Privacy Policy
Last updated: September 27, 2026
This policy explains what personal information Padro collects, why, who we share it with, how long we keep it, and the choices and rights you have. It applies to padro.ai, app.padro.ai and every twin page Padro hosts.
Padro is run by Aryaman Sharma, a sole proprietor in Ontario, Canada, doing business as Padro ("Padro", "we", "us"). Questions and requests: founder@padro.ai. Aryaman Sharma is responsible for Padro's compliance with this policy and with privacy law.
1. Whose information, and our role
- Creators: the coaches, consultants and experts who build a twin on Padro, and the members of their organization.
- Audience members: people who chat with a creator's twin.
- Visitors: people who browse padro.ai or contact us.
For most information, Padro decides how it's used (in privacy law terms, we're the "controller" or the organization accountable for it): creators' account and billing information, audience members' sign-in details, and technical and security data.
For the content creators add and the conversations audience members have with a creator's twin, the creator decides how that information is used, and Padro processes it on the creator's behalf to provide the Service (as a "processor" or "service provider"). If you're an audience member and have a question about how a creator uses your conversations, you can ask the creator directly; you can also contact us and we'll help.
2. What we collect
From creators
- Account details: name, email address, profile picture (if you add one), your organization's name, your role in it, and sign-in activity.
- Your content: files, audio and video (and their transcripts), web pages, RSS feeds and YouTube videos you add, imported social profiles and posts (where offered), notes, voice notes, answers you write and corrections you make, and your twin's settings, name and picture. This may include personal information about you or others that appears in your material.
- Usage: what you do in the app, answers used, content processed, and your plan's limits.
- Billing: your plan, trial and subscription status, and a record of payments and refunds. We never receive your full card number. Payments are handled by Stripe and Link (section 5), which share with us your billing name and email, your card's brand and last four digits, and what you paid.
- Messages to us: what you send us by email.
From audience members
- Sign-in details: your email address and the first and last name you give us when you first sign in, and the one-time codes we send you (which expire after 10 minutes).
- Conversations: the questions you ask a twin, its answers, the sources it cited, and any feedback you give (such as rating an answer). The creator whose twin you're using can see these, along with your name and email.
- Access: which twins you have access to and whether a creator has invited or revoked you.
- If a twin lets you chat before signing in, we link your messages to a random identifier stored in a cookie in your browser, not to your name.
From everyone who uses Padro
- Technical data: IP address, browser and device type, pages requested, times, and error reports. We use IP addresses for security and to limit abuse (for example, rate limits), and we don't use them to identify you or your company.
- Cookies: see section 8.
3. How we use it
| Purpose | Information used | Legal basis (EEA/UK) |
|---|---|---|
| Provide the Service: sign-in, building and running twins, answering questions, showing creators their audience and conversations | Account details, content, conversations, sign-in details | Performing our contract with you; for audience conversations, on the creator's instructions |
| Billing, plan limits and usage meters | Billing and usage data | Contract; legal obligations (records) |
| Send service emails: sign-in codes, invitations, account, trial, usage and deletion notices | Email address, name | Contract; legitimate interests |
| Keep Padro secure, prevent fraud and abuse, fix problems | Technical data, usage, content where needed to investigate | Legitimate interests |
| Check and improve answer quality (for example, automatically checking a sample of answers against their sources) and improve Padro | Questions, answers, cited excerpts, usage | Legitimate interests |
| Support you when you contact us | Your messages and account details | Contract; legitimate interests |
| Comply with the law and enforce our terms | Any of the above, as needed | Legal obligations; legitimate interests |
We don't sell personal information, don't use it for advertising, and don't use creators' content or audience conversations to train AI models. Padro staff access content or conversations only when needed to support you, investigate a problem or misuse, or comply with the law.
If we send creators product news or marketing emails, we'll do so only as the law allows (for example, with consent where required), and every such email has an unsubscribe link.
4. How twins use AI
When someone asks a twin a question, Padro searches the creator's material for relevant passages and sends the question, the recent conversation and those passages to an AI model provider, which generates the answer. Some providers also turn content into searchable form, read images in documents, transcribe audio, or check answers against their sources. These providers process the data to do that work for us under their business or API terms. We don't let the AI providers we use train their models on your uploaded files, recordings or conversations. Each processes that data only to provide its service to Padro: some delete it as soon as it's processed, and others keep it temporarily — at most 55 days — only to detect abuse before deleting it. Specifically, OpenAI doesn't train on API data and we tell it not to store responses; Google's paid Gemini API doesn't train on our data; we've opted out of Voyage AI's and Deepgram's model-improvement programs; and Mistral reads documents for us under a zero-data- retention agreement.
Automated answers don't make decisions about you that have legal or similarly significant effects.
