Feedback

Privacy Policy

LOGOS AI, INC.

Effective Date: January 1, 2025 | Last Updated: March 3, 2026

🔒 Privacy Summary

  • HIPAA-Compliant AI Infrastructure - AWS Bedrock & Google Vertex AI (covered under BAAs)
  • Your data NEVER trains public AI models
  • PHI processing covered under the BAA included in our Terms of Service
  • We DO NOT sell your personal information
  • Attorney-client privilege is YOUR responsibility - we are not a law firm
  • Data is encrypted at rest (AES-256) and in transit (TLS 1.2+)
  • You can request deletion anytime at compliance@trustlogos.ai

1. INTRODUCTION

Logos AI, Inc. ("Logos AI," "we," "us," or "our") provides AI-powered legal information software and tools. This Privacy Policy explains how we collect, use, disclose, and protect information when you use our services. IMPORTANT NOTICE: By accepting our Terms of Service, you enter into a Business Associate Agreement (BAA) with Logos AI covering the processing of Protected Health Information (PHI). Attorney-client privileged information requires special handling. We are NOT a law firm and do not maintain attorney-client privilege.

2. INFORMATION WE COLLECT

2.1 Information You Provide

Account Information: Name, email, password, organization name. Payment Information: Processed by third-party providers (we don't store card numbers). User Content: Documents, queries, and data you input. Communications: Support requests, feedback, correspondence.

2.2 Automatically Collected Information

Usage Data: Features used, queries made, interaction patterns. Device Information: IP address, browser type, operating system. Cookies: Session management, preferences, analytics. Log Data: Access times, pages viewed, system performance.

2.3 Sensitive Information Categories

Personally Identifiable Information (PII): We may process PII including names, addresses, phone numbers, email addresses, employment information, and legal matter information (with consent). Protected Health Information (PHI): PHI processing is covered under the BAA included in our Terms of Service. All PHI is processed through HIPAA-compliant infrastructure (AWS Bedrock, Google Vertex AI). Attorney-Client Privileged Information: Processed as User Content. NO privilege protection provided by us. You maintain all privilege responsibilities.

3. HOW WE USE INFORMATION

3.1 Permitted Uses

Providing and improving our Services, processing your requests and transactions, sending service-related communications, detecting and preventing fraud or abuse, complying with legal obligations, and aggregated analytics and research.

3.2 AI Infrastructure & Processing

HIPAA-COMPLIANT AI PROVIDERS: All AI inference is processed through managed, enterprise-grade services: AWS Bedrock (Claude, Llama, Mistral models) and Google Vertex AI (Gemini models). These services are covered under Business Associate Agreements (BAAs) with AWS and Google Cloud. YOUR DATA IS NEVER USED TO TRAIN PUBLIC AI MODELS. PHI Processing: Covered under the BAA included in our Terms of Service. Data Residency: AI processing occurs in US regions. Encryption: Data encrypted in transit (TLS 1.2+) and at rest (AES-256). Quality Improvement: Only anonymized, aggregated patterns (never PHI) may be used to improve service quality.

3.3 Prohibited Uses

We will NOT: Sell your personal information, use content for advertising targeting, share identified data with competitors, use privileged information beyond service provision, or process PHI outside the terms of the BAA.

4. INFORMATION SHARING

4.1 We Share Information With

AI Inference Providers (HIPAA-Compliant): AWS Bedrock for Claude, Llama, Mistral models (covered under AWS BAA); Google Vertex AI for Gemini models (covered under Google Cloud BAA). Service Providers: Cloud hosting (AWS), payment processors (Stripe), analytics (anonymized only), customer support tools. Legal Requirements: Court orders and subpoenas, government investigations, legal proceedings, enforcement of our Terms. Business Transfers: Merger or acquisition, asset sale, bankruptcy proceedings.

4.2 We DO NOT Share

Individual user content between accounts, identified data for marketing, PHI without BAA requirements, or privileged information without legal requirement.

5. DATA SECURITY

5.1 Technical Measures

Encryption: AES-256 at rest, TLS 1.2+ in transit. Access Controls: Role-based, least privilege. Infrastructure: Secure cloud providers. Monitoring: 24/7 security monitoring (when implemented). Testing: Regular vulnerability assessments.

5.2 Your Security Responsibilities

Strong, unique passwords. Two-factor authentication (when available). Authorized user management. Prompt breach reporting. Compliance with applicable laws.

6. YOUR RIGHTS AND CHOICES

6.1 Universal Rights

Access: Request copy of your information. Correction: Update inaccurate information. Deletion: Request deletion (subject to retention requirements). Export: Receive data in portable format. Opt-Out: Marketing communications preferences.

6.2 California Residents (CCPA/CPRA)

Additional rights include: Know categories of information collected, know purposes of use, know if sold or disclosed (we don't sell), request deletion of personal information, non-discrimination for exercising rights, opt-out of sale (not applicable - we don't sell). To Exercise Rights: compliance@trustlogos.ai or 1-800-[NUMBER].

