to Requestors.
- Process payments: To handle billing for Requestors and payouts for Workers through Stripe.
- Improve quality: To calculate quality scores, manage rate limits, and continuously improve the reliability of responses.
- Detect fraud and abuse: To identify and prevent bot activity, fake accounts, and other forms of platform abuse.
- Communicate with you: To send account-related notifications, security alerts, and important service updates.
3. Data Sharing
We share your data only in the following limited circumstances:
- Stripe: Payment information is shared with Stripe for processing transactions, payouts, and compliance with financial regulations.
- Law enforcement: We may disclose your information if required to do so by law or in response to valid legal requests from public authorities.
- We do not sell your personal data. We will never sell, rent, or trade your personal information to third parties for marketing or advertising purposes.
4. Data Retention
We retain your data according to the following schedule:
- Account data: Retained while your account is active, plus 30 days after account deletion to allow for account recovery.
- Financial records: Retained for 7 years in compliance with tax and financial reporting requirements.
- Bot detection data: Behavioral data used for bot detection is retained for 90 days and then automatically purged.
5. Cookies & Tracking
We use the following cookies and tracking technologies:
- Session cookies: Essential cookies required for authentication and maintaining your login session.
- Analytics: We may use analytics tools to understand how users interact with the platform and to identify areas for improvement.
6. Your Rights Under GDPR
If you are a resident of the European Economic Area (EEA), you have the following rights under the General Data Protection Regulation (GDPR):
- Right of access: You may request a copy of the personal data we hold about you.
- Right to rectification: You may request that we correct any inaccurate or incomplete personal data.
- Right to erasure: You may request that we delete your personal data, subject to legal retention requirements.
- Right to restriction: You may request that we restrict the processing of your personal data in certain circumstances.
- Right to data portability: You may request a machine-readable copy of your personal data for transfer to another service.
- Right to object: You may object to the processing of your personal data for certain purposes.
To exercise any of these rights, please contact us at privacy@getabrain.ai. We will respond to your request within 30 days.
7. Your Rights Under CCPA
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to know: You have the right to know what personal information we collect, use, disclose, and sell.
- Right to delete: You have the right to request deletion of your personal information, subject to certain exceptions.
- Right to opt-out of sale: We do not sell your personal data. However, you have the right to opt-out of any future sale of your personal information should our practices change.
8. Security
We take the security of your personal data seriously and implement appropriate technical and organizational measures to protect it:
- Encryption: All data is encrypted in transit using TLS/SSL and sensitive data is encrypted at rest.
- Secure payments: All payment processing is handled by Stripe, a PCI DSS Level 1 certified payment processor.
- Regular audits: We conduct regular security audits and vulnerability assessments to identify and address potential threats.
9. Children's Privacy
The Service is not intended for use by anyone under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have collected personal data from a child under 18, we will take steps to delete that information promptly. If you believe we may have collected information from a minor, please contact us at privacy@getabrain.ai.
10. International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. When we transfer your data internationally, we take appropriate safeguards to ensure your data remains protected in accordance with this Privacy Policy and applicable law, including the use of Standard Contractual Clauses where required.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last updated" date. We may also send you an email notification for significant changes. We encourage you to review this Privacy Policy periodically for any updates.
12. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at:
Email: privacy@getabrain.ai