Privacy Policy
Effective date: March 25, 2026
1. Introduction
Schema.ai Labs ("we", "us", "our") operates Schema.ai and related services. This Privacy Policy explains how we collect, use, disclose, and protect your information when you use our Service.
2. Information We Collect
Account Information
When you create an account, we collect your name and email address through our authentication provider (Authgear). We also store your account role (Free or Pro) and subscription status.
API Usage Data
We log API requests including endpoint, timestamp, response status, and your account identifier. This data is used for rate limiting, billing, and service improvement.
Analytics Data
We use Plausible Analytics and Google Analytics to collect anonymous usage data including page views, referrers, and device information. Plausible is privacy-focused and does not use cookies or collect personal data.
Payment Information
Payment processing is handled by Stripe. We do not store credit card numbers or full payment details. Stripe's privacy policy governs the handling of payment data.
3. How We Use Your Information
We use collected information to:
- Provide, maintain, and improve the Service
- Process payments and manage subscriptions
- Enforce rate limits and access controls
- Send essential service communications (account changes, security alerts)
- Understand usage patterns to improve our product
- Detect and prevent abuse or fraud
We do not sell your personal information to third parties. We do not use your data to train AI models.
4. Data Sharing
We may share your information with:
- Service providers: Authgear (authentication), Stripe (payments), Google Cloud (infrastructure), Cloudflare (CDN and web hosting)
- Legal compliance: When required by law, legal process, or to protect our rights
5. Data Retention
We retain account data for as long as your account is active. API usage logs are retained for up to 90 days. Analytics data is retained in aggregate form indefinitely. You may request deletion of your account and associated data by contacting us.
6. Data Security
We implement reasonable security measures to protect your data, including encryption in transit (TLS), hashed API keys (SHA-256), and access controls on our infrastructure. However, no method of transmission or storage is 100% secure.
7. Cookies
We use essential cookies for authentication session management. Plausible Analytics does not use cookies. Google Analytics may set cookies for analytics purposes. You can control cookie behavior through your browser settings.
8. Your Rights
You have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your account and data
- Export your data in a portable format
- Object to processing of your data
To exercise these rights, contact us at [email protected].
9. Children's Privacy
The Service is not intended for users under 16 years of age. We do not knowingly collect personal information from children.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the Service. The effective date at the top indicates when this policy was last revised.
11. Contact
For privacy-related questions or requests, contact us at [email protected].