Skip to main content

Privacy Policy

Last updated: 28 June 2026

Operated by Coope.ai — London, United Kingdom (HQ) · Istanbul, Türkiye (operations). Subject to final legal review.

1. Controller

The data controller for personal data processed through the platform is Coope.ai — London, United Kingdom (HQ), with operations in Istanbul, Türkiye (registered-company details available on request). For data-protection requests: privacy@coope.ai.

2. Data we process

Account data (name, work email, company, role); authentication data; usage and log data (requests, timestamps, IP, approximate device/browser); and any documents or text you submit to the platform for analysis.

3. Purposes

To provide and secure the service, authenticate users, enforce plan limits, generate the requested regulatory/compliance analysis, improve reliability, and meet legal obligations.

4. Legal bases

Performance of a contract (providing the service); legitimate interests (security, service improvement); consent where required; and compliance with legal obligations. Where Türkiye’s KVKK (Law No. 6698) applies, processing relies on the corresponding bases in Art. 5–6.

5. AI processing

Queries and, where applicable, submitted documents may be processed by automated retrieval and language-model components to generate answers. We do not use your private content to train third-party foundation models without a separate legal basis.

6. Sharing & processors

We use infrastructure and sub-processors (hosting, database, model inference) under appropriate contracts. We do not sell personal data. Disclosures may occur where required by law.

7. International transfers

Where data is transferred across borders, we apply appropriate safeguards (e.g. adequacy, standard contractual clauses, or KVKK transfer mechanisms).

8. Retention

We retain personal data for as long as your account is active and as required for legal, security and accounting purposes, then delete or anonymise it. We keep operational query logs (the questions you submit, the generated answers, timestamps and IP address) for up to 180 days for security, abuse-prevention and service-improvement, after which they are deleted or anonymised. Deleting a conversation removes it from your history; you may also request full erasure of your data — including these logs — at any time (see Your rights / the in-app "delete all my data" option).

9. Security

We apply technical and organisational measures including encryption in transit (TLS), access controls and authentication. No system is perfectly secure; we cannot guarantee absolute security.

10. Your rights

Subject to applicable law (GDPR / KVKK), you may request access, rectification, erasure, restriction, portability, and objection, and may lodge a complaint with your supervisory authority (e.g. the Turkish KVKK Authority or an EU DPA). To exercise rights: privacy@coope.ai.

11. Cookies

We use strictly necessary cookies/local storage for authentication and session management. Analytics or non-essential cookies, if introduced, will be subject to consent.

12. Changes & contact

We may update this policy; material changes will be notified in-product. Contact: privacy@coope.ai · Data Protection contact: dpo@coope.ai.