aicredit.aiPRIVACY / v0.1Legal center
02 / Data

Privacy, by inventory.

Effective August 11, 2026. This policy describes the current dev build—not hypothetical production collection.

Current postureBrowser-only inputsNo lead transmission
ScopeInputsLocal recordsHostingExternal linksWhat we do not doChoices + rightsRetentionChildrenSecurityContact
Plain-English summary

Your answers and demo contact details are not sent to AICredit or a lender. The browser keeps a local product-event ledger. Cloudflare necessarily processes network request data to host and protect the site.

Scope

This policy applies to aicredit-prototype.pages.dev. It does not govern an independent site reached through the starter shelf or any future lender, affiliate network, analytics provider, or production application flow.

Information you enter

The flow asks for financing purpose, estimated credit range, requested amount, collateral intent, ZIP code, income range, asset type and value, and—on the demo request—name, email, and phone. The JavaScript uses these values in memory to calculate and display prototype results. Name, email, phone, and the complete lead object are neither persisted nor transmitted.

Information stored in your browser

The site stores up to 500 timestamped product events under credit_platform_events_v1 in localStorage. Records may include source/campaign labels; answers such as purpose, credit band, amount, and collateral choice; coarse geographic region derived from ZIP; score band or displayed prototype score; asset category; completion flags; and simulated partner/economic fields. They do not include the name, email, phone, exact ZIP, reported income value, or reported asset value you type.

This ledger stays on the device and browser profile where it was created. The operator console reads the same local ledger. You can remove it from the operator console or by clearing site data in your browser.

Hosting and network data

Cloudflare Pages hosts and secures the prototype. Like other web infrastructure, Cloudflare may process IP address, request URL, routing, device/browser, timestamp, and security data under its own services terms and privacy commitments. AICredit has not installed Google Analytics, advertising pixels, lead-delivery APIs, or a first-party server database in this build.

External destinations

When you intentionally open a starter-shelf link, your browser contacts that independent organization. The prototype does not append your qualification profile. The site uses a strict-origin referrer policy, so the destination may receive the prototype’s origin but not the full referring path or query string. The destination’s policy governs information it collects.

What this build does not do

  • No credit report or bank-account connection.
  • No sale, rental, or sharing of personal information for cross-context behavioral advertising.
  • No contact-data storage or lender submission.
  • No marketing email or telephone enrollment.
  • No third-party analytics or advertising cookies.
  • No automated credit decision or adverse action.

Your choices and privacy rights

You can decline to use the flow, close it, avoid external links, or delete local site data. Depending on applicable law, you may also have rights to know, access, correct, delete, or limit certain personal information, and to appeal or complain to a regulator. Because current flow inputs are not transmitted to us, we generally cannot retrieve browser-local records for you. Contact us regarding any information you believe the operator holds.

The current prototype does not sell or share personal information, so it does not present a “Do Not Sell or Share” mechanism. That posture must be reassessed before any production analytics, partner pixels, or lead delivery is enabled.

Retention

Browser-local events remain until you delete site data or the application removes them; the app caps the ledger at 500 events. Cloudflare controls retention of infrastructure records under its service configuration and policies. A production retention schedule is not yet active because the prototype has no first-party backend.

Children

The prototype is for adults age 18 and older and is not directed to children. Do not provide information about a minor.

Security and changes

The deployed site uses restrictive browser security headers and avoids a collection backend. No system is perfectly secure. Production launch requires a security program, access controls, vendor review, incident response, consent records, and tested retention/deletion workflows. Material policy changes will appear in the change log.

Contact

[email protected]

Use the subject “AICredit privacy request.” Dedicated privacy contact details and a postal address must be published before production.

aicredit.ai

Current build: browser-local product events, Cloudflare hosting, no lead transmission.

Legal centerTermsDisclosuresCookiesAccessibility