Legal

Privacy Policy

Last updated: June 25, 2026

Peritus Content ("Peritus", "we", "us", or "our") operates the perituscontent.com SaaS platform. This Privacy Policy explains what information we collect, how we use it, and your rights in relation to it.

1. Information we collect

Account information. When you create an account, we collect your email address and a hashed password (handled by Supabase Auth — we never see your raw password).

Research inputs. When you start a research run, we collect the information you provide: client name, website URL, niche, target audience, seed competitor URLs, and topics to avoid. This is used to run the strategy pipeline on your behalf.

Payment information. Payments are handled by Stripe. We never see or store your card details — Stripe stores them on their PCI-compliant infrastructure. We receive a Stripe customer ID and subscription status.

Usage data. We may collect basic usage data (page views, API calls) for operational monitoring. We do not use third-party tracking pixels or advertising cookies.

2. How we use your information

We do not sell your data. We do not use your research inputs to train AI models. Content generated for you remains yours.

AI model training. Content generation uses the Anthropic Claude API. Anthropic's API usage policy states that they do not use API inputs and outputs to train their models by default. Your research inputs — client details, niche, competitor data, and generated drafts — are not used to train any AI system. The same applies to OpenAI's API used for image generation.

3. Third-party services

We use the following sub-processors to deliver the service:

4. Data retention

We retain your account data and pipeline history for as long as your subscription is active and for a reasonable period thereafter. You can request deletion of your data at any time by emailing us.

5. Your rights

You have the right to access, correct, export, or delete the personal data we hold about you. To exercise any of these rights, contact us at [PLACEHOLDER: your email address].

6. Data security and isolation

Encryption in transit. All data exchanged between your browser, our API, and our database travels over TLS (HTTPS). We enforce HTTPS on all endpoints and do not accept unencrypted connections.

Encryption at rest. Your data is stored in Supabase, which is hosted on AWS infrastructure. AWS encrypts data at rest using AES-256 by default. This applies to your account details, pipeline inputs, generated content, and all associated records.

Your content is only accessible to you. We use row-level security (RLS) at the database level, enforced by Supabase. This means every query for pipeline jobs, titles, outlines, and drafts is automatically filtered to your user ID only — even if a query were incorrectly written, the database would return nothing. No other user can ever see your content.

Our access to your content. We do not operate an admin dashboard or internal content viewer. While we hold a service-role database key for running the pipeline on your behalf, we do not routinely access or review your pipeline inputs or generated content. If we ever need to investigate a technical fault affecting your account, we will notify you. You can request deletion of your content and account data at any time.

Passwords. We never see or store your raw password. Authentication is handled by Supabase Auth, which uses bcrypt hashing. Password reset emails go directly to your inbox — we cannot retrieve or reset your password without your involvement.

Payment data. We never see your card number, CVV, or bank details. All payment processing is handled entirely by Stripe on their PCI DSS-compliant infrastructure. We receive only a Stripe customer ID and subscription status.

7. Content safety

All content generation is performed via Anthropic's Claude API, a commercial AI service with built-in safety systems. Claude is designed to refuse requests for harmful, illegal, or abusive content. Because our pipeline generates content based on your business niche, competitor research, and keyword strategy — not open-ended user prompts — the scope of generated content is inherently constrained to legitimate marketing use cases.

We do not apply additional content filters beyond what Anthropic's safety systems already enforce, and we do not believe additional filtering is necessary for this use case. If you believe content generated by the pipeline is inappropriate or incorrect, contact us and we will investigate.

8. Changes to this policy

We may update this policy from time to time. Material changes will be communicated by email. Continued use of the platform after notice constitutes acceptance.

9. Contact

Questions? Email us at [PLACEHOLDER: your email address].