Privacy Policy

1. Introduction

DataGini is an online dataset generator powered by advanced language models (LLMs) that creates hyperrealistic datasets based on user descriptions. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you use our service.
The purpose of this Privacy Policy is to provide you with a clear understanding of our data practices and to inform you about your privacy rights and how the law protects you.
The controller responsible for the processing of your personal data is:

Tabularis.ai
c/o Campus Founders
Bildungscampus 1
D-74076 Heilbronn
CEO: Richard Schreiber
Email: info@tabularis.ai


2. Definitions

-"Personal Data" means any information relating to an identified or identifiable natural person.
-"Processing" means any operation performed on personal data.
-"User" refers to the individual using our Service.
-"GDPR" means the General Data Protection Regulation.

3. Types of Data Collected

a) Personal Identification Data:
-Name
-Email address
-Discord user ID (if account is linked to Discord)
b) Usage Data:
-IP address (for users who are not logged in)
-Browser type and version
-Operating system
Time and date of service use
c) Generated Data Records: We store generated datasets to improve our service and train our AI. This also enables users to view their previously generated datasets in their history (feature currently under development).
d) IP Addresses: For users who are not logged in, we temporarily store IP addresses to prevent misuse of our free generation feature on the homepage.
e) Discord User IDs: For users who link their account to Discord, we store Discord user IDs in a separate database not visible to us, enabling our service to be used on Discord.
Methods of Data Collection
a) Direct Input by the User:
-Datasets
-Name
-Email address
b) Automatically Collected Data:
-IP address (if not logged in)
c) Cookies and Similar Technologies: Cookies are only stored for users who are not logged in and only on the homepage. The number of generations on the homepage is stored in cookies to track usage of the free generation function, minimizing risk for us and our users.
Purpose of Data Processing
a) Provision and Improvement of the Service:
-To deliver and maintain our service
-To improve and personalize user experience
-To develop new features and functionality
b) Communication with Users:
-To respond to inquiries and support requests
-To send service-related notifications
c) Payment Processing:
-To process payments for premium features (handled by Stripe)
d) Security and Prevention of Misuse:
-To detect, prevent, and address technical issues
-To protect against fraudulent or unauthorized use of our service


4. Legal Basis for Processing


We process your personal data on the following legal grounds:
a) Consent: For certain processing activities, we rely on your explicit consent.
b) Contract Fulfillment: Processing is necessary for the performance of the contract we have with you.
c) Legitimate Interests: We process data when it is in our legitimate interests to do so and not overridden by your rights.
d) Legal Obligations: In some cases, we may have a legal obligation to process your personal data.


5. Data Transfer to Third Parties


We use the following third-party service providers:
a) Webflow: For website hosting b) Memberstack: For user management c) Make.com: For automation of certain processes d) Stripe: For payment processing
These service providers may have access to your personal data only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose.

5.1 Webflow

We host our website with Webflow. The provider is Webflow, Inc, 398 11th Street, 2nd Floor, San Francisco, CA 94103, USA (hereinafter: Webflow). When you visit our website, Webflow collects various log files including your IP addresses.
Webflow is a tool for creating and hosting websites. Webflow stores cookies or other recognition technologies that are necessary for the presentation of the page, to provide certain website functions and to ensure security (necessary cookies).
For details, see Webflow’s privacy policy: EU & Swiss Privacy Policy | Webflow 130.
The use of Webflow is based on Art. 6 para. 1 lit. f DSGVO. We have a legitimate interest in the most reliable presentation of our website. If a corresponding consent has been requested, processing is carried out exclusively on the basis of Art. 6 para. 1 lit. a DSGVO and § 25 para. 1 TTDSG, insofar as the consent includes the storage of cookies or access to information in the user’s terminal device (e.g. device fingerprinting) as defined by the TTDSG. The consent can be revoked at any time.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission. Details can be found here: EU & Swiss Privacy Policy | Webflow 130.
Order processingWe have concluded an order processing agreement (AVV) with the provider named above. This is a contract required by data protection law, which ensures that this provider only processes the personal data of our website visitors in accordance with our instructions and in compliance with the DSGVO.

5.2 Memberstack

We use Memberstack for account creation and management on our website. Memberstack is a service provided by Memberstack, Inc., which allows users to create and manage personal accounts. When you create an account, Memberstack collects certain personal data including, but not limited to, your name, email address, and password.
Purpose of Use: Memberstack is utilized to enable you to create and manage your user account on our website. This includes authentication during sign-in, storing your user-specific settings, and managing access permissions.
Legal Basis: The processing of your data by Memberstack is based on Article 6(1)(b) GDPR (performance of a contract and pre-contractual measures).
Data Protection Measures: Memberstack is committed to complying with data protection standards and employs advanced security technologies to protect your data. For more information on Memberstack’s privacy practices, please refer to the Memberstack Privacy Policy: https://docs.memberstack.com/hc/en-us/articles/11419812024347-Privacy-Policy.
Data Transfer to the USA: Memberstack may transfer data to the United States. This data transfer is safeguarded by the EU Commission’s standard contractual clauses as part of our contractual arrangement with Memberstack.
Data Processing Agreement: We have entered into a data processing agreement with Memberstack, which ensures that Memberstack processes the personal data of our website visitors solely according to our instructions and in compliance with GDPR.



5.3 Make.com

We use Make.com (formerly Integromat) for automation and integration of various services on our website. The provider is Celonis SE, Theresienstraße 6, 80333 Munich, Germany (hereinafter: Make.com). When you interact with our website, Make.com may process certain data to facilitate automated workflows and integrations.

Purpose of Use: Make.com is used to automate various processes and integrate different services, enhancing the functionality and efficiency of our website.