5. Who we share it with
Service providers that process data for us, only to provide the Service:
| Provider | What it does for Padro | Data involved |
|---|---|---|
| Stripe, and its affiliate Sold through Link, LLC ("Link") | Payments, tax, receipts, invoices and payment support. Link is the merchant of record for purchases | Billing name, email, address, payment details, purchase history |
| Amazon Web Services | Hosting, database and job queues | All data held in the Service |
| Cloudflare (R2) | File storage | Uploaded files, transcripts, extracted text and images, profile pictures |
| Pinecone | Search index for twins' knowledge | Passages of creators' content and their numeric representations |
| Voyage AI | Turning text into searchable form and ranking results | Passages of creators' content; questions asked of twins |
| OpenAI | Generating answers and other AI tasks (such as summaries) | Questions, recent conversation, relevant passages of creators' content |
| Google (Gemini API) | Reading images in documents; checking whether questions are in scope and answers match their sources | Document images, questions, answers, cited passages |
| Mistral AI | Reading documents our own software couldn't (text recognition) | Pages of uploaded documents (processed without being retained) |
| Deepgram | Transcribing audio and video, and voice notes | Audio |
| Firecrawl | Fetching web pages a creator adds | Web addresses and the public page content |
| Apify | Fetching public content a creator adds from YouTube (and LinkedIn, where offered) | Links and the public content fetched |
| Resend | Sending email | Email addresses, names, email content |
Others
- Creators see their own audience's names, emails and conversations with their twin.
- Anyone can see a public twin's page and what it says in reply to them.
- Authorities or others when the law requires it, or when needed to protect people's safety or rights, or to investigate fraud or misuse.
- A buyer or successor if Padro's business is sold or transferred, under this policy's protections. We'll tell you before your information becomes subject to a different policy.
Stripe and Link use the payment information they collect under their own privacy policies (Stripe, Link). If you ask Link to delete your data, Link also cancels any subscription you bought through it.
6. Where your information is processed
Padro is based in Canada. Our main servers are in the United States, and our service providers process data in the United States and other countries, whose laws may differ from where you live and may give authorities there access to it. When we transfer personal information from the EEA, the UK or Switzerland, we rely on recognised safeguards such as the European Commission's standard contractual clauses or an adequacy decision.
7. How long we keep it
| Information | How long |
|---|---|
| Creator accounts, organizations, content, files, search index, twins, and their audiences' conversations | Until the organization is deleted. An admin can delete it at any time (immediately and permanently). An organization without an active plan is deleted 90 days after its plan lapses, with warning emails 30, 7 and 1 days before |
| Audience members' name and email | While you're in the audience of at least one twin on Padro. When the last creator whose twin you use deletes their organization, your audience account is deleted too. You can ask us to delete it sooner |
| Chats without signing in | Deleted after 90 days without activity |
| Sign-in codes | Expire after 10 minutes, and are deleted with the account |
| Payment records | Padro's copy is deleted with the organization. Stripe and Link keep their own records (including invoices) as their policies and tax law require |
| Record that an organization was deleted | Kept, containing only counts and dates, no personal information |
| Server logs, traces and security data (including IP addresses) | Up to 90 days |
| Backups | Deleted information may remain in backups for up to 35 days until they're overwritten |
8. Cookies and similar technologies
Padro uses only cookies and browser storage it needs to work:
- Sign-in cookies that keep creators signed in (
padro_access,padro_refresh); - An audience cookie (
padro_visitor) that keeps you signed in to a twin, or links messages you send before signing in, for up to 30 days; - Preference storage that remembers interface choices, such as a closed panel or a dismissed prompt.
We don't use advertising or analytics cookies. Stripe's checkout pages set their own cookies to process payments and prevent fraud.
9. Security
We protect information with measures such as encrypted connections (HTTPS), access limited to people who need it, per-organization separation of data, and storing only a scrambled (hashed) form of session tokens. No system is perfectly secure, and we can't guarantee the security of information. If a breach creates a real risk of significant harm, we'll notify you and the authorities as the law requires.
10. Your rights and choices
Depending on where you live, you may have the right to:
- access the personal information we hold about you, and get a copy;
- correct it;
- delete it, or ask us to stop using it;
- object to or restrict some uses (for example, uses based on legitimate interests);
- receive it in a portable format;
- withdraw consent where we rely on it, without affecting earlier use;
- complain to a data protection authority.
How: email founder@padro.ai from the address on your account. We may need to confirm your identity, and we'll answer within 30 days (or the time the law allows). Creators can also delete content, twins or their whole organization in the app.
Audience members: if your request is about your conversations with a creator's twin, we'll normally pass it to that creator, because they decide how those conversations are used, and help them respond. You can ask us to delete your Padro sign-in account at any time.
Canada. You have rights under the Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable provincial law. If you're not satisfied with our answer, you can complain to the Office of the Privacy Commissioner of Canada or your provincial commissioner.
EEA, UK and Switzerland. The rights above apply under the GDPR and UK GDPR. You can complain to your local data protection authority (in the UK, the Information Commissioner's Office).
United States. Depending on your state, you may have the right to know, access, correct and delete your personal information, and to not be discriminated against for using these rights. We don't sell personal information or share it for cross-context behavioural advertising, and we don't use sensitive personal information to infer characteristics about you.
11. Children
Padro isn't meant for children. Creators must be at least 18 and audience members at least 16. We don't knowingly collect personal information from anyone under 16. If you believe a child has given us information, contact us and we'll delete it.
12. Changes to this policy
We'll post changes here and update the date at the top. If a change is significant, we'll tell creators by email or in the app before it takes effect.
13. Contact
Aryaman Sharma, doing business as Padro
Toronto, Ontario, Canada
Email: founder@padro.ai