INTRASCOPE.APP — PRIVACY POLICY
Last updated: 08.10.2025.
This Privacy Policy explains how EVI Solutions DOO (“Intrascope”, “we”, “us”, or “our”) collects, uses, stores, and protects personal and organizational data when you use Intrascope.app, platform.intrascope.app, chat.intrascope.app, or any related services (collectively, the “Service”).
By accessing or using our Service, you agree to this Privacy Policy. If you do not agree, please discontinue use immediately.
1. Who We Are
Intrascope is a secure AI workspace operated by EVI Solutions DOO, headquartered in Belgrade, Serbia.
Our mission is to provide a private, encrypted, and collaborative AI environment for teams and organizations.
We act as a data controller for personal data collected directly through our platform and a data processor for data transmitted through user-connected APIs (such as OpenAI, DeepSeek, Gemini, Anthropic, and xAI).
2. Information We Collect
We collect only the minimal information necessary to operate our Service effectively
2.1. Information You Provide
- Account information: name, email address, organization name.
- Workspace settings: company logo, projects, manifests, and user roles.
- API keys: if you connect your own third-party LLM keys (e.g., OpenAI API), they are encrypted and never shared externally.
- Support communications: if you contact us via email or live chat, we collect your message and contact details.
2.2. Automatically Collected Data
- Usage analytics (token counts, model type, timestamps).
- Browser and device information (for security and performance monitoring).
- Log data including IP address and session metadata (retained temporarily for abuse prevention).
2.3. Payment Information
We do not collect or store any payment card information.
All payments are securely handled by third-party payment processors:
- Paddle — for direct purchases on Intrascope.app.
- AppSumo — for lifetime deal (LTD) customers.
Both Paddle and AppSumo act as independent Merchants of Record, processing all financial transactions and compliance with tax, VAT, and KYC regulations.
We only receive non-sensitive transaction identifiers (amount, status, date).
3. How We Use the Information
We use collected data only for the following purposes:
- To provide, maintain, and improve the Service.
- To authenticate users and manage access to workspaces.
- To process billing, usage tracking, and support.
- To communicate updates, security notices, or feature announcements.
- To comply with applicable laws and prevent fraud or misuse.
We do not sell, rent, or trade any personal data with third parties.
We do not share customer data with advertising networks or external analytics providers.
4. AI Data, Models, and API Communications
- When users interact with LLM models through Intrascope, prompts and responses are transmitted securely to the selected third-party API (e.g., OpenAI, DeepSeek, Gemini, Anthropic, or xAI).
- Intrascope stores the content of chats and manifests solely for the purpose of enabling platform functionality, such as maintaining project context, chat history continuity, and collaboration among authorized team members.
- All stored content (including prompts, responses, and manifests) is encrypted both in transit (TLS 1.3) and at rest (AES-256) in our databases hosted on secure servers.
- This content is never read, manually accessed, or analyzed by Intrascope staff, and is never shared with third parties.
- Stored content is not used for model training, analytics, advertising, or profiling.
- Access to this encrypted data is strictly programmatic — it is decrypted only when necessary to render user history, manifests, or context inside the workspace.
- Only aggregated, anonymized technical metrics (such as token counts, model type, timestamps, and cost data) are collected for usage analytics and billing purposes.
5. Data Storage and Retention
- Account and billing information are retained as long as your workspace remains active.
- Chat history and manifests are stored in encrypted form and may be permanently deleted upon account closure.
- Log and technical data are retained for up to 30 days for operational and security reasons.
- API keys provided by users are encrypted and may be deleted automatically upon account termination or by user request.
- We retain no customer payment data; this is handled by Paddle and AppSumo under their own privacy policies.
6. Data Ownership and Control
- You retain full ownership of all data you input or generate within your workspace (including manifests, chat transcripts, and project content).
- Intrascope acts solely as a processor and will never claim rights to user-generated content.
- You can request deletion of your data at any time by contacting support at support@intrascope.app.
- Upon verified deletion request, all user data (including manifests, chats, and API keys) are permanently removed from our systems within 30 days.
7. Data Sharing and Disclosure
We do not share, sell, or disclose your personal or project data with any third party, except:
- when required by applicable law or legal process,
- to enforce our Terms of Service,
- or to protect the rights, safety, and property of Intrascope, its users, or the public.
Intrascope does not provide or sell data to marketing firms, data brokers, or advertisers.
8. Security Measures
- All data transmissions are encrypted using TLS 1.3.
- All stored data (chat, manifests, user credentials, API keys) are encrypted using AES-256.
- Access to production systems is restricted to authorized personnel only.
- We employ regular security audits, monitoring, and role-based access controls.
- User passwords are hashed and salted; no plaintext credentials are stored.
Despite best practices, no system can be 100% secure. By using our Service, you acknowledge and accept inherent risks of internet-based data transmission.
9. Third-Party Processors and Integrations
The Service integrates with external AI APIs and payment processors.
Each third-party provider has its own privacy policy governing data usage:
Provider
OpenAI
DeepSeek
Anthropic (Claude)
Google Gemini
xAI (Grok)
Paddle
Purpose
AI model processing
AI model processing
AI model processing
AI model processing
AI model processing
Payment processing
Data Used
prompts, responses (via API)
prompts, responses (via API)
prompts, responses (via API)
prompts, responses (via API)
prompts, responses (via API)
name, email, transaction data
Policy Reference
openai.com/enterprise-privacy
developers.deepseek.com
anthropic.com/privacy
cloud.google.com/privacy
x.ai/privacy
paddle.com/privacy
Intrascope is not responsible for the data handling practices of these providers but ensures integrations comply with GDPR, CCPA, and equivalent frameworks.
10. International Data Transfers
Intrascope operates globally and may process data on servers located in the European Union or other jurisdictions.
All transfers comply with the GDPR and other applicable data protection regulations through secure, contractual safeguards and encryption.
11. Children’s Privacy
Our Service is not directed to individuals under the age of 18.
We do not knowingly collect personal data from minors.
If you believe a minor has provided us with data, please contact us and we will delete it promptly.
12. Your Rights (GDPR and Similar Regulations)
Depending on your jurisdiction, you may have the following rights:
- Access your personal data.
- Request correction or deletion.
- Request export of your data.
- Withdraw consent at any time.
- Lodge a complaint with your local data protection authority.
Requests can be submitted via support@intrascope.app.
We will respond within 30 days, subject to verification.
13. Changes to This Policy
We may update this Privacy Policy periodically.
Any updates will be posted on our website with a new “Last Updated” date.
Material changes will be communicated via email or dashboard notifications at least 30 days prior to taking effect.
14. Contact Information
For any questions, requests, or concerns regarding this Privacy Policy, please contact:
EVI Solutions DOO
Belgrade, Serbia
Email: support@intrascope.app
Website: https://intrascope.app
15. Summary of Key Points
- We store chat and manifest data only for functionality, in encrypted form.
- We do not read, analyze, or share user data.
- We do not store or process payment details — Paddle and AppSumo handle all billing.
- We do not use any user data for AI model training.
- You own your data and may request deletion at any time.
- All data is encrypted, isolated per company workspace, and protected under GDPR.