Legal Basis: The use of Make.com is based on Art. 6 para. 1 lit. f GDPR. We have a legitimate interest in optimizing our website's processes and functionalities.

Data Protection Measures: Make.com complies with GDPR and employs appropriate technical and organizational measures to protect your data. For more details on Make.com's privacy practices, please refer to their Privacy Policy: https://www.make.com/en/privacy-policy

Data Transfer: Make.com primarily processes data within the EU. However, if any data is transferred outside the EU, it is done so in compliance with GDPR requirements, including the use of standard contractual clauses where necessary.

Data Processing Agreement: We have concluded a data processing agreement with Make.com, ensuring that they process the personal data of our website visitors only according to our instructions and in compliance with GDPR.



5.4 Stripe

We use Stripe for payment processing on our website. The provider is Stripe, Inc., 510 Townsend Street, San Francisco, CA 94103, USA (hereinafter: Stripe). When you make a payment, Stripe collects various data necessary for payment processing, including your payment information and transaction details.

Purpose of Use: Stripe is used to securely process payments for our services.

Legal Basis: The processing of your data by Stripe is based on Art. 6 para. 1 lit. b GDPR (performance of a contract and pre-contractual measures) for payment processing.

Data Protection Measures: Stripe is PCI-DSS certified and employs industry-standard security measures to protect your payment information. For more details on Stripe's privacy and security practices, please refer to their Privacy Policy: https://stripe.com/de/privacy

Data Transfer to the USA: Stripe may transfer data to the United States. This data transfer is safeguarded by the EU Commission's standard contractual clauses as part of our contractual arrangement with Stripe.

Data Processing Agreement: We have entered into a data processing agreement with Stripe, which ensures that Stripe processes the personal data of our website visitors solely according to our instructions and in compliance with GDPR.

6. International Data Transfers


Our own servers, where data generation takes place, are located in Germany (hosted by Hostinger). The third-party services we use comply with GDPR, although the specific mechanisms may vary by provider.
To ensure an adequate level of data protection for international transfers, we implement the following measures:
We use standard contractual clauses approved by the European Commission
We ensure that recipients of data in third countries have adequate data protection measures in place
We obtain your explicit consent for certain transfers, where required
We continuously monitor and assess the data protection practices of our service providers to ensure ongoing compliance with GDPR and other applicable data protection laws.

7. Data Security

We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
Encryption of personal data during transmission and at rest
Regular testing and evaluation of the effectiveness of security measures
Access controls and authentication mechanisms to prevent unauthorized access
Regular security awareness training for our employees
We use industry-standard SSL/TLS encryption to protect data in transit. Access to personal data is strictly limited to authorized personnel on a need-to-know basis.


8. Data Retention

We retain different types of data for varying periods:
Account information: Retained for the duration of your account's existence
Generated datasets: Stored indefinitely to improve our service and for future user access
IP addresses (for non-logged-in users): Automatically deleted every Monday at 00:01 CET
Usage data: Retained for up to 12 months for analytical purposes
We will retain your personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.


9. Rights of Data Subjects

Under the GDPR, you have the following rights:
-Right of Access: You can request information about your personal data we process.
-Right to Rectification: You can request correction of inaccurate or incomplete data.
-Right to Erasure: You can request the deletion of your personal data under certain circumstances.
-Right to Restriction of Processing: You can request the restriction of processing of your personal data.
-Right to Data Portability: You can request to receive your personal data in a structured, commonly used, and machine-readable format.
-Right to Object: You can object to the processing of your personal data under certain circumstances.
To exercise these rights, please contact us using the information provided in the "Contact Information" section.


10. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Service and hold certain information. Cookies are files with small amount of data which may include an anonymous unique identifier.
We use Google Analytics to analyze the use of our Service. Google Analytics uses cookies to collect information and report website usage statistics without personally identifying individual visitors to Google.
Types of cookies used:
-Essential cookies: Necessary for the operation of our website
-Analytics cookies: Used to collect information about how visitors use our site
Purpose of cookies:
-To remember the number of times the User has generated data on our homepage
-To improve our service based on usage patterns
Cookie settings and opt-out options: You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.
To opt out of Google Analytics tracking, you can use the Google Analytics Opt-out Browser Add-on.


11. Changes to the Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "effective date" at the top of this Privacy Policy.
For significant changes, we will provide a more prominent notice, which may include email notification to registered users.


12. Data Protection of Children

Our Service is not intended for use by children under the age of 14. We do not knowingly collect personal data from children under 14. If we become aware that we have collected personal data from a child under 14 without verification of parental consent, we will take steps to remove that information from our servers.


13. Links to Other Websites

Our Service may contain links to other websites that are not operated by us. If you click on a third-party link, you will be directed to that third party's site. We strongly advise you to review the Privacy Policy of every site you visit.
We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.


14. Contact Information

If you have any questions about this Privacy Policy or our data practices, please contact us:
Data Protection Officer:

Vadim Borisov
c/o Campus Founders
Bildungscampus 1
D-74076 Heilbronn

Email: info@tabularis.ai


15. Right to Lodge a Complaint with the Supervisory Authority

If you are a resident of the European Economic Area (EEA) and you believe we are unlawfully processing your personal data, you have the right to complain to your local data protection supervisory authority. You can find their contact details here: https://edpb.europa.eu/about-edpb/board/members_en

For users in Baden-Württemberg, the competent supervisory authority is:
Der Landesbeauftragte für den Datenschutz und die Informationsfreiheit Baden-Württemberg Postfach 10 29 32
70025 Stuttgart
Germany

We would appreciate the chance to deal with your concerns before you approach the supervisory authority, so please contact us in the first instance.

By using our Service, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and disclosure of your information as described.
Effective Date: 01.08.2024