Privacy Policy

Last updated : January 15, 2025

Learn how Diane AI collects, uses and protects your personal data.

Introduction

This Privacy Policy describes how Diane AI collects, uses and protects the personal information of users of our intelligent revision service.

We are committed to respecting your privacy and protecting your personal data in accordance with the General Data Protection Regulation (GDPR) and applicable French legislation.

Data collected

We collect different categories of data:

Data provided by the user

  • Email address and name during registration
  • Created content (flashcards, notes, courses)
  • Account preferences and settings

Automatically collected data

  • Usage data (pages visited, features used)
  • Progress data (scores, review times)
  • Technical information (device type, operating system)
  • IP address and approximate location data

Use of data

Your data is used to:

  • Provide and improve our revision services
  • Personalize your learning experience
  • Optimize spaced repetition algorithms
  • Send you service-related communications
  • Ensure security and prevent fraud
  • Comply with our legal obligations

We never use your data for purposes incompatible with those described here without your prior consent.

Data sharing

We do not sell your personal data. We may share your data with:

  • Technical providers: hosting (cloud infrastructure), analytics
  • Authentication services: Google, Apple (if you use these options)
  • Legal authorities: if required by law

All our providers are subject to strict contractual data protection obligations.

Retention

Your data is retained as long as your account is active. After account deletion:

  • Personal data is deleted within 30 days
  • Anonymized data may be retained for statistical purposes
  • Some data may be retained for legal obligations (billing)

Security

We implement appropriate technical and organizational measures to protect your data:

  • Encryption of data in transit (HTTPS/TLS)
  • Encryption of sensitive data at rest
  • Strict access controls
  • Intrusion monitoring and detection
  • Regular team training

Your rights

Under the GDPR, you have the following rights:

  • Right of access: obtain a copy of your data
  • Right of rectification: correct inaccurate data
  • Right to erasure: request deletion of your data
  • Right to portability: receive your data in a structured format
  • Right to object: object to certain processing
  • Right to restriction: restrict the processing of your data

To exercise these rights, contact us at privacy@diane.app

Cookies

We use essential cookies for service operation (authentication, preferences). We also use analytics cookies to improve our services.

You can manage your cookie preferences in your browser settings.

Contact

For any questions regarding this policy or your personal data:

  • Email: privacy@diane.app

You also have the right to lodge a complaint with the CNIL (Commission Nationale de l'Informatique et des Libertés).