LEGAL

Privacy Policy

How Vijnara collects, uses, protects and shares information when you use our enterprise AI search and secure retrieval platform.

Last updated: June 20, 2026 Applies to vijnara.com & the Vijnara platform

This policy describes our practices in plain language. Vijnara is built around permission-aware retrieval — your data stays within its existing access boundaries, and we do not use customer content to train foundation models. Capitalized terms not defined here have the meaning given in your agreement with us.

1. Introduction

Vijnara (“Vijnara”, “we”, “us”) provides an enterprise AI search and secure Retrieval-Augmented Generation (RAG) platform that helps organizations find grounded, source-cited answers across their internal knowledge. This Privacy Policy explains what information we process, why, and the choices and rights available to you.

For most customer content, Vijnara acts as a data processor (or service provider) on behalf of the organization that deploys the platform — the “Customer”. The Customer is the controller of that data and is responsible for its own privacy notices to end users. For our website and account administration, Vijnara acts as a controller.

2. Information we collect

We collect the following categories of information:

  • ·Account & contact data — names, work email, company, role, and credentials used to administer access.
  • ·Usage & diagnostic data — queries issued, features used, device and log information, and performance metrics used to operate and secure the service.
  • ·Customer content — the documents, files and repositories the Customer connects to Vijnara, plus the embeddings and indexes derived from them for retrieval.
  • ·Support & communications — information you share when you contact us, request a demo, or report an issue.

3. How we use information

We use information to:

  • ·Provide, maintain and secure the platform, including retrieval, generation of grounded answers, and audit logging.
  • ·Enforce permission-aware access so users only retrieve content they are authorized to see.
  • ·Diagnose problems, prevent abuse, and improve reliability and performance.
  • ·Communicate with you about your account, support requests and service updates.

We do not sell personal information, and we do not use Customer content to train foundation models. Any model improvement is limited to the configuration and scope agreed with the Customer.

4. Your documents & content

Documents and repositories you connect remain yours. Vijnara processes them solely to deliver search and retrieval on your behalf:

  • ·Retrieval is filtered by each user's role and department permissions before any content is read.
  • ·Generated answers are grounded in retrieved, permitted context and carry source citations.
  • ·Every query and response can be written to an audit trail for traceability and review.

You control connection, configuration and deletion of your content through the platform's administrative controls.

6. Sharing & sub-processors

We share information only as needed to run the service:

  • ·Sub-processors — vetted cloud hosting, infrastructure and model providers engaged under contract to process data on our behalf, subject to confidentiality and security obligations.
  • ·Within your organization — to administrators and users in accordance with the access controls you configure.
  • ·Legal & safety — where required by law, or to protect rights, safety and the integrity of the service.

A current list of sub-processors is available to Customers on request. We do not share customer content with third parties for their own marketing or model-training purposes.

7. Data retention

We retain information for as long as needed to provide the service and meet legal, accounting or reporting obligations. Customer content is retained per the Customer's configuration and agreement; on termination or deletion request, we delete or return it within the period defined in the agreement, subject to backups and legal holds.

8. Security

We apply technical and organizational measures designed to protect information, including encryption in transit and at rest, role- and department-based access controls, audit logging, and least-privilege internal access. Our architecture is built to align with frameworks such as SOC 2, ISO 27001, GDPR and HIPAA; specific certifications depend on your deployment configuration. No method of transmission or storage is completely secure, but we work continuously to protect your data.

9. International transfers

We may process information in countries other than where you are located. Where we transfer personal data internationally, we use appropriate safeguards such as Standard Contractual Clauses or equivalent mechanisms. Customers requiring data residency can discuss private or in-region deployment options with our team.

10. Your rights

Depending on your location, you may have rights to access, correct, delete, restrict or object to processing of your personal data, and to data portability. Where Vijnara acts as a processor, please direct requests to the Customer that controls your data; we will assist them as required. To exercise rights for data we control, contact us using the details below. You may also lodge a complaint with your local supervisory authority.

11. Cookies

Our website uses essential cookies to operate, and — with your consent where required — analytics cookies to understand usage and improve the experience. You can control cookies through your browser settings; disabling some cookies may affect functionality. See our Cookie Policy for details.

12. Children's privacy

Vijnara is a business product intended for organizations and their authorized users. It is not directed to children, and we do not knowingly collect personal information from children.

13. Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the “Last updated” date above and, where appropriate, provide additional notice. Your continued use of the platform after changes take effect constitutes acceptance of the revised policy.

14. Contact us

Questions about this policy or our data practices? Reach our privacy team: