Introduction
Clairon (“Clairon AI”, “we”, “us”, “our”) operates an AI-powered platform designed to analyze visibility across LLMs and GEO search environments. We are committed to protecting your personal data and respecting your privacy.
This Privacy Policy explains:
- What data we collect
- How we use it
- How we store and secure it
- Your rights under GDPR and other applicable laws
- With whom we share your data
- How long we retain it
By accessing or using Clairon, you agree to this Privacy Policy.
Who we are
Clairon is currently operated by:
- HDB Ventures Limited, Hong Kong SAR
A future corporate entity may be incorporated in the United States (Delaware). This Privacy Policy will continue to apply unless otherwise updated.
For any privacy-related request, contact us at hugo@clairon.ai.
Data we collect
Data you provide voluntarily
- Name and surname
- Email address
- Password (encrypted, never stored in cleartext)
- Company name, role, website
- Billing and invoicing data (processed securely by Stripe)
- Support messages or emails
- Content you input into the platform (keywords, prompts, URLs…)
Data collected automatically
- IP address
- Browser and device information
- Operating system
- Usage events (clicks, pages viewed, features used)
- Logs for performance and debugging
- Cookies or analytics data (see Cookie Policy)
AI processing data
When you generate content or run analyses through Clairon, we may process your prompts, inputs (keywords, URLs, queries), temporary logs and model outputs.
- We do not use your data to train LLMs.
- We do not store prompts long-term unless necessary for troubleshooting or at your request.
Payment data
Handled entirely by Stripe. We never store full credit card numbers.
Affiliate program data
If you join the affiliate or referral program, we process:
- Referral link usage
- Attribution data
- Conversions
- Commission history
- Platform identifiers (PartnerStack or other providers)
How we use your data
To provide and operate the service
- Create and manage accounts
- Authenticate users
- Deliver and personalize features
- Analyze LLM visibility and GEO search results
- Generate reports
To improve our product
- Understand how features are used
- Troubleshoot performance issues
- Train our ranking systems (without using personal content in LLM training)
- Build new functionality
To manage billing
- Process payments
- Handle subscription renewals
- Prevent fraudulent transactions
For communication
- Transactional emails
- Security alerts
- Product updates
For legal compliance
- Tax and accounting
- Responding to valid legal requests
- Enforcing our Terms of Service
Legal bases for processing (GDPR)
We process personal data on the following bases:
- Contractual necessity, to provide the service.
- Legitimate interest, product improvement, platform security.
- Consent, cookies, marketing emails.
- Compliance with legal obligations.
MCP and AI connectors
Clairon offers an optional integration with AI assistants such as Claude via the Model Context Protocol (MCP). When you enable this integration, you authorize a third-party AI assistant to read data from your Clairon workspace on your behalf. This section describes what that means in practice.
What the AI assistant can access
The connector is read-only. It exposes:
- Your projects and their configuration
- Tracked prompts and queries
- Citation data and source attributions
- Competitor rankings and benchmarks
It does not expose:
- Account credentials or passwords
- Billing or payment information
- Team member personal data
- Internal platform configuration
Anthropic as a subprocessor
When data flows through the connector into a Claude conversation, Anthropic acts as a subprocessor. Anthropic's terms and data policies apply to its side of the exchange. For zero-retention guarantees, we recommend Claude Team, Enterprise or Max plans, which prevent training on user inputs.
Authentication and scope
Claude integrations use OAuth 2.1 authorization. Claude accesses your data only after you explicitly authorize it, and each grant is scoped to a single workspace. You can revoke Claude's access at any time from Claude's own connector settings (Claude.ai → Settings → Connectors → Disconnect); revocation takes effect within seconds. The Clairon Settings → Connect to Claude page lists your active Claude connections for visibility. To force-revoke from our side, email hugo@clairon.ai and we will invalidate the grant within one business day.
No training on workspace data
Clairon does not use workspace data accessed through the connector to train, fine-tune, or evaluate any model.
Logging and audit
Connector requests are authenticated per OAuth grant and appear in our application request logs. Application logs are retained for up to 90 days, then deleted, unless a longer period is required for a security incident investigation.
Disabling the integration
You can sever access at any time by disconnecting Clairon from within your AI assistant's settings, or by emailing hugo@clairon.ai. Either action is sufficient.
A step-by-step setup and security walkthrough for the Claude connector is available at clairon.ai/help/connect-claude.
International transfers
Your data may be processed in:
- Hong Kong (HDB Ventures Limited)
- United States (LLM providers, analytics, or hosting)
- European Union (analytics or distribution services)
Where transfers occur, we rely on:
- Standard Contractual Clauses (SCCs)
- GDPR-compliant DPAs
- Adequacy decisions where applicable
Data security
We use industry-standard security measures, including:
- HTTPS encryption
- Password hashing & salting
- Access control and audit logs
- Encrypted data storage
- Secure infrastructure providers
- Regular security reviews
Despite our best efforts, no system is 100% secure. If a breach occurs, we will notify affected users and regulators as required by law.
Data retention
We keep personal data only as long as necessary:
- Account data, retained while the account is active
- Billing data, retained for accounting (6–10 years legal requirement)
- AI input data, temporary, unless saved by the user
- Analytics logs, 12 to 24 months
- Support messages, until resolved, up to 12 months
Users may request deletion at any time.
Your rights (GDPR & global equivalents)
Depending on your jurisdiction, you may:
- Access your data
- Correct your data
- Delete your data
- Export your data (data portability)
- Restrict processing
- Object to processing
- Withdraw consent (cookies, emails)
Requests can be sent to hugo@clairon.ai.
Children's privacy
Clairon is not intended for children under 16. We do not knowingly collect children's data.
Changes to this policy
We may update this Privacy Policy occasionally. We will notify users of material changes via email or dashboard notification.
Contact
Questions or concerns? Reach us at hugo@clairon.ai.





