Legal
Privacy Policy
Privacy notice for Contellect One, including how Contellect handles website data, account information, customer content, AI processing, integrations, cookies, and enterprise privacy rights.
Last updated: July 8, 2026
This Privacy Policy explains how Contellect Technologies Inc. (“Contellect”, “we”, “us”, or “our”) collects, uses, shares, protects, and retains information in connection with our websites, events, communications, support services, and Contellect One platform.
Contellect One is an enterprise AI content management platform for intelligent document processing, enterprise search, retrieval-augmented generation, workflow automation, digital workspaces, and governed collaboration. Because our customers use Contellect One to manage business records, documents, metadata, workflows, and AI-assisted outputs, privacy and data governance are central to how the platform is designed and operated.
This Policy applies to personal information we process as a business or controller. When we process Customer Content on behalf of an enterprise customer, we generally act as a service provider or processor under the customer’s instructions and applicable data processing terms.
1. Scope of This Policy
This Policy applies to:
- Visitors to contellect.com and related websites.
- People who request demos, contact us, subscribe to communications, attend events, or interact with our sales and support teams.
- Authorized users, administrators, and business contacts associated with Contellect One accounts.
- Personal information processed through support, implementation, training, billing, security, and account administration.
This Policy does not replace customer agreements, data processing agreements, order forms, or privacy notices issued by our enterprise customers to their employees, contractors, citizens, patients, suppliers, partners, or other end users.
2. Information We Collect
We may collect information directly from you, from your organization, from use of our Services, from integrations configured by your organization, and from trusted third-party sources.
Information we collect may include:
- Contact information, such as name, work email, phone number, company, job title, country, and business address.
- Account information, such as username, role, organization, permissions, authentication status, and administrator settings.
- Commercial information, such as demo requests, subscription details, purchase history, billing contacts, support plans, and communication preferences.
- Usage information, such as pages visited, product features used, search queries, workflow activity, API activity, device information, browser type, IP address, timestamps, logs, and diagnostic data.
- Support information, such as support tickets, chat or email communications, troubleshooting files, screenshots, configuration details, and implementation notes.
- Event and marketing information, such as webinar registrations, campaign interactions, consent preferences, and meeting notes.
Information collected automatically when you contact us. When you submit our contact form or request a demo, in addition to the details you enter (such as name, email, company, phone, and message), we automatically record technical and contextual information about that submission to help us respond, prevent abuse, and understand how enquiries reach us. This includes your IP address and the approximate location (country and city) derived from it; your browser, operating system, and device type; your time zone; the page you submitted from and the page on which you first entered our site; the website that referred you; and any campaign parameters (such as UTM tags) present in the link you followed. This information is sent to us by email to handle your enquiry and is not used to build advertising profiles. To protect these forms from spam and abuse, we use a hidden anti-spam field and Google reCAPTCHA, which is subject to Google’s Privacy Policy and Terms of Service.
3. Customer Content and Platform Data
“Customer Content” includes documents, files, records, prompts, queries, metadata, extracted fields, workflow configurations, approvals, comments, audit trails, search indexes, and other content submitted to or processed through Contellect One by or on behalf of a customer.
Customer Content belongs to the customer. We process Customer Content to provide, secure, support, maintain, and improve the Services, and in accordance with the customer’s instructions, agreements, and configurations.
Depending on how a customer configures Contellect One, Customer Content may include personal information, confidential business records, regulated documents, identity documents, HR files, healthcare records, financial documents, supplier records, contracts, government records, or other sensitive materials. Customers are responsible for determining what content is appropriate to process through the platform and for configuring access, retention, approvals, and governance rules.
4. AI Processing and Model Use
Contellect One may use AI, machine learning, optical character recognition, natural language processing, retrieval systems, extraction models, and agentic workflow tools to classify content, extract data, generate summaries, answer questions, suggest workflow actions, or support enterprise search.
We process AI prompts, queries, retrieved content, metadata, AI Outputs, and related logs as needed to provide and secure the Services, troubleshoot issues, enforce usage limits, support customer configurations, improve reliability, and meet contractual obligations.
Unless otherwise agreed in writing, Contellect does not use Customer Content to train foundation models for unrelated customers. We may use aggregated, anonymized, or de-identified technical and usage data to improve product performance, security, quality, and support, provided that it does not identify a customer or disclose Customer Content.
AI Outputs may contain personal information if the underlying Customer Content, prompts, retrieval sources, or workflows include personal information. Customers should review AI configurations, permissions, retrieval scopes, and human review workflows to ensure that AI Outputs are used appropriately.
5. How We Use Information
We use information for business and operational purposes, including to:
- Provide, operate, secure, administer, and support Contellect One and related services.
- Create and manage accounts, users, roles, permissions, workspaces, integrations, and subscriptions.
- Respond to inquiries, demo requests, support tickets, billing questions, and legal requests.
