Privacy Policy
Last updated: December 12, 2025
1. Introduction
Welcome to CommenX ("we," "our," or "us"). We respect your privacy and are committed to protecting your personal data. This privacy policy will inform you as to how we look after your personal data when you visit our website or use our browser extension (collectively, the "Service") and tell you about your privacy rights and how the law protects you.
2. The Data We Collect
We may collect, use, store and transfer different kinds of personal data about you which we have grouped together follows:
- Identity Data: Includes first name, last name, and profile picture (via Google OAuth).
- Contact Data: Includes email address.
- Technical Data: Includes internet protocol (IP) address, your login data, browser type and version, time zone setting and location, browser plug-in types and versions, operating system and platform.
- Usage Data: Includes information about how you use our website and extension, such as the number of comments generated and tone preferences.
- Content Data: Includes the text of LinkedIn posts you process through our Service to generate comments. We do NOT store this content permanently. It is processed in real-time and then discarded.
3. How We Use Your Data
We will only use your personal data when the law allows us to. Most commonly, we will use your personal data in the following circumstances:
- To provide the AI comment generation service you have requested.
- To manage your account and subscription.
- To improve our website, products/services, marketing, and customer relationships.
- To communicate with you about service updates or security alerts.
4. Data Security
We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorized way. We use industry-standard encryption (TLS/SSL) for data in transit. Your authentication tokens are stored securely within your browser's local storage and are never accessible to other websites.
5. Third-Party Services
We may share specific data with trusted third-party service providers to facilitate our Service:
- AI Providers: We use third-party AI models (such as Groq and Google Gemini) to generate comment text. These providers process the post content and your prompts but do not use your data to train their models.
- Authentication: We use NextAuth.js and Google OAuth for secure authentication.
- Hosting: Our infrastructure is hosted on secure cloud providers (Vercel).
6. Your Legal Rights
Under certain circumstances, you have rights under data protection laws in relation to your personal data, including the right to:
- Request access to your personal data.
- Request correction of your personal data.
- Request erasure of your personal data.
- Object to processing of your personal data.
- Request restriction of processing your personal data.
- Request transfer of your personal data.
- Right to withdraw consent.
7. Contact Us
If you have any questions about this privacy policy or our privacy practices, please contact us at support@commenx.com.