DATA PRIVACY
Privacy Policy
This Privacy Policy explains how we collect, use, and safeguard your data.
Last updated: May 21, 2026
AES-256 Encryption
All WordPress application passwords are encrypted under military-grade AES-256 encryption standards.
1. Information Collection
We collect the following information when you register and use the ContentAI platform:
- Personal Information: Your name, email address, and a one-way hashed password created during registration.
- Billing Information: When you purchase credits, our third-party payment gateways collect credit card or bank transfer records. We only store transaction reference codes and invoice statuses to update your credits balance.
- CMS Connection Details: The site URL, username, and Application Password of the WordPress site you link.
2. Data Usage & Secure Encryption
ContentAI safeguards your data using robust technical measures:
- WordPress Credentials Encryption: Sensitive connection parameters (such as application passwords) are encrypted using symmetric AES-256 protocols before being written to our database. Encryption keys are managed independently on locked production servers.
- Secure Syncing: We only invoke publishing API calls to your connected site when you command an immediate post or configure a schedule. All communication is routed via HTTPS protocols.
- Staff Access: No ContentAI employees can view your application password in plain text.
3. Cookies & Analytical Metrics
We use cookies and analytic tools (such as Google Analytics) to improve user experiences:
- Session Cookies: Maintain your active login status as you navigate through different dashboard modules.
- Preference Cookies: Record your active workspace ID and interface language settings (English/Vietnamese).
- Anonymous Analytics: Trace landing page visits, page duration, and conversion actions to optimize site performance.
4. Third-Party Data Sharing
We never sell, trade, or rent your personal information to third parties except for:
- Critical Infrastructure Providers: Payment processing networks (PayPal, VietQR bank gateways) and backend API integrations (OpenAI, DataForSEO) necessary to write content. They only receive parameters mandatory for active tasks.
- Legal Compliance: When officially requested by lawful governmental authorities with correct jurisdiction warrants.
5. Your Rights & Controls
You retain full control over your personal account details and database entries:
- Access & Updates: Change your name and account password at any time inside dashboard settings.
- Disconnect WordPress: Instantly delete connected WordPress accounts from the Connected Sites page. Upon deletion, related encrypted credentials are permanently wiped from our database.
- Account Purge: Send an email request to our support desk to delete your account, credits balance, and database history permanently.
6. Security Inquiries
For any privacy concerns or to request data removal, please contact us at:
[email protected] - ContentAI Data Protection Office