6.3 European Residents (GDPR)

Additional rights include: Data portability, restriction of processing, object to processing, withdraw consent, and lodge complaint with supervisory authority. EU Representative: [To be appointed].

6.4 Other State Rights

Illinois: Biometric data protections (we don't collect). Virginia: Similar to CCPA rights. Colorado: Consumer privacy rights. Connecticut: Data privacy rights. Utah: Consumer privacy rights.

7. LAW FIRM AND LEGAL INDUSTRY SPECIFIC

7.1 Attorney-Client Privilege

CRITICAL NOTICES: We are NOT your law firm. We do NOT maintain attorney-client privilege. Upload does NOT create privileged relationship. You are responsible for maintaining privilege. We may be compelled to disclose under legal process.

7.2 Ethical Obligations

Law firm users should note: We don't verify conflicts of interest. Opposing parties may use same system. No "ethical walls" between accounts. You maintain all professional responsibilities.

7.3 Confidentiality

While we maintain security measures: We are not bound by professional conduct rules. Confidentiality is contractual, not professional. Legal process may override confidentiality. Insurance may not cover privilege breaches.

8. DATA RETENTION

8.1 Retention Periods

Active Accounts: Duration of service. Closed Accounts: 90 days after closure. Backups: Additional 90 days. Legal Holds: As required by law. Aggregated Data: Indefinitely (anonymized only). Your data is NEVER used to train AI models.

8.2 Deletion

Account dashboard deletion tools. Email request to compliance@trustlogos.ai. Subject to legal retention requirements. Deletion removes all your data from active systems; backups are purged within 90 days. Your data is never used to train AI models.

9. INTERNATIONAL TRANSFERS

All data processing and storage occurs in US regions. Data is not transferred to non-US regions. For international users accessing our Services, we use appropriate safeguards: Standard Contractual Clauses (EU), Privacy Shield principles (where applicable), and contractual protections.

10. CHILDREN'S PRIVACY

Services not intended for under 18. We don't knowingly collect children's information. Parents may request deletion: compliance@trustlogos.ai.

11. COOKIES AND TRACKING

11.1 We Use

Essential Cookies: Login, security, preferences. Analytics Cookies: Usage patterns (anonymized). Functional Cookies: Remember settings.

11.2 Your Controls

Browser settings to block cookies. Do Not Track signals (honored). Cookie preferences in account settings.

12. THIRD-PARTY LINKS

Our Services may contain links to third-party sites: We're not responsible for their practices. Review their privacy policies. Links don't imply endorsement.

13. CHANGES TO PRIVACY POLICY

We may update this policy: Material changes notified via email. Review periodically for updates. Continued use constitutes acceptance.

14. DATA BREACH NOTIFICATION

14.1 Our Commitment

If a breach occurs, we will: Notify affected users within 72 hours, provide details of affected data, describe mitigation steps, and cooperate with regulatory requirements.

14.2 Your Obligations

Report suspected breaches immediately. Cooperate with investigation. Handle required notifications to your users.

15. SPECIAL NOTICES BY STATE

California: "NOTICE TO CALIFORNIA RESIDENTS: Under CCPA, you have specific rights regarding your personal information. See Section 6.2." Illinois: "NOTICE TO ILLINOIS RESIDENTS: We do not collect biometric information. Any biometric data inadvertently uploaded will be deleted." Nevada: "NOTICE TO NEVADA RESIDENTS: We do not sell covered information as defined under Nevada law."

16. CONTACT INFORMATION

Privacy Inquiries: compliance@trustlogos.ai | All Compliance Requests - General Compliance: compliance@trustlogos.ai | CCPA Requests: compliance@trustlogos.ai (subject line: "CCPA Request") | GDPR Requests: compliance@trustlogos.ai (subject line: "GDPR Request") | BAA Requests: compliance@trustlogos.ai (subject line: "BAA Request") | Data Deletion: compliance@trustlogos.ai (subject line: "Delete My Data")

17. DO NOT SELL MY INFORMATION

We DO NOT sell personal information. California residents: While we don't sell information, you can register preferences at: donotsell@logosai.com

⚠️ IMPORTANT FOR LAW FIRMS

  • We are NOT your law firm
  • We do NOT maintain attorney-client privilege
  • You are responsible for all professional obligations
  • Opposing parties may use the same system
  • No conflicts checking is performed

Contact Us:

  • General Inquiries: compliance@trustlogos.ai
  • CCPA Requests: compliance@trustlogos.ai (subject: "CCPA Request")
  • GDPR Requests: compliance@trustlogos.ai (subject: "GDPR Request")
  • BAA Requests: compliance@trustlogos.ai (subject: "BAA Request")
  • Data Deletion: compliance@trustlogos.ai (subject: "Delete My Data")

For details on our security infrastructure and HIPAA compliance, visit the security & compliance page.

© 2025 Logos AI, Inc. All Rights Reserved.