Sitrستر

Privacy Policy

Last updated: October 2026

1. Who we are

Sitr operates the API and web platform available at sitrsecure.com (the "Service"). Sitr is a privacy-layer product that intercepts text containing personal data, replaces sensitive values with pseudonyms before forwarding to AI models, and restores real values in the response. This policy explains what personal data Sitr collects about you as a user of the Service, how it is used, and your rights.

2. Data we collect about you

Account data

When you sign up, we store your email address and a hashed password via Supabase Auth. We do not store payment card details; these are handled directly by Stripe under their own privacy policy.

Usage data

We record aggregate counts of API calls per organisation per day (character counts and entity-type counts). We do not log or store the content of any prompt, response, or text processed through the redaction pipeline.

API and provider keys

Sitr API keys are stored as SHA-256 hashes. Provider keys (OpenAI, Anthropic, Google) are envelope-encrypted with AES-256-GCM before storage and are decrypted only in memory at request time.

Technical data

Standard server logs may record your IP address, request timestamps, and HTTP status codes for security and debugging purposes. These logs are retained for a maximum of 30 days.

3. Data we do not collect

Sitr does not store the text of any prompt sent through the Service. The redaction pipeline operates statelessly: input text is processed in memory, the masked version is forwarded to the AI provider, and the mapping used to restore values is discarded at the end of the request. No personally identifiable data from your end-users is written to disk or database.

4. How we use your data

  • To authenticate you and maintain your account.
  • To enforce plan usage limits and generate billing records.
  • To detect abuse or misuse of the Service.
  • To send transactional emails (account confirmation, password reset, billing receipts). We do not send marketing emails without explicit consent.

5. Sub-processors

We use the following sub-processors to operate the Service:

ProcessorPurposeLocation
VercelApplication hostingGlobal CDN
SupabaseAuthentication and databaseMumbai (ap-south-1)
StripePayment processingUnited States

6. Data retention

Account data is retained for the duration of your account. You may request deletion at any time. Usage counts are retained for up to 24 months for billing dispute resolution. Server logs are retained for 30 days. Encrypted provider keys are deleted immediately upon your request or when you remove them from the dashboard.

7. Your rights

Under Qatar's Personal Data Protection Privacy Law (PDPPL) and applicable GCC data protection frameworks, you have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate data.
  • Request deletion of your account and associated data.
  • Object to processing of your data.
  • Data portability (export of your account data in machine-readable format).

To exercise any of these rights, contact us at privacy@sitrsecure.com.

8. Security

All data is transmitted over TLS 1.2 or higher. Sensitive credentials are encrypted at rest using AES-256-GCM with envelope encryption. We conduct periodic reviews of our security posture and apply security headers (Content-Security-Policy, HSTS, X-Frame-Options) on all responses.

9. Changes to this policy

We will notify users of material changes to this policy by email at least 14 days before the change takes effect. Continued use of the Service after the effective date constitutes acceptance.

10. Contact

For privacy questions or data requests: privacy@sitrsecure.com