Privacy Policy
Last Updated: August 18, 2026
The short version
If you only read one section, read this one. Everything below explains it in detail.
- We don't train on your data. Not your knowledge base, not your Bot conversations, not the outputs.
- We don't sell your data. Ever, to anyone.
- Every model runs through official APIs. No resellers, no unofficial endpoints, no workarounds.
- Your Bot's messages go to the provider you pick. That's how the platform works. You choose the model for each Bot, we route the request.
- Everything is encrypted, in transit and at rest, including any API keys you add.
- You can delete it. Your Bots, your knowledge base, your conversation history, your account.
1. Who we are
Nivon AI ("Nivon," "we," "us") is operated by Pimjo.
Registered office Level 2, House 3, Road 5, Baridhara J Block, Dhaka 1212, Bangladesh
Contact [hello@nivon.ai]
We handle personal data in line with applicable data protection laws, including the GDPR where it applies to you. We act as the data controller for your account and billing data, and as a processor for the knowledge base content and end-user conversations your Bots handle on your behalf.
If you're using Nivon to run support for your own customers, you're the controller of your end users' data, and we process it under your instructions to provide the Service. Our Data Processing Addendum, available on request, governs that relationship in more detail.
Nivon links to third-party sites and tools that operate under their own privacy policies. We aren't responsible for their practices.
2. What we collect
Account data Your name, email address, and profile picture if you upload one.
Billing data Collected when you buy a paid plan or credits. We never store full card details. See Section 5.
Knowledge base and Bot configuration The documents, URLs, and content you upload to train a Bot, along with the settings you configure.
End-user conversations The messages your Bots exchange with your customers, and the outputs generated in response.
Usage and device data Log data, IP address, device and browser type, and approximate location if you enable it. Used to run, secure, and improve the platform.
3. How AI processing works
This is the section most people want, so here it is in full.
You pick the model, we route the request
Nivon is an agentic support platform built on multiple AI models. When you configure a Bot, you choose the model that powers it. When that Bot receives a message from one of your customers, the message goes to the provider you selected so a response can be generated and returned. This is how the product works, and it's necessary to provide the service.
Official API access only
We reach every model through the provider's official commercial API. We do not use resellers, unofficial endpoints, scraped access, or any workaround. When a Bot uses a given model, its requests go to that provider directly through their documented API.
This matters because official API access comes with contractual data terms. Backdoor access doesn't.
No training on your data
We do not use the content of your knowledge base, Bot configurations, or end-user conversations to train models of our own.
We also choose providers whose API terms exclude the use of customer input for training their models. Once a message reaches a provider, it's handled under that provider's terms, which we can't control but do vet before adding a model to the platform.
4. Google User Data
If you connect your Google account or Google services to Nivon, we may access Google user data only to provide the specific Nivon features that you have requested and authorized.
What Google data we access
Depending on the Google services and permissions you authorize, this may include your Google account information and data made available through the specific Google API scopes requested by Nivon. We only request the permissions necessary to provide the relevant functionality.
How we use Google user data
Google user data is used only to provide or improve the user-facing Nivon features for which you authorized access. For example, when a Google integration requires access to your Google data, we use that data to perform the action or provide the functionality you requested. Such as uploading Google Docs to your agent as a data source, so your chat agent can use Google Drive Docs/PDF as a knowledge base source.
We do not use Google user data for advertising, retargeting, personalized advertising, selling data, or data brokerage. We do not use Google user data to train generalized AI or machine learning models.
4. How we use your data
We use your data to:
- Create and secure your account
- Provide and improve the platform
- Process payments
- Personalize your experience
- Send you service updates
- Send marketing, but only if you opted in
- Meet our legal obligations
Depending on the activity, our legal basis is performance of our contract with you, your consent, our legitimate interests, or a legal obligation.
We do not sell your personal data.
5. Who we share it with
We share data only where it's reasonably necessary:
AI model providers you select Your Bot's messages go to the provider whose model you chose. That's the point of the platform.
Service providers Companies that help us run Nivon, all under confidentiality obligations.
Legal and safety Where required by law, or to protect Nivon, our users, or the public.
Business transfers If Nivon is ever part of a merger or acquisition, subject to this policy.
Where data moves across borders, we apply appropriate safeguards.
6. Payments
Payments are processed by Stripe under its own privacy policy. Card data is encrypted in transit. We never see or store your full card details.
7. Security
Encryption
Data is encrypted in transit and at rest. That covers knowledge base content, end-user conversations, and any API keys you add through BYOK.
API keys
Keys you add are encrypted and scoped to the workspace where you added them. We don't log key values, and we don't send them anywhere except the provider the key belongs to.
Infrastructure
Our storage and databases run on infrastructure from SOC 2 certified cloud providers, hosted in the United States and the European Union. Internal access to production systems is restricted and logged.
8. How long we keep it
We keep conversation history and knowledge base content so your Bots keep working and so features like history and continuity function correctly. It stays until you delete it or close your account.
9. Your rights
Subject to applicable law, you can:
- Access the data we hold about you
- Correct it
- Delete it
- Object to or restrict certain processing
- Get a copy of it
- Withdraw consent you previously gave
If you're an end user of a Bot built on Nivon and want to exercise these rights over your own data, please contact the business you spoke with, as they are the data controller for that conversation.
To make a request as a Nivon account holder, email [hello@nivon.ai].
10. Cookies
We use cookies to run the site, remember your preferences, and understand how the platform is used. You can disable them in your browser, though some features may stop working as intended.
11. Children
Nivon isn't intended for anyone under 18, and we don't knowingly collect their data. If you think a child has given us data, email [privacy@nivon.ai] and we'll remove it.
12. Changes to this policy
We may update this policy. Changes get posted here, and we'll notify you about significant ones. If you don't agree with a change, please stop using the platform.