Privacy Policy

Last updated: March 2026

Data You Upload

Documents, images, audio, and video files you upload are stored in your organization's isolated storage. Multi-tenant architecture ensures no data is shared across organizations. All files are encrypted in transit (TLS) and at rest.

Data Isolation

Every query, document, entity, and workflow result is scoped to your organization. There is no cross-tenant data access. Organization-level isolation is enforced at the database layer on every operation.

Authentication

We use httpOnly JWT cookies with secure flags. Passwords are hashed with bcrypt (12 rounds). Per-account brute force protection locks accounts after 5 failed attempts for 15 minutes.

Third-Party Services

Leepi.ai uses OpenAI (embeddings, vision), Groq (LLM inference), and Cohere (reranking) to process your queries. Your document content is sent to these providers only as needed for the features you use. We do not sell your data to any third party.

Data Retention

Free tier accounts have a 90-day data retention policy. Paid plans have unlimited retention. You can delete your documents at any time — deleted data is soft-deleted immediately and permanently purged within 30 days.

Contact

For privacy questions, contact us at support@leepi.ai.