- Configure, troubleshoot, maintain, monitor, and improve platform performance, reliability, and security.
- Process documents, metadata, workflows, searches, prompts, AI Outputs, and integrations as configured by customers.
- Send service messages, security notices, product updates, training materials, event invitations, and marketing communications where permitted.
- Analyze website and product usage to understand demand, improve user experience, and develop features.
- Detect, prevent, investigate, and respond to fraud, misuse, security incidents, unauthorized access, policy violations, and legal claims.
- Comply with laws, regulations, contracts, audit obligations, and enforceable government or court requests.
6. How We Share Information
We do not sell personal information. We may share information in the following circumstances:
- With service providers that help us host, secure, operate, support, analyze, communicate, bill, and improve the Services.
- With integration providers or third-party applications when a customer or administrator configures an integration.
- With professional advisors, auditors, insurers, legal counsel, and financial institutions where needed for business operations.
- With affiliates, contractors, and personnel who need access to perform work for Contellect.
- With law enforcement, courts, regulators, or government authorities when required by law or when necessary to protect rights, safety, security, or the integrity of the Services.
- In connection with a merger, acquisition, financing, corporate transaction, restructuring, or sale of assets, subject to appropriate confidentiality and data protection safeguards.
- With customer administrators or authorized personnel who control the relevant account, workspace, or enterprise environment.
Where we use service providers, we seek contractual commitments requiring them to protect information and use it only for the services they provide to Contellect.
7. Customer-Controlled Sharing
Customers and their administrators control many aspects of sharing inside Contellect One, including user invitations, access permissions, external collaboration, repository visibility, workflow routing, API access, retention policies, and integration settings.
If your access to Contellect One is provided by your employer or another organization, that organization may be able to access your account information, activity logs, files, comments, workflow actions, search history, prompts, AI Outputs, and other content associated with its environment.
8. Cookies and Similar Technologies
We use cookies, pixels, local storage, analytics tools, and similar technologies to operate our websites, remember preferences, analyze traffic, improve performance, support security, and measure campaigns.
Cookies may collect device information, browser information, IP address, referring pages, pages viewed, time spent, and interactions with our websites. You can manage cookies through your browser settings or through available cookie preference tools. Blocking certain cookies may affect website functionality.
We may use analytics and advertising partners to understand website usage and improve outreach. These partners may process information according to their own privacy notices where they act independently.
9. Security
We use administrative, technical, and organizational safeguards designed to protect information, including controls for access management, encryption, logging, monitoring, backup, vulnerability management, and secure development practices.
No security measure can guarantee absolute protection. Customers remain responsible for configuring permissions, identity providers, integrations, access policies, retention settings, endpoint security, and internal user practices in a way that matches their risk profile and regulatory obligations.
If you believe your account or information has been compromised, contact us promptly at privacy@contellect.com or through your organization’s administrator.
10. Data Retention
We retain information for as long as reasonably necessary to provide the Services, fulfill the purposes described in this Policy, comply with legal and contractual obligations, resolve disputes, enforce agreements, maintain security, and support business operations.
Customer Content retention is generally controlled by the applicable customer agreement, platform configuration, retention settings, deletion requests, and data processing terms. After account termination or expiration, Customer Content may be retained, exported, deleted, or archived according to the applicable agreement and operational procedures.
11. International Data Transfers
Contellect works with customers and service providers across multiple regions. Information may be processed in the United States and other countries where Contellect, its affiliates, personnel, or service providers operate.
Where required, we use appropriate safeguards for international transfers, such as contractual commitments, data processing terms, regional hosting arrangements where available, and other lawful transfer mechanisms.
12. Your Privacy Choices and Rights
Depending on your location and relationship with Contellect, you may have rights to access, correct, delete, restrict, object to, or receive a copy of certain personal information. You may also have rights to withdraw consent or opt out of certain marketing communications.
To exercise privacy rights, contact privacy@contellect.com. We may need to verify your identity and your relationship to the relevant account or organization before responding.
If your information is processed by Contellect on behalf of one of our enterprise customers, we may direct your request to that customer because the customer controls the relevant data and account environment.
13. Marketing Communications
You may opt out of marketing emails by using the unsubscribe link in the message or contacting us. Even if you opt out of marketing communications, we may still send service, security, transactional, legal, or administrative messages.
14. Children’s Privacy
The Services are intended for business and organizational use and are not directed to children. We do not knowingly collect personal information from children through our websites or Services. If you believe a child has provided personal information to us, contact privacy@contellect.com.
15. Changes to This Policy
We may update this Privacy Policy from time to time. If changes are material, we will provide notice by posting the updated Policy, updating the “Last updated” date, sending notice through the Services, or using another reasonable method.
16. Contact Us
For questions, requests, or concerns about this Privacy Policy or Contellect’s privacy practices, contact:
- Email: privacy@contellect.com
- Company: Contellect Technologies Inc.
- Address: Houston, Texas, USA