Privacy & Security
Guest text is deleted within 30 days. You can delete sooner.
Our Privacy Principles
Yours to delete
Guest source text is stored for no more than 30 days and may be deleted sooner. Signed-in documents remain in account history until you delete the document or account. Deletion removes the stored source text; we do not keep a hidden copy, sell it, publish it, or automatically add it to an evaluation dataset.
Separated source and metadata
Submitted source text is kept in a restricted server-side document store. Scan metadata and a one-way SHA-256 hash are stored separately for result history, integrity, and duplicate-cost control. The hash cannot be reversed to recover your text.
No Training Data
We do not use submitted text to train generative AI models or automatically place it in a benchmark. Detection providers receive the text for analysis under their own terms.
Secure Infrastructure
OmniDetect runs on Vercel's edge network with TLS encryption for all data in transit. API keys are stored as encrypted environment variables, never in code.
Minimal Data Collection
We collect only what's necessary: email for authentication, scan metadata (scores, dates) for your history. No tracking pixels, no fingerprinting.
Right to Delete
You can delete your account and all associated data at any time. When you delete, we delete — no hidden retention periods.
What Happens to Your Text
GDPR Compliance
OmniDetect is designed with GDPR principles in mind:
- Data minimization: We collect only essential data
- Purpose limitation: Data is used only for AI detection analysis
- Storage limitation: Guest source text is retained for no more than 30 days
- Right to access: View all your data in your dashboard
- Right to erasure: Delete your account and data anytime
- Data portability: Export your scan history
Third-Party Services
OmniDetect integrates with the following services:
Questions?
If you have questions about our privacy practices, reach out at privacy@omnidetect.ai
