Privacy Policy

Last updated: August 4, 2026

This Privacy Policy explains how Tensor AI Inc (“Tensor AI Inc”, “we”, “us”, or “our”) collects, uses, and shares information about you when you use ChatVLM and related websites, applications, and services (collectively, the “Service”) available at chatvlm.com. By using the Service, you agree to the collection and use of information in accordance with this Policy.

In short

We do not train AI models on your content, and neither do the model providers we send it to. Prompts, messages, and files routed to a third-party model are covered by contractual zero-data-retention terms, so the provider may process them only to return your response and does not keep them afterwards. This applies on every plan, including the free tier — privacy is not a paid upgrade. Zero data retention does not mean we collect nothing: we still store the content you ask us to keep, and we still use ordinary web and product analytics. We keep your data only while your account is active, and delete it immediately if you close your account. Sections 2, 5, and 8 set out exactly what is kept, and for how long.

1. Information We Collect

We collect information you provide directly, information collected automatically as you use the Service, and information we receive from third parties.

  • Information you provide: account details such as your name and email address; the content you submit to or create with the Service, including prompts, messages, uploaded files, projects, and generated documents; and information you include when you contact us.
  • Information collected automatically: device and usage data, log data, approximate location derived from your IP address, and product-analytics events such as pages viewed, features used, and interactions with the interface, collected through cookies and similar technologies.
  • Information from third parties: data from authentication providers, payment processors, and analytics partners.

Throughout this Policy we distinguish your content — what you put into the Service and ask it to work on — from usage and analytics data, which describes how you interact with the Service. The two are treated differently, as described in Sections 2, 5, and 8.

2. Your Content, AI Models, and Training

We do not train on your content. We do not use your prompts, messages, files, or generated documents to train, fine-tune, or otherwise develop AI models, and we do not permit the model providers we work with to do so. This applies to every plan, including the free tier. It is not a paid feature, and it is not a setting you need to find and enable.

Zero data retention at the model provider. To answer a request, we send the relevant parts of your conversation — which may include your prompt, earlier messages, and files you have attached — to the AI model selected for that request. Where that model is operated by a third party, we contract with the provider on zero-data-retention terms: the provider may process your content only to return a response to us, does not retain it once the request completes, and may not use it for training or model improvement. Where a provider will not agree to those terms, we do not route your content to it.

What we store ourselves. Zero data retention describes how model providers handle your content in transit; it does not mean the Service forgets your work. So that the Service is useful across sessions, we store your chats, projects, files, artifacts, and memory entries on our own infrastructure, and they remain available to you for as long as your account is active. That is storage on your behalf, not training data — and it ends when your account does, as described in Section 5.

Private and sovereign models. Enterprise customers may route some or all requests to open-weight models that we operate on private infrastructure, or to an on-premises appliance within their own network. In those configurations no third-party model provider is involved in processing the content at all.

When we access content. Our staff do not browse your conversations. We access your content only where necessary to provide support you have asked us for, to investigate suspected abuse or a security incident, or where we are required to by law.

3. How We Use Your Information

We use the information we collect to:

  • provide, maintain, and improve the Service, subject to the limits on your content in Section 2;
  • create and manage your account and authenticate you;
  • process transactions and send related information;
  • respond to your requests and provide customer support;
  • monitor and analyze trends, usage, and activity in the aggregate;
  • detect, prevent, and address fraud, abuse, and technical issues; and
  • comply with legal obligations.

We do not use your content to train AI models, and we do not sell your personal information or share it for cross-context behavioral advertising.

4. How We Share Your Information

We do not sell your personal information. We may share information:

  • with service providers who process information on our behalf, such as hosting, analytics, and payment processing;
  • with AI model and infrastructure providers, solely to generate the responses you request and under the zero-data-retention terms described in Section 2;
  • to comply with the law or to protect rights, safety, and property;
  • in connection with a merger, acquisition, or sale of assets; and
  • with your consent or at your direction, including when you share a conversation by link.

5. Data Retention

We retain your data only for as long as you have an active account. Different categories of data are handled as follows.

  • Your content and account profile. Chats, projects, files, artifacts, memory entries, and your account details are retained while your account is active, and until you delete them. When you close your account we delete them immediately: there is no retention period, no grace period, and no archived copy kept for later. Because deletion is immediate and cannot be undone, export anything you want to keep before closing your account.
  • Content sent to model providers. Retained by the provider only for as long as it takes to return your response, under the terms in Section 2.
  • Billing records. We keep the minimum record of transactions — such as invoices and payment references — that we are legally required to retain for tax and accounting purposes. These records identify a transaction, not the contents of your conversations.
  • Usage, log, and analytics data. Retained on a rolling basis to operate, secure, and improve the Service, including the web and product analytics described in Section 8. Closing your account stops further collection and deletes your content, but it does not retract analytics events already recorded about how the Service was used; we aggregate or anonymize that data once we no longer need it in identifiable form.

To be explicit about the boundary: our zero-data-retention commitment governs how AI model providers may handle your content. It is not a claim that we store nothing at all. We retain the content you asked us to keep, and we retain the analytics and security telemetry described in this Policy.

6. Security

We use reasonable technical and organizational measures designed to protect your information. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.

7. Your Rights and Choices

Depending on where you live, you may have the right to access, correct, delete, or port your personal information, or to object to or restrict certain processing. You can delete individual conversations and files at any time from within the Service, or close your account entirely — which deletes your content immediately, as described in Section 5. To exercise any other right, contact us at info@tensorai.io. You can also opt out of marketing communications at any time.

8. Cookies and Analytics

We use cookies and similar technologies to operate and improve the Service and to remember your preferences. You can control cookies through your browser settings.

We use PostHog for website and product analytics. It records events such as pages viewed, features used, and interactions with the interface, together with device information and approximate location derived from your IP address. For signed-in users these events are associated with your account identifier, name, and email address so that we can understand usage across sessions. Analytics requests are proxied through our own domain, and the data is processed in the United States.

We use analytics to understand how the Service is used and where to improve it. Analytics is a separate activity from AI processing: it is not used to train models, and the contents of your conversations are not sent to our analytics providers.

9. Third-Party Services

The Service may link to or integrate with third-party services. This Policy does not apply to those services, and we are not responsible for their practices. Where you choose to connect an external account or tool, the data exchanged is governed by that service’s own terms in addition to this Policy.

10. Children’s Privacy

The Service is not directed to children under 13 (or the age required by your jurisdiction), and we do not knowingly collect personal information from them.

11. International Users

We are based in the United States, and your information may be processed in the United States or other countries whose data protection laws may differ from those in your jurisdiction.

12. Changes to This Policy

We may update this Policy from time to time. If we make material changes, we will notify you by updating the date at the top of this Policy or through other reasonable means.

13. Contact Us

If you have any questions about this Policy, contact us at info@tensorai.io.