Scope
This policy covers Aura’s websites, applications, AI features, files, artifacts, sharing tools, and connected-app workflows. A third-party service you connect has its own privacy practices, and its policy applies to information it handles outside Aura.
Information we handle
We collect information you provide, information created while you use Aura, and limited technical information needed to run and secure the service.
- Account details, such as your name, email address, profile image, authentication identifiers, and sign-in records.
- Prompts, messages, files, artifacts, feedback, saved memories, and content you choose to share or generate.
- Connected-app details, such as the service, account label, connection status, tool activity, and data returned when you ask Aura to use a connector.
- Technical and usage data, such as browser and device details, IP address, necessary cookies, request logs, model and provider selection, token or credit usage, and error records.
How we use information
We use information only as reasonably needed to provide, maintain, protect, and improve Aura.
- Authenticate your account, keep sessions available, store requested files and artifacts, run tasks, and deliver the features you choose to use.
- Preserve context, projects, and user-controlled memories so related work can continue without starting over.
- Prevent abuse, investigate failures, protect accounts, enforce service rules, and meet legal obligations.
- Respond to support requests and send important notices about security, service availability, or policy changes.
AI and tool processing
When you ask Aura to complete a task, the prompt, relevant conversation context, files, and connected-app data may be sent to AI model, tool, search, storage, or infrastructure providers needed to perform that task. The providers used can vary by feature and runtime configuration.
Do not submit secrets or highly sensitive personal information unless it is necessary for your task and you are authorized to do so. External apps and providers may apply their own terms and privacy policies to the information they receive.
Retention and security
We retain information for as long as needed to provide Aura, keep your account and work available, resolve disputes, meet legal obligations, and protect the service. Retention varies by data type; backups and security logs may remain for a limited period after content is removed.
We use reasonable administrative, technical, and organizational safeguards. No online service can guarantee absolute security, so protect your account credentials and tell us promptly through an official support channel if you suspect unauthorized access.
Your choices and rights
Where controls are available, you can manage saved memories, remove files or artifacts, archive sessions, revoke share links, and disconnect apps. Disconnecting an app stops future access through Aura but does not delete information already held by that app.
Depending on where you live, you may have rights to access, correct, delete, restrict, or receive a copy of personal information, or to object to certain processing. Use the verified Aura support channel in the product or official communications to make a request. We may need to verify your identity before acting.
International processing
Aura and its providers may process information in countries other than the one where you live. Privacy protections can differ by country. Where required, we use safeguards intended to support lawful transfers and protect the information involved.
Children
Aura is not directed to children under 13 or a higher minimum age required by local law. If you believe a child has provided personal information without appropriate permission, contact us through a verified Aura support channel so we can review and remove it where required.
Changes and contact
We may update this policy as Aura changes. The updated version will appear here with a new date, and we will provide additional notice when a change is material and applicable law requires it.
For privacy questions or requests, use the verified support channel shown inside Aura or in official Aura communications. Do not include passwords, API keys, or other credentials in your first message.