Codini FlowCodini Flow Home
Legal

Privacy Policy

Last updated: 6 July 2026

This Privacy Policy explains how Codini AI (“Codini”, “we”, “us”) collects, uses, and protects information when you use Codini Flow (the “Service”). We aim to collect only what we need to run the Service well.

1. Information we collect

  • Account information — name, email, organization, and authentication details.
  • Content you create — flows, prompts, inputs, variables, and session history (chats, submissions, board tasks).
  • Integration credentials — tokens/keys you connect so your flows can reach third-party tools, stored to operate those connections.
  • Usage & device data — logs, run history, IP address, browser type, and similar diagnostics.
  • Cookies — used for authentication and to keep you signed in (see §10).

2. How we use information

  • To provide, operate, secure, and improve the Service;
  • to execute your flows and deliver results to you and the teammates you authorize;
  • to communicate about your account, security, and changes to the Service;
  • to monitor for abuse, enforce our Terms, and meet legal obligations.

3. AI processing

Running a flow may send your inputs and relevant content to third-party AI model providers to generate results. We share only what is needed to fulfil your request. Those providers process the data under their own terms; we do not sell your content and we do not use it to train third-party models except where you explicitly direct a flow to do so.

4. Google user data & Limited Use

If you connect a Google account (for example, to use Gmail, Google Drive, or Google Calendar in a flow), we request access only to the specific scopes you approve on Google’s consent screen. We use that Google user data solely to provide and operate the features you configure — for example, reading or sending the messages, files, or events your flow acts on. We store Google OAuth tokens securely to maintain the connection, and we process Google user data only as needed to fulfil your requests.

Codini Flow’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data for advertising, we do not sell it, and we do not allow humans to read it except with your explicit consent, where necessary for security or to comply with applicable law, or where the data has been aggregated and anonymized. You can revoke Codini’s access at any time in your Google account settings or by disconnecting the integration.

5. How we share information

We share information only:

  • with service providers / subprocessors (e.g. hosting, databases, AI model providers) that help us run the Service;
  • with integrations you connect, as directed by your flows;
  • within your organization, with members who are granted access to shared resources;
  • if required by law or to protect the rights, safety, and security of Codini and its users;
  • in connection with a merger or acquisition, subject to this Policy.

We do not sell your personal information.

6. Data retention

We keep information for as long as your account is active or as needed to provide the Service, then delete or anonymize it within a reasonable period, unless a longer period is required by law. You can request deletion as described below.

7. Security

We use reasonable technical and organizational measures to protect your data, including encryption in transit and access controls. No system is perfectly secure, so we cannot guarantee absolute security.

8. Your rights

Under UK GDPR and other applicable laws, you may have the right to access, correct, export, or delete your personal information, or to object to or restrict certain processing. To exercise these, contact us at hello@codini.ai. You may also close your account at any time, and you have the right to complain to the UK Information Commissioner’s Office (ICO).

9. International transfers

We may process and store information in countries outside the United Kingdom. Where we do, we use appropriate safeguards (such as Standard Contractual Clauses or an equivalent mechanism) to protect it.

10. Cookies

We use strictly necessary cookies for authentication and session management. We do not use them to build advertising profiles.

11. Children

The Service is not directed to children under 16, and we do not knowingly collect their personal information.

12. Changes to this Policy

We may update this Policy from time to time. If we make material changes, we will take reasonable steps to notify you and will update the “Last updated” date above.

13. Contact

For privacy questions or requests, email hello@codini.ai. We are based in London, United Kingdom.

© 2026 Codini Flow, Inc.
TermsPrivacyhello@codini.ai