Privacy Policy
Last updated: September 2026
This policy explains what information SoloOps.ai ("we", "us") collects when you use getsoloops.co, and how it's used.
SoloOps.ai is operated by Individual Entrepreneur Aleksei Starchenko, registered in Georgia (registration No. 304782901), who is responsible for your data. Contact: support@getsoloops.co.
1. Information we collect
- Account information: the email address and nickname you provide when you sign up, your chosen language preference, and, if you enter a promo code, which code you used and when.
- Contracts you upload (Contract Review): submitted for risk analysis. The uploaded file itself is deleted after processing (see Section 3); what we keep is the analysis result — flagged clauses and short excerpts from the contract.
- Compare Versions: both contract files are encrypted on your device and handled the same way as in Contract Review (see Section 3). What we keep is the two file names and the comparison result, which quotes the changed sentences from both versions. You can delete any comparison yourself.
- Jurisdiction Matcher answers: your citizenship, the country you live in, whether you would relocate, your revenue bracket, client type, client countries and business activity, used to generate a country match and registration checklists. These answers and the results are not stored: only the fact that you used the tool is counted for the daily limit.
- Generated documents (NDA/contract templates): the party names, jurisdiction, and deal details you enter, plus the document Claude generates from them, are saved to your account so you can revisit them later. You can delete any of these yourself at any time.
- Invoices: your business name/address, your client's name/address, and line items you enter are saved to your account. You can delete any invoice yourself at any time.
- Client Finder (in development, available to testers only):
- Your freelancer profile: the headline, services, industries, strengths, ideal client and languages you confirm. To build it we read the link you give (a public web page), the text you paste, or the CV you upload as a PDF. The PDF is read once in memory and is not stored; if it has no readable text, the file is sent to Anthropic so the model can read it.
- Your searches: what you are looking for, where, how many results, and which kind of company (direct clients or agencies).
- Companies found: for companies found on the web, their website address, company name, the public email address and contact page shown on their own website, a score, and the reasons with short quotes from their public pages. For companies found on Google Maps we store only Google's place ID; their name, phone, address and rating are fetched from Google when you view the results and are not stored, and everything taken from Google or from company pages while a search runs is deleted when it finishes, and in any case within an hour.
- Your outreach: the draft messages, whether you marked a company as sent, replied or not interested (with the reason you chose), and when. SoloOps never sends these messages: you send them from your own email or WhatsApp, and SoloOps does not see replies.
- Usage data: basic technical logs needed to operate the service (e.g. error logs), and your language preference stored in your browser.
2. How your data is used
- Contract text (including both versions you compare), Jurisdiction Matcher answers, document-generation details and Client Finder material are sent to Anthropic's Claude API to generate the results you request. Anthropic processes this text to return results to you; it is not used to train Anthropic's models under their API terms.
- Jurisdiction Matcher results may involve Claude searching the web for current tax/business information relevant to your answers — no personal information is included in those searches, only the general facts needed (e.g. "company registration in Georgia for Russian citizens").
- We do not sell your data, and we do not share it with third parties except the service providers listed below, solely to operate the product.
3. Data storage and security
Your account and data are stored with Supabase (hosted in Frankfurt, Germany), encrypted in transit (HTTPS/TLS) and at rest using Supabase's standard infrastructure encryption. Access to your data is restricted by row-level security so that only your own account can read or write it.
Contracts are additionally encrypted on your device (AES-256-GCM, via your browser's Web Crypto API) before upload. The encryption key is generated in your browser, exists only for the duration of that one request, and is never stored in any database. The file is decrypted only in memory long enough to run the analysis, then permanently deleted from storage. What remains afterward is the analysis result — the flagged clauses and their short excerpts — kept in your account's history so you can revisit past scans, until you delete them yourself.
The full text of a contract, extracted only for the purpose of analyzing it, is never written to our database or sent back to your browser — it exists only in server memory for the duration of that one request, then is discarded. The "copy selected fixes" tool works entirely from the short flagged excerpts already in your results, not the full contract text.
4. Third-party service providers
- Anthropic — AI analysis for Contract Review, Jurisdiction Matcher, document generation and Client Finder (building your profile, web search for companies, scoring and drafting messages) (api.anthropic.com).
- Supabase — database, authentication, file storage, and backend functions.
- Google (Places API): Client Finder map searches. We send Google the search text (for example "cafes in Tbilisi"), never your account details. Results are shown with Google Maps attribution and used under Google's terms.
- Resend — delivery of transactional emails (signup confirmation, password reset codes).
- Paddle — payments for paid plans. Paddle.com is the Merchant of Record: it collects your payment details and billing address and processes them under its own privacy notice. We never see or store your card details. From Paddle we receive your email address, the plan or scan pack you bought, the subscription status and renewal date, and Paddle's customer, subscription and transaction IDs, which we use to switch your plan on or off and to add the scans you bought.
5. Your rights
You can delete individual contract scans, comparisons, generated documents, and invoices directly from your dashboard, at any time, yourself. You can delete your entire account yourself at any time under Account → Delete account. This immediately removes your profile, contract results, comparisons, generated documents, invoices, client-finder data, usage records and any of your files still in storage. If you have a paid subscription that still renews, cancel it first. Payment records held by Paddle, as Merchant of Record, are kept by Paddle under its own legal obligations. You can also ask us to delete your account by contacting us (see below).
6. Cookies and local storage
We use your browser's local storage to remember your language preference and to keep you signed in. We do not use third-party advertising or tracking cookies. When you open the payment window, Paddle's script loads and may set its own cookies needed to process the payment.
7. Children
SoloOps.ai is intended for freelancers and business owners and is not directed at children. We do not knowingly collect data from anyone under 16.
8. Changes to this policy
We may update this policy as the product changes. Material changes will be reflected here with an updated date.
9. Contact
Questions about this policy or your data: support@getsoloops.co. If you live in the EU or the UK, you can also complain to your local data protection authority.