This policy explains what Chatera collects, why, and what you can do about it. It covers two kinds of people: owners, who build and publish a page, and visitors, who talk to an owner’s assistant.
What we collect
From owners
- The name you claim and the email you publish with.
- Your Teach conversation and the assistant prompt it produces; files you upload.
- Usage of the assistant, measured in model tokens, to apply your plan’s allowance.
- Billing status from Polar (plan, renewal date). We never see or store card details.
- Technical logs and error reports: IP address, browser, the page that failed.
From visitors
- The messages you send to an owner’s assistant, and the replies. If you type personal details into a conversation, they are stored with it.
- If the owner has turned on the contact form, the assistant may offer it during the conversation. Filling it in is your choice; the name, email or phone you leave is stored with the conversation and shown to the owner, who is responsible for how they use it. You can ask the owner, or us, to delete it.
- An IP address, used only to limit abuse and kept in short-lived logs.
How we use it
- To run the Service: host pages, answer visitors, send the sign-in code, apply plan limits.
- To generate replies: messages and the owner’s prompt are sent to OpenAI. They process the text to produce a reply and, under their terms, do not use it to train models.
- To keep the Service working: error reporting (Sentry) and product analytics (PostHog). Analytics records events such as “page published” and, so that we can see where the product goes wrong, a replay of the screen — what was on it, what was clicked and what was typed into it. Sign-in codes are excluded from the recording. Owners’ replays include their Teach conversation; visitors’ include what they type to an assistant.
- To send transactional email (Resend): sign-in codes and “your page is live”. No marketing email without separate consent.
Legal bases
Performing our contract with owners; our legitimate interest in keeping the Service secure and improving it; and, for visitors, the owner’s legitimate interest in answering enquiries. Where consent is required we ask for it.
Who else sees it
Only the providers named above, each bound by a data-processing agreement: OpenAI, Polar, Resend, Sentry, PostHog, and our hosting provider. We do not sell personal data. Some providers are outside the EEA; transfers rely on standard contractual clauses.
Owners and their visitors
The owner of a page is the controller of what visitors say on it; Chatera is the processor. Owners can read their conversations and must handle visitors’ requests about them. A visitor who wants a conversation removed can write to the owner or to us.
How long we keep it
- Account data and conversations: while the account exists. Deleting the account removes them within 30 days from backups.
- Unpublished drafts: the name is released after 24 hours; the draft itself is removed after 30 days of inactivity.
- Logs and error reports: 30 days. Billing records: as long as tax law requires.
Your rights
You can access, correct, export or delete your data, object to processing, and complain to your data-protection authority. Owners delete their account from Settings. For anything else write to hello@chatera.ai; we answer within 30 days.
Cookies
One strictly necessary cookie keeps you signed in, and one remembers your language. Product analytics sets one more, to recognise the same browser across visits and to tie a session replay to the rest of a visit. There are no advertising cookies and we do not track you across other sites.
Children
The Service is not for anyone under 16. We delete accounts we learn belong to children.
Changes
We update this policy as the Service changes; the date above is the latest version. For material changes we email owners.