← Back to home

Privacy Policy

How Fusion AI collects, uses, shares, and protects personal data.

Last updated: 2026-07-28

1. Introduction

Fusion AI ("Fusion AI," "we," "us," or "our") respects your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you visit https://fusionprojects.online, use our platform, or interact with us.

This Policy is designed to meet requirements under the EU/UK General Data Protection Regulation (GDPR), the California Consumer Privacy Act as amended by the CPRA (CCPA/CPRA), and other applicable privacy laws. Fusion AI is not certified under SOC 2 or similar programs unless expressly stated in a signed agreement.

2. Roles and Contact

For most processing activities described here, Fusion AI acts as the data controller (or "business" under CCPA/CPRA).

Privacy inquiries and data subject requests: fusionai@fusionprojects.online

Data Protection contact: fusionai@fusionprojects.online

Security incidents: fusionai@fusionprojects.online

3. Information We Collect

3.1 Information You Provide

Account data: name, username, email address, password (stored hashed), profile information, and billing contact details.

Customer Content: source code, files, workspace data, chat prompts, and attachments you upload or generate through the Service.

Communications: support requests, feedback, and correspondence with our team.

Payment data: subscription status and transaction metadata. Payment card details are processed by our payment provider and are not stored by Fusion AI.

3.2 Information Collected Automatically

Usage data: features used, session activity, credit consumption, error logs, and performance metrics.

Device and log data: IP address, browser type, operating system, device identifiers, timestamps, and referral URLs.

Cookies and similar technologies: as described in our Cookie Policy.

3.3 Information from Third Parties

OAuth providers (e.g., GitHub): profile ID, username, email, and avatar when you choose social login.

Payment processors: payment confirmation and fraud signals.

Service providers: security, analytics, and infrastructure partners supporting the Service.

4. How We Use Information

  • Provide, operate, maintain, and improve the Service
  • Authenticate users and manage accounts, workspaces, and subscriptions
  • Process AI requests, route prompts to model providers, and deliver outputs
  • Bill, collect payments, and manage credits
  • Monitor usage, prevent fraud, abuse, and security incidents
  • Comply with legal obligations and enforce our Terms and Acceptable Use Policy
  • Communicate about the Service, including updates, security notices, and support
  • Analyze aggregated or de-identified trends to improve product quality

5. Legal Bases for Processing (EEA/UK)

Where GDPR applies, we rely on: (a) contract — processing necessary to provide the Service; (b) legitimate interests — security, fraud prevention, product improvement, and analytics where not overridden by your rights; (c) consent — where required for non-essential cookies or marketing; and (d) legal obligation — where required by law.

6. AI and Automated Processing

When you use AI features, your prompts and relevant workspace context may be transmitted to third-party model providers to generate responses. We configure providers to process data for inference and not to use your Customer Content to train their public models unless you opt in or the provider's terms explicitly permit otherwise.

We do not make solely automated decisions producing legal or similarly significant effects without appropriate safeguards and, where required, your consent.

7. How We Share Information

We do not sell personal information. We do not share personal information for cross-context behavioral advertising as defined under CCPA/CPRA.

7.1 Service Providers (Subprocessors)

We share data with vendors who assist with hosting, storage, authentication, AI inference, email, analytics, customer support, and payment processing. These providers are contractually required to protect data and process it only on our instructions.

7.2 Legal and Safety

We may disclose information if required by law, court order, or governmental request, or when we believe disclosure is necessary to protect rights, safety, investigate fraud, or respond to security incidents.

7.3 Business Transfers

If we undergo a merger, acquisition, or asset sale, personal information may transfer subject to this Policy or notice to you.

8. International Data Transfers

Fusion AI may process data in the United States and other countries. Where personal data is transferred from the EEA, UK, or Switzerland, we implement appropriate safeguards such as Standard Contractual Clauses and supplementary measures where required.

9. Data Retention

We retain personal information for as long as needed to provide the Service, fulfill the purposes described in this Policy, comply with legal obligations, resolve disputes, and enforce agreements.

Customer Content is retained while your account is active and for a limited period thereafter for backup, recovery, and legal compliance, unless you delete it or request deletion subject to exceptions.

Log and security data may be retained for a longer period to support incident investigation and audit trails.

10. Security Measures

We maintain administrative, technical, and organizational safeguards designed to protect personal information, including:

  • Encryption of data in transit using TLS
  • Role-based access controls and least-privilege principles for personnel
  • Secure credential storage (password hashing, secret management)
  • Logging, monitoring, and alerting for security events
  • Vulnerability management and patch processes
  • Incident response procedures and breach notification workflows
  • Vendor security review for subprocessors handling personal data

Security Limitations

No method of transmission or storage is completely secure. While we work to protect your information using practices aligned with enterprise security expectations, we cannot guarantee absolute security. Fusion AI does not hold SOC 2 or ISO 27001 certification unless explicitly stated in writing.

11. Your Privacy Rights

11.1 EEA/UK (GDPR)

You may have the right to access, rectify, erase, restrict, object to processing, and data portability, and to withdraw consent where processing is consent-based. You may lodge a complaint with your local supervisory authority.

11.2 California (CCPA/CPRA)

California residents may request access, deletion, and correction of personal information, and opt out of sale/sharing (we do not sell or share for cross-context behavioral advertising). You may designate an authorized agent where permitted by law. We will not discriminate against you for exercising privacy rights.

11.3 Exercising Rights

Submit requests to fusionai@fusionprojects.online. We may verify your identity before responding. We aim to respond within timelines required by applicable law.

12. Children's Privacy

The Service is not directed to children under 16. We do not knowingly collect personal information from children under 16. If you believe a child has provided us data, contact fusionai@fusionprojects.online and we will take appropriate steps to delete it.

13. Cookies and Tracking

We use cookies and similar technologies as described in our Cookie Policy. Where required, we obtain consent before placing non-essential cookies.

14. Changes to This Policy

We may update this Privacy Policy periodically. Material changes will be posted here with an updated date and, where required, additional notice.

15. Contact Us

Fusion AI — Privacy

Email: fusionai@fusionprojects.online

Website: https://fusionprojects.online/privacy