1. Introduction
Fusion AI ("Fusion AI," "we," "us," or "our") respects your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you visit https://fusionprojects.online, use our platform, or interact with us.
This Policy is designed to meet requirements under the EU/UK General Data Protection Regulation (GDPR), the California Consumer Privacy Act as amended by the CPRA (CCPA/CPRA), and other applicable privacy laws. Fusion AI is not certified under SOC 2 or similar programs unless expressly stated in a signed agreement.
2. Roles and Contact
For most processing activities described here, Fusion AI acts as the data controller (or "business" under CCPA/CPRA).
Privacy inquiries and data subject requests: fusionai@fusionprojects.online
Data Protection contact: fusionai@fusionprojects.online
Security incidents: fusionai@fusionprojects.online
3. Information We Collect
3.1 Information You Provide
Account data: name, username, email address, password (stored hashed), profile information, and billing contact details.
Customer Content: source code, files, workspace data, chat prompts, and attachments you upload or generate through the Service.
Communications: support requests, feedback, and correspondence with our team.
Payment data: subscription status and transaction metadata. Payment card details are processed by our payment provider and are not stored by Fusion AI.
3.2 Information Collected Automatically
Usage data: features used, session activity, credit consumption, error logs, and performance metrics.
Device and log data: IP address, browser type, operating system, device identifiers, timestamps, and referral URLs.
Cookies and similar technologies: as described in our Cookie Policy.
3.3 Information from Third Parties
OAuth providers (e.g., GitHub): profile ID, username, email, and avatar when you choose social login.
Payment processors: payment confirmation and fraud signals.
Service providers: security, analytics, and infrastructure partners supporting the Service.
4. How We Use Information
- Provide, operate, maintain, and improve the Service
- Authenticate users and manage accounts, workspaces, and subscriptions
- Process AI requests, route prompts to model providers, and deliver outputs
- Bill, collect payments, and manage credits
- Monitor usage, prevent fraud, abuse, and security incidents
- Comply with legal obligations and enforce our Terms and Acceptable Use Policy
- Communicate about the Service, including updates, security notices, and support
- Analyze aggregated or de-identified trends to improve product quality
5. Legal Bases for Processing (EEA/UK)
Where GDPR applies, we rely on: (a) contract — processing necessary to provide the Service; (b) legitimate interests — security, fraud prevention, product improvement, and analytics where not overridden by your rights; (c) consent — where required for non-essential cookies or marketing; and (d) legal obligation — where required by law.
6. AI and Automated Processing
When you use AI features, your prompts and relevant workspace context may be transmitted to third-party model providers to generate responses. We configure providers to process data for inference and not to use your Customer Content to train their public models unless you opt in or the provider's terms explicitly permit otherwise.
We do not make solely automated decisions producing legal or similarly significant effects without appropriate safeguards and, where required, your consent.
7. How We Share Information
We do not sell personal information. We do not share personal information for cross-context behavioral advertising as defined under CCPA/CPRA.
7.1 Service Providers (Subprocessors)
We share data with vendors who assist with hosting, storage, authentication, AI inference, email, analytics, customer support, and payment processing. These providers are contractually required to protect data and process it only on our instructions.
7.2 Legal and Safety
We may disclose information if required by law, court order, or governmental request, or when we believe disclosure is necessary to protect rights, safety, investigate fraud, or respond to security incidents.
7.3 Business Transfers
If we undergo a merger, acquisition, or asset sale, personal information may transfer subject to this Policy or notice to you.
8. International Data Transfers
Fusion AI may process data in the United States and other countries. Where personal data is transferred from the EEA, UK, or Switzerland, we implement appropriate safeguards such as Standard Contractual Clauses and supplementary measures where required.
9. Data Retention
We retain personal information for as long as needed to provide the Service, fulfill the purposes described in this Policy, comply with legal obligations, resolve disputes, and enforce agreements.
Customer Content is retained while your account is active and for a limited period thereafter for backup, recovery, and legal compliance, unless you delete it or request deletion subject to exceptions.
Log and security data may be retained for a longer period to support incident investigation and audit trails.
10. Security Measures
We maintain administrative, technical, and organizational safeguards designed to protect personal information, including:
- Encryption of data in transit using TLS
- Role-based access controls and least-privilege principles for personnel
- Secure credential storage (password hashing, secret management)
- Logging, monitoring, and alerting for security events
- Vulnerability management and patch processes
- Incident response procedures and breach notification workflows
- Vendor security review for subprocessors handling personal data
Security Limitations
No method of transmission or storage is completely secure. While we work to protect your information using practices aligned with enterprise security expectations, we cannot guarantee absolute security. Fusion AI does not hold SOC 2 or ISO 27001 certification unless explicitly stated in writing.
11. Your Privacy Rights
11.1 EEA/UK (GDPR)
You may have the right to access, rectify, erase, restrict, object to processing, and data portability, and to withdraw consent where processing is consent-based. You may lodge a complaint with your local supervisory authority.
11.2 California (CCPA/CPRA)
California residents may request access, deletion, and correction of personal information, and opt out of sale/sharing (we do not sell or share for cross-context behavioral advertising). You may designate an authorized agent where permitted by law. We will not discriminate against you for exercising privacy rights.
11.3 Exercising Rights
Submit requests to fusionai@fusionprojects.online. We may verify your identity before responding. We aim to respond within timelines required by applicable law.
12. Children's Privacy
The Service is not directed to children under 16. We do not knowingly collect personal information from children under 16. If you believe a child has provided us data, contact fusionai@fusionprojects.online and we will take appropriate steps to delete it.
13. Cookies and Tracking
We use cookies and similar technologies as described in our Cookie Policy. Where required, we obtain consent before placing non-essential cookies.
14. Changes to This Policy
We may update this Privacy Policy periodically. Material changes will be posted here with an updated date and, where required, additional notice.
15. Contact Us
Fusion AI — Privacy
Email: fusionai@fusionprojects.online
Website: https://fusionprojects.online/privacy
