Legal
Privacy Policy
How Anhora handles personal data for our website, product, APIs, embeds, and AI assistants.
- Effective
- Last updated
This Privacy Policy explains what information Anhora collects, why we collect it, how we use and share it, and the choices available to you. It applies to anhora.net, app.anhora.net, api.anhora.net, status.anhora.net, our SDKs and embeds, and related services (collectively, the "Service").
Our Terms of Service govern use of the Service. Cookie preferences for the marketing site are described in the Cookies section below and can be managed anytime from Cookie preferences in the footer.
Who we are
Anhora ("Anhora," "we," "us," or "our") provides software that helps businesses create branded AI assistants powered by their products, documents, websites, CMS content, and other knowledge.
For questions about this Privacy Policy or our privacy practices, contact us at hello@anhora.net or via our contact page.
If you use Anhora on behalf of a company, that company is typically the controller of Customer Content and end-user chat data processed through your assistants. Anhora acts as a processor for that Customer Content, except where we determine the purposes and means of processing (for example, account administration, billing, security, and product analytics on our own systems).
Whose data this covers
This Policy covers personal data about:
- Website visitors of our marketing site and documentation;
- Customers and account users who register for or administer Anhora;
- End users who interact with an Anhora assistant embedded on a customer's website or connected channel, to the extent that data is processed by Anhora to provide the Service; and
- Business contacts who email us or request demos, support, or early access.
If you are an end user chatting with a customer's assistant, that customer's own privacy notice also applies. Ask that customer how they use your information.
Information we collect
Account and profile data
Name, email address, password or authentication identifiers, company name, role, team membership, billing and plan details, and preferences you set in the dashboard.
Customer Content
Content you submit or connect to operate assistants, including product catalogs, documents, website or CMS content, brand rules, prompts, configuration, API payloads, domain verification records, and related metadata.
Assistant conversations
Messages, attachments you enable, timestamps, session identifiers, and technical metadata from chats between end users and assistants you deploy. Depending on your configuration, conversations may also include contact details an end user chooses to share.
Usage and device data
IP address, browser type, device and OS information, approximate location derived from IP, referring URLs, pages viewed, feature usage, performance metrics, and diagnostic logs.
Cookies and similar technologies
Cookies, local storage, and similar technologies on our marketing site and product surfaces. See [Cookies](#cookies).
Communications
Messages you send to support or sales, and records of those conversations.
Integrations
If you connect Slack, a CMS, or other integrations, we receive the data needed to authenticate and operate that integration under your configuration and the third party's terms.
Google sign-in data
If you choose Continue with Google or connect Google to an existing Anhora account, Google provides Anhora with a stable Google account identifier, your verified email address, and, when available, your display name and profile image.
We use this information only to authenticate you, prevent duplicate or conflicting account links, create or update your Anhora profile, and secure your account. Anhora does not request access to Gmail, Google Drive, Calendar, contacts, or other Google product data for sign-in. We do not store the Google access token or refresh token returned during sign-in.
We retain the external account identifier and profile fields while Google remains connected to your Anhora account or as otherwise required under this Policy. You can disconnect Google from the Account page when another sign-in method is available. Google sign-in data is not sold and is shared only with service providers that process account data for us under the safeguards described in this Policy.
How we use information
We use personal data to:
- provide, operate, secure, and maintain the Service;
- create and manage accounts, teams, and access controls;
- process knowledge sources and generate assistant responses;
- enable embeds, domain verification, APIs, SDKs, and integrations you configure;
- provide support, onboarding, and product communications;
- monitor abuse, debug issues, and improve reliability and performance;
- analyze aggregated product usage to improve Anhora;
- send service notices, security alerts, and (where permitted) product updates; and
- comply with law and enforce our Terms of Service.
We do not sell personal data.
AI processing and model providers
Anhora uses large language models and related AI systems to generate assistant responses and support product features.
To produce an answer, relevant prompts, conversation context, and retrieval snippets from your connected knowledge may be sent to third-party foundation model providers. Those providers process that data to return model outputs under their terms and our agreements with them.
Model training
Anhora does not use your Customer Content or end-user chat content to train or fine-tune foundation models for other customers, except where you explicitly opt in to a documented improvement program, or where we use aggregated and de-identified insights that cannot reasonably identify you or an end user.
Where available, we configure model providers so that API data is not used to train their general models. Provider capabilities and defaults can change; we update our practices and documentation when material changes occur.
Accuracy and sensitive data
AI outputs can be wrong or incomplete. Do not submit special-category or highly sensitive personal data to the Service unless you have a lawful basis and appropriate safeguards. Customers should instruct end users not to share unnecessary sensitive information in chat.
Controller and processor roles
Anhora as controller. We are typically the controller for account data, billing data, marketing-site analytics (subject to cookie choices), security logs, and our own support communications.
Anhora as processor. When you use Anhora to process Customer Content and end-user conversations for your business, you are generally the controller (or a processor for your own customer), and Anhora processes that data on your instructions to provide the Service. Enterprise customers may request a Data Processing Agreement (DPA). Contact hello@anhora.net.
Customers are responsible for providing required notices to end users, obtaining any necessary consents, configuring retention, and ensuring their use of Anhora complies with applicable law — including AI transparency disclosures where required.
International transfers
Anhora and some of our providers may process data in countries other than where you or your end users are located. Where required, we use appropriate transfer mechanisms, such as Standard Contractual Clauses or equivalent safeguards, and take steps designed to protect personal data in line with applicable law.
If you need details about subprocessors or transfer mechanisms for an enterprise review, contact hello@anhora.net.
Retention
We retain personal data only as long as needed for the purposes described in this Policy, including:
- account and billing records for the life of the account and a reasonable period afterward for audits, disputes, and legal obligations;
- Customer Content and conversation data according to your configuration, plan settings, and our operational backups, until you delete it or your account is closed and deletion is completed;
- security and diagnostic logs for a limited period needed for security and reliability; and
- marketing preferences until you unsubscribe or we no longer need them.
When data is no longer needed, we delete or de-identify it. Residual copies may remain in encrypted backups for a limited time until those backups rotate.
Security
We implement administrative, technical, and organizational measures designed to protect personal data, including access controls, encryption in transit, monitoring, and least-privilege practices.
No method of transmission or storage is completely secure. You are responsible for protecting account credentials and the environments where you deploy embeds or store API keys. Report suspected security issues to hello@anhora.net.
Your rights and choices
Depending on where you live, you may have rights to:
- access, correct, or delete personal data;
- export a copy of personal data;
- object to or restrict certain processing;
- withdraw consent where processing is based on consent; and
- opt out of certain marketing communications.
To exercise these rights for data Anhora controls, email hello@anhora.net. We may need to verify your identity. If we process data for a customer as a processor, we will direct you to that customer or assist them as required.
You may also have the right to lodge a complaint with a data protection authority in your country.
Children
The Service is intended for business and professional use and is not directed to children. We do not knowingly collect personal data from children under 16 (or the higher age required in your jurisdiction). If you believe a child has provided personal data, contact us and we will take appropriate steps to delete it.
Changes to this Policy
We may update this Privacy Policy from time to time. For material changes, we will provide reasonable notice (for example by email to account owners or a notice in the dashboard) before the changes take effect, except where a faster change is required by law or to address an urgent security issue.
The "Last updated" date at the top of this page reflects the latest revision. Continued use of the Service after an update becomes effective means you acknowledge the updated Policy.
Contact
Privacy questions, requests, or concerns:
- Email: hello@anhora.net
- Contact form: Contact
For related terms governing use of the Service, see our Terms of Service.
Questions about these terms? Contact us or email hello@anhora.net.