Tawi Tawi

Privacy Policy

Last updated: 3 March 2026

1. Who we are

Tawi Research Labs ("Tawi", "we", "us") operates the Tawi AI platform at tawi.ai, app.tawi.ai, and associated desktop and mobile applications.

2. Data we collect

  • Account data: Email address, hashed password (bcrypt), optional display name.
  • Usage data: Token consumption, tier, session metadata, conversation history (stored encrypted).
  • Contact form: Name, email, and message submitted via tawi.ai/contact.
  • Payment data: Processed by Stripe, PayPal, M-Pesa, Flutterwave, or Paddle. We do not store card numbers.
  • Voice data: On supported devices, speech-to-text runs locally. Cloud voice processing (Groq, OpenAI) is used on other platforms — audio is not stored after transcription.
  • Technical data: IP address, browser type, OS (for rate limiting and security only).

3. How we use your data

  • To provide and improve the Tawi platform.
  • To process payments and manage your account tier.
  • To respond to support requests.
  • To detect abuse and enforce rate limits.

4. Data sharing

We do not sell your data. We share data only with:

  • LLM providers (to process your requests — no conversation data is stored by providers beyond processing).
  • Payment processors (Stripe, PayPal, M-Pesa, Flutterwave, Paddle) to process transactions.
  • Infrastructure providers (Hetzner, Cloudflare) for hosting.

5. Data retention

Conversation history is retained while your account is active. Contact form submissions are retained for 12 months. You can request deletion at any time by emailing hello@tawi.ai.

6. Your rights

You have the right to access, correct, export, or delete your personal data. Contact hello@tawi.ai for any data requests.

7. Security

We use bcrypt password hashing, TLS encryption, JWT authentication, rate limiting, and regular security audits. Infrastructure runs on hardened Kubernetes clusters with network policies and pod security standards.

8. Cookies

We use essential cookies only (authentication tokens stored in IndexedDB). Google Fonts may set performance cookies. We do not use tracking or advertising cookies.

9. Changes

We may update this policy. Material changes will be communicated via the app or email.

10. Contact

Tawi Research Labs — hello@tawi.ai