Privacy Policy
Last updated: March 27, 2026
1. Introduction
Tellura ("we," "our," or "us") is operated by ZVN DEV. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI visibility monitoring platform at tellura.io.
2. Information We Collect
Account Information: When you register, we collect your name, email address, and password (stored as a salted cryptographic hash).
Workspace Data: Business name, industry, website URL, competitors, prompts, and AI response data that you create within your workspace.
Usage Data: Credit usage, query history, login timestamps, and feature interactions for billing and service improvement.
Payment Information: Processed securely by Stripe. We do not store credit card numbers. We retain your Stripe customer ID for billing purposes.
Integration Data: If you connect third-party services (e.g., Cloudflare), we store encrypted API credentials and sync metadata such as crawler visit logs.
3. How We Use Your Information
We use your information to:
- Provide, operate, and maintain the Tellura platform
- Process AI visibility queries across supported platforms
- Track credit usage and manage billing
- Send transactional emails (password resets, team invitations, report delivery)
- Improve our service and develop new features
4. AI Platform Queries
When you run prompts, Tellura sends queries to third-party AI platforms (OpenAI, Anthropic, Google, Perplexity, xAI) on your behalf. These queries contain your prompt text, which may include your business name and competitor names. Each platform's own privacy policy governs how they process these queries.
5. Data Sharing
We do not sell your personal information. We share data only with:
- Stripe for payment processing
- Resend for transactional email delivery
- Sentry for error tracking and performance monitoring
- AI providers (OpenAI, Anthropic, Google, Perplexity, xAI) for query execution
- Neon for database hosting (encrypted at rest)
6. Data Security
We protect your data with:
- Encrypted passwords (scrypt with salt)
- Encrypted integration credentials (AES-256-GCM with scrypt-derived keys)
- JWT-based authentication with short-lived access tokens
- HTTPS encryption in transit
- Role-based access control and tenant isolation
7. Data Retention
We retain your data for as long as your account is active. AI response data is retained for historical analysis. You may request deletion of your account and associated data by contacting us.
8. Your Rights
You may:
- Access, update, or delete your account information via Settings
- Export your data by contacting support
- Delete your workspace and all associated data
- Revoke third-party integration access at any time
9. Cookies
We use essential cookies and localStorage for authentication tokens. We do not use advertising or tracking cookies.
10. Changes to This Policy
We may update this policy from time to time. We will notify registered users of material changes via email.
11. Contact
For privacy inquiries, contact us at info@zvndev.com.