← Back to home

Privacy Policy

Effective: March 15, 2026 · Last updated: April 16, 2026

This Privacy Policy explains how Hublo Technologies (trading as HUBLO.AI) ("we", "us", "our") collects, uses, stores, and protects your personal data when you use AskLLM at askllm.io (the "Service"). We comply with the GDPR, India's Digital Personal Data Protection Act, 2023 (DPDP Act), and the IT Act 2000 (including reasonable security practices under section 43A and applicable rules). By using the Service, you agree to the practices described in this Policy.

1. Who We Are

Hublo Technologies (trading as HUBLO.AI) is the organization responsible for AskLLM on askllm.io. Depending on your jurisdiction, we act as your Data Fiduciary (India — DPDP Act) and/or Data Controller (EU/UK — GDPR) for the personal data described in this Policy.

Website: https://askllm.io
Contact:

2. What Data We Collect

2.1 Data You Provide

When you run an audit or join the waitlist:

  • Contact: Name, work email address
  • Brand: Company name, category, competitor names you compare against
  • Audit results: Scores, mention counts, raw AI responses (stored to deliver your report)
  • Waitlist (if you join): Role, marketing budget, optional message

2.2 Data Collected Automatically

  • Approximate country: We may derive your country (not precise location) from connection metadata to pre-fill an optional field on the audit form. You can change or clear it anytime.
  • IP address (hashed): For rate limiting and abuse prevention — raw IP never stored
  • Usage analytics: PostHog (product usage)
  • Error data: Sentry (bug diagnosis)

2.3 Paid transactions

When you complete a paid purchase on AskLLM, our payment processor facilitates collection of billing and transaction data as described in the next section.

2.4 Payment-related data (paid purchases)

  • Billing name
  • Email used for receipts
  • Billing address, if collected for the transaction
  • Transaction IDs and references
  • Payment method type (for example card, UPI, net banking, wallet)

We do not store raw card numbers on our infrastructure. Card data is handled by Razorpay in a PCI DSS Level 1 environment.

2.5 What We Do NOT Collect

  • We do not sell your personal data
  • We do not use your brand data to train AI models
  • We do not track you across other websites
  • We do not store raw card numbers or CVV codes

3. How We Use Your Data

We process data for: providing the audit service; sending audit reports and transactional emails; improving the Service; preventing fraud; legal compliance. Marketing emails require separate opt-in. MVP: transactional emails only — audit result, waitlist confirmation, re-audit confirmations.

4. How We Share Your Data

Your brand submission is sent to AI providers (OpenAI, Anthropic, Google, Perplexity) to generate reports. We use Supabase (database), Resend (email), Upstash (rate limiting), Vercel (hosting). All sub-processors use Data Processing Agreements. We may disclose data if required by law.

Razorpay Software Pvt. Ltd. acts solely as our payment processor for paid AskLLM purchases. It processes billing name, email, billing address, transaction reference IDs, and payment method type on our behalf for billing, fraud prevention, accounting, and dispute resolution; it does not control how we operate the audit product beyond payments, refunds, and related records. Razorpay operates a PCI DSS Level 1 certified environment. See Razorpay's Privacy Policy for how Razorpay handles payment data.

5. Data Retention

Audit data is retained for the duration of our service. You may request deletion at any time (Section 7). Anonymised statistics may be retained indefinitely.

Financial and tax records (payment transaction references, invoices, GST-related records) are generally retained for up to eight (8) years from the date of transaction where required under Indian GST, tax, and accounting law. Deletion requests do not apply to these records where retention is mandated by law.

6. Data Security

We use encryption in transit (HTTPS/TLS), encryption at rest, access controls, IP hashing (no raw IP stored), and audit logging. We implement safeguards consistent with reasonable security practices under the Information Technology Act, 2000 and applicable rules. No system is 100% secure. Report concerns to .

7. Your Rights & Delete My Data

Under GDPR and DPDP you have the right to: access, rectification, erasure, restriction, portability, object, withdraw consent. To request deletion, email with subject "Delete my data" and the email you used. We will manually process your request within 30 days.

For India: Grievance Officer — contact . Consumer complaints are acknowledged within 48 hours and we aim to resolve them within 30 days, consistent with Consumer Protection (E-Commerce) Rules, 2020.

8. Cookies

We use essential cookies (admin area). PostHog analytics cookies can be opted out. No advertising or third-party tracking cookies.

9. Children's Privacy

The Service is not intended for individuals under 18. We do not knowingly collect data from minors.

10. International Transfers

Data may be transferred outside the EEA. We use Standard Contractual Clauses and DPAs with sub-processors.

11. Changes

We may update this Policy. The "Last updated" date reflects changes. Continued use constitutes acceptance.

12. Contact

Hublo Technologies (trading as HUBLO.AI)
Email:
Website: https://askllm.io
For full contact details (address, phone) see our Contact page.