Last Updated: March 24, 2025
Probull.AI operates under the following foundational principles to ensure compliance with global privacy frameworks (GDPR Art. 5, CCPA §1798.100, EU AI Act Art. 10):
All data processing activities adhere to legal bases under GDPR (consent, contractual necessity, legitimate interests) and CCPA (notice at collection, right to opt-out). Transparent disclosures about AI decision-making processes, including automated profiling and training data sources.
Collect only data essential for delivering AI-driven SaaS services (e.g., user inputs for model training, account credentials). Strict separation of data processing purposes: Primary Use: Service delivery (e.g., predictive analytics, natural language processing). Secondary Use: Requires explicit opt-in consent (e.g., improving models, marketing).
End-to-end encryption (AES-256 for data at rest, TLS 1.3 for data in transit). Pseudonymization of user data used in AI training pipelines.
Category | Examples | Legal Basis |
---|---|---|
User-Provided Data | Prompts, files, API inputs | Contractual necessity (GDPR Art. 6(1)(b)) |
Technical Data | IP addresses, device fingerprints | Legitimate interests (fraud prevention) |
Behavioral Data | Feature usage patterns, session duration | Consent (CPRA §1798.135) |
Third-Party Data | CRM integrations, payment processors | Data Processing Agreements (GDPR Art. 28) |
Right | Implementation | Response Timeline |
---|---|---|
Access | Self-service dashboard with data export (JSON/CSV) | 30 days |
Rectification | In-app editing of profile data | 72 hours |
Erasure | Cryptographic shredding of all data traces | 45 days |
Objection | One-click opt-out of profiling | 24 hours |
Users may:
Risk Tiering:
Tier | Examples | Controls |
---|---|---|
High-Risk | Credit scoring, medical diagnoses | Human-in-the-loop + CE marking |
Limited-Risk | Chatbots, recommendation engines | Transparency notices |
Testing Protocols: Adversarial testing, differential privacy audits.
CCPA Automated Decision Rules • Global AI Regulations • Meta Platform Terms • HIPAA Compliance • AI Governance Best Practices • Breach Response • Data Privacy Best Practices • AI Act • Data Rights • Training Data Transparency • CPPA ADMT Rules • Data Minimization Principles • ISO 42001 Framework • EU-US Data Transfers • GDPR Addendum • State Privacy Laws • AI Risk Management
This policy will be updated quarterly and undergoes annual board review.
Probull.AI LLC.
Email: privacy@probull.ai
131 Continental Dr Suite 305 Newark, DE, 19713 US