Privacy & Security

Privacy Policy

Last updated: 9/15/2025

Privacy Policy for All Portal

This Privacy Policy describes how the All Portal (“we”, “our” or “us”) collects, uses, and discloses your information when you use the All Portal and our machine translation and language model training services. We are committed to protecting your privacy and ensuring transparency in how we handle your data. Our Privacy Policy covers all personal data that you submit to us or that we obtain about you when you use our Services or the Website.

Information we collect

Personal data for account creation

When you create an account or contact us, we may collect: name, email address, and other account details.

Technical & usage data

Log and usage data such as IP address, browser type, device, timestamps, API request metadata, error logs, and cookies.

How we use data

We use the information to:

  • Provide and operate the service (process translations, return results, manage accounts).
  • Authenticate users and provide customer support.
  • Monitor, troubleshoot, and improve performance and platform security.
  • Generate anonymized, aggregated metrics for product analytics and capacity planning.

Important - model training: By default, we do not collect or use client input (data you submit for translation) to train or improve our model(s). Client input is treated as confidential operational data.

Data sharing

We do not sell your personal data. We only share data in limited ways necessary to deliver the service:

  • Service providers (subprocessors). Trusted vendors (cloud hosting, payment processors, analytics) who are bound by contract to protect your data.

We use Stripe, our trusted payment processor, to securely handle payments for subscription and billing on the All Portal. When you make a payment, Stripe may collect payment details (such as card numbers and billing addresses) to complete the transaction. The African Languages Lab does not store or have direct access to your full card details or other sensitive payment credentials—those are processed and protected by Stripe. Please review Stripe’s privacy and security practices on their website for details.

We may retain transaction-related records (for example, invoices, purchase history, subscription status, and order details) to fulfill our contractual obligations, provide customer support, and comply with accounting or legal requirements. All payment and billing information is handled in accordance with industry-standard security practices and applicable data protection laws.

  • Legal requirements. If required by law or to protect rights, safety, or property.
  • Business transfers. In connection with a merger, sale, or reorganization, with notice to users when required.
  • Aggregated data. Non-identifiable, aggregated statistics may be published or shared.

Data retention

  • Client input and outputs: Retained for operational needs and troubleshooting (default: up to 30 days) unless you save them in your account or request deletion.
  • Logs & metadata: Retained for up to 90 days for security and performance monitoring.
  • Account and billing records: Retained as required by law (typically longer for financial records).

Security

We implement industry-standard technical and organizational measures, such as encryption in transit (TLS), encryption at rest, role-based access controls, logging, and regular security testing. We maintain an incident response plan and will notify affected users and regulators as required by law if a breach occurs.

Your choices and rights

Depending on your jurisdiction, you may have rights that include:

  • The right to access, update, or delete the information we have on you.
  • The right to rectification.
  • The right to object.
  • The right to restrict processing.
  • The right to data portability.
  • The right to withdraw consent.

Cookies & tracking

We use cookies and similar technologies to operate the portal, remember preferences, and collect analytics. You can control cookies through your browser settings; disabling some cookies may reduce site functionality. The intent behind using this information is to optimize the user experience by customizing our web page content based on visitors’ browser type and/or other information.

Children

Our services are not intended for children under applicable age limits. Protecting children online is a core part of our privacy commitment. The All Portal is not directed at children under the age of 16, and we encourage parents and guardians to observe, participate in, and monitor their children’s online activity.

We do not knowingly collect Personally Identifiable Information (PII) from children under 16. If you believe your child has provided PII on our platform, please contact us immediately. If we learn we have collected such data, we will delete it.

Changes to this policy

We may update this Privacy Policy. We will post the updated policy on this page with a revised effective date. For material changes, we will provide notice (e.g., email or portal notification) where required.

Online Privacy Policy Only & Consent

This Privacy Policy applies solely to information collected through our Website and not to information collected offline or via other channels.

By using the Website, you hereby provide your consent to our Privacy Policy and agree to its Terms of Service.