IntuiBloom Privacy Policy

Effective Date: July 14, 2025

IntuiBloom ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at https://www.IntuiBloom.com (the "Site") and use our web application (the "App"). The App allows users to generate, view, and interact with AI-generated knowledge graphs. By using the Site or App, you agree to the terms of this Privacy Policy. If you do not agree, please do not use our services.

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Effective Date" above. Your continued use of the Site or App after such changes constitutes your acceptance of the updated policy.

1. Information We Collect

We collect information from you in the following ways:

a. Information You Provide Directly

  • Account Information: When you sign up or sign in, including via Google account, we use Clerk for authentication. We collect personal information such as your email address and username. We do not collect or store your passwords; these are securely managed by Clerk.
  • User Inputs and Generated Content: When you generate knowledge graphs using our AI features, we collect your inputs (e.g., prompts or data you provide to the AI) and the resulting outputs (e.g., the generated knowledge graphs). These are saved to our database for your access and browsing.
  • Imported Content: When you import graph JSON files via the "Learn from Others" feature, we may collect and store the imported data if you choose to save it to our database. This saved content is then handled as described for generated graphs.
  • Feedback: If you provide feedback on a graph, including comments, ratings, or other details, we collect this information, which may include the associated graph content.
  • Shared Content: If you choose to share content via a generated link, we may collect information related to that sharing action.

b. Automatically Collected Information

  • Usage Data: We log user inputs and model outputs on our servers for operational purposes. This includes details about your interactions with the App, such as the graphs you generate, view, or interact with.
  • Device and Log Information: We may collect information about your device, browser type, IP address, operating system, and usage patterns (e.g., pages visited, time spent) to improve our services.
  • Cookies and Similar Technologies: Clerk sets a cookie to track signed-in users and maintain your session. We also use PostHog for analytics (with your consent) to understand how users interact with our service. Our cookie consent banner appears at the bottom of your screen without blocking your ability to browse the site, allowing you to make informed choices about cookie usage. You can manage cookie preferences through our Privacy Settings page or by visiting our cookie banner when it appears.

c. Client-Side Storage

To enable persistence of your graphs between browser refreshes, we sync loaded graphs to localStorage on the device you are using. Signed-in users' graphs are stored under keys associated with their user ID, while anonymous users' graphs are stored separately. You have controls to remove individual graphs, and signing out clears the localStorage keys for your user ID. You are responsible for the privacy and security of data cached on your device. Content left by anonymous users may be viewable by other users of the same browser on that device. To enhance privacy, you may use your browser's private browsing mode.

We do not collect sensitive personal information (e.g., racial or ethnic origin, political opinions, religious beliefs, or health data) unless you voluntarily provide it in your inputs or imported content, in which case it is treated as described below.

2. How We Use Your Information

We use the information we collect for the following purposes:

  • Providing and Improving Services: To generate, save, and allow you to browse and interact with your knowledge graphs. We use OpenAI models for graph generation, and with your consent (via our enabled sharing setting), we share anonymized inputs and outputs with OpenAI to improve their models. User identities are not shared with OpenAI.
  • Account Management: To authenticate your sign-in, manage your account, and enable features like saving and browsing your generated content. Authentication is handled via Clerk.
  • Quality Control and Debugging: IntuiBloom staff may view your generated content, inputs, outputs, imported content (if saved), and feedback (including graph content, comments, and ratings) for quality assurance, debugging, and product improvement.
  • Analytics and Security: To monitor usage, detect and prevent fraud, and ensure the security of our systems.
  • Communication: To respond to your inquiries, provide support, or send service-related updates.
  • Legal Compliance: To comply with applicable laws, regulations, or legal processes.

Your generated or imported content is private by default and not shared between users unless you explicitly share it via a generated link. One user cannot browse another user's unshared content.

3. Sharing of Your Information

We do not sell your personal information. We may share your information as follows:

  • With Service Providers:
    • We share necessary account information (e.g., email) with Clerk for authentication and sign-in purposes, including Google sign-in integration.
    • We share anonymized inputs and outputs with OpenAI for AI model improvement, as enabled in our project settings. No user identities are shared.
  • With Your Consent: If you share content via a generated link, the recipient may access that specific content.
  • For Business Purposes: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction.
  • For Legal Reasons: We may disclose information if required by law, to protect our rights, or in response to a subpoena or court order.
  • Aggregated or Anonymized Data: We may share non-personally identifiable data for research or analytics.

We do not share your information with third parties for their marketing purposes.

4. Data Security

We implement reasonable administrative, technical, and physical safeguards to protect your information from unauthorized access, loss, or misuse. However, no system is completely secure, and we cannot guarantee absolute security. You are responsible for maintaining the confidentiality of your account credentials.

Our database is hosted by Gel Cloud on AWS in the us-west-2 region. Our API is hosted on Render in the Oregon (US West) region. The frontend website is hosted by Vercel. All hosting is located in the United States.

User inputs, model outputs, and generated or imported content are logged on our servers and stored in our database. We retain this data as long as necessary for the purposes described in this policy or as required by law.

5. Your Rights and Choices

  • Access and Update: You can access, update your account information by logging in or contacting us. For Clerk-managed authentication, you may need to manage certain details through Clerk's platform.
  • Delete Content: You may request deletion of your generated graphs, imported content, or feedback, subject to our retention needs for legal or operational reasons.
  • Data Export and Import: Via the "Share Your Knowledge" feature, you can download your graph data to a JSON file on your device; this file does not contain user-related information unless you specifically entered it in the graph. You are responsible for the security and privacy of the downloaded file. Via the "Learn from Others" feature, you can import JSON files of graphs or graph networks, with the option to save them to our database for ongoing access.
  • Opt-Out: You can opt out of certain data uses, such as sharing with OpenAI, by adjusting settings where available or contacting us. Note that disabling sharing may affect AI functionality.
  • Cookie Management: You can manage your cookie preferences at any time through our Privacy Settings page. We respect your "Do Not Track" browser setting and provide granular cookie controls. Our cookie banner allows you to browse the site normally while making your privacy choices.
  • Children: Our services are not intended for users under 13 (or 16 in certain jurisdictions). We do not knowingly collect information from children.

If you are in the EU/EEA, UK, or other regions with data protection laws (e.g., GDPR, CCPA), you may have additional rights, such as data portability or objection to processing. Contact us to exercise these rights.

6. International Data Transfers

Our servers and hosting providers (AWS, Render, Vercel) are located in the United States. By using our services, you consent to the transfer of your data to the United States, where privacy laws may differ from your jurisdiction.

7. Third-Party Links

The Site or App may contain links to third-party sites (e.g., OpenAI, Clerk, Google). We are not responsible for their privacy practices. Review their policies separately.

8. Contact Us

If you have questions about this Privacy Policy or our practices, contact us at [email protected].

This Privacy Policy is governed by the laws of the State of California, USA, without regard to conflict of law principles.