Back to chat
trustcert.ai

Trust

Built for
confidential work.

Last updated: July 16, 2026

01Why this page exists

Compliance questions are rarely generic. They are about the product you have not launched yet — its radio, its charger, its target markets, its timeline. That information is competitively sensitive, and a compliance tool that stores it carelessly is a liability, not an asset. trustcert.ai is designed so that you control what is kept, for how long, and in what form.

02Retention you control

Conversations are not kept indefinitely by default policy — retention is explicit:

  • Free plan: conversations are deleted automatically 30 days after their last activity.
  • Paid plans: you choose — 30 days, 90 days, 1 year, or keep until you delete. Set it in account settings.

Deleting a conversation removes it from your history immediately; its full message history is then erased from our live database by an automated sweep within roughly 24 hours. That short window exists for service operations — abuse prevention and aggregated, anonymized research — and for nothing else. Expired conversations are purged by the same sweep. Purged data ages out of our encrypted disaster-recovery backups within 14 days; those backups exist so the service can survive an outage, and are never used to browse or restore individual conversations. Uploaded files are deleted from storage approximately 24 hours after upload, always — regardless of plan or setting.

03Ephemeral conversations

Some questions should never enter your history. Start a conversation with the Ephemeral toggle — available on every plan — and it is not saved on your history: it never appears in your sidebar, not on this device, not on any other. Ephemeral conversations are permanently erased the moment you close or refresh the page.

04Your content does not train AI models

Your messages and files are processed by our AI providers under paid, business-tier API terms, which provide that customer content is not used to train or improve their models. We do not train models on your content either, and we do not permit our providers to use it for advertising. What we do learn from usage is aggregated and anonymized — for example, which regulations are asked about most — and feeds our curated regulatory corpus, which contains regulatory information, never your conversations or documents.

05Identifier scrubbing (paid plans)

Paid plans can enable an optional storage-scrubbing setting: personal and product identifiers — names, emails, phone numbers, company and product names, serial numbers — are redacted from new messages before they are written to your conversation history, replaced with placeholders like [PRODUCT]. To be precise about what this does: the AI still reads your original message to answer it; scrubbing governs what is stored. It is off by default and yours to switch on in account settings.

06Encryption and access control

All data is encrypted in transit (TLS) and at rest. Production access is restricted through identity-based access controls and least-privilege service accounts; your conversations are scoped to your account at the database-rules level. Multi-factor authentication is available for your account, and we recommend enabling it.

07Deletion and your rights

You can delete any conversation at any time from the sidebar, and delete your account — including all conversations — from account settings. Deleting your account also cancels any active subscription. Data-protection rights and the full detail of what we collect are in our Privacy Policy. Questions: privacy@trustcert.ai.