Back to Home

Privacy Policy

Last updated: July 23, 2026

This Privacy Policy explains how Zethinking collects, uses, stores, discloses, and protects personal data when you access or use zethinking.com and its related artificial intelligence services.

Zethinking is operated from:

Taleex, Mogadishu, Somalia

For privacy questions, requests, complaints, and data-protection matters, contact:

legal@zethinking.com

1. Scope of This Policy

This Privacy Policy applies to personal data processed through:

  • The Zethinking website;
  • User accounts and profiles;
  • AI conversations;
  • Tutor and educational features;
  • Voice features;
  • Uploaded files and images;
  • Web search and research;
  • Connected applications;
  • Customer support;
  • Billing and subscriptions;
  • Analytics;
  • Security and fraud prevention systems.

This Policy does not govern third-party websites or services that you use independently of Zethinking.

2. Our Role

Zethinking generally acts as the controller of personal data collected directly through the platform.

In some circumstances, Zethinking may process information on behalf of an organization that provides Zethinking access to its students, employees, members, or customers. In those circumstances, the organization may be the controller and Zethinking may act as a processor or service provider.

3. Personal Data We Collect

3.1 Account and profile data

We may collect:

  • Name;
  • Username;
  • Email address;
  • Profile image;
  • Account identifier;
  • Authentication provider;
  • Occupation;
  • Date of birth or age information;
  • Gender, where voluntarily provided;
  • Country and language;
  • Subscription plan;
  • Account status;
  • Personalization preferences.

3.2 User Content

We process information you submit to Zethinking, including:

  • Prompts;
  • Chat messages;
  • AI responses;
  • Custom instructions;
  • Saved memories;
  • Tutor responses;
  • Documents;
  • Images;
  • Audio;
  • Voice transcriptions;
  • Code;
  • Feedback;
  • Connected-app information.

User Content may contain personal data about you or another person.

You must have a lawful basis or valid permission to submit personal data belonging to another person.

3.3 Personalization and memory

Zethinking may process settings such as:

  • Preferred response tone;
  • Formality;
  • Response length;
  • Humour preference;
  • Emoji preference;
  • Preferred language;
  • Occupation;
  • Learning preferences;
  • Model preferences;
  • Saved custom instructions;
  • Saved memory;
  • Accessibility preferences.

3.4 Connected-app data

When you connect a third party application, we may receive or process:

  • OAuth identifiers;
  • Authorization tokens;
  • Account identifiers;
  • Workspace identifiers;
  • File metadata;
  • Document content;
  • Repository information;
  • Permission scopes;
  • Connector activity.

We process connected app information only within authorized permissions and for the actions or features you request.

3.5 Technical and usage data

We may automatically collect:

  • IP address;
  • Browser type;
  • Device type;
  • Operating system;
  • Device identifiers;
  • Referring page;
  • Session information;
  • Cookie identifiers;
  • Language;
  • Approximate location derived from IP address;
  • Login timestamps;
  • Features used;
  • Models selected;
  • Request volume;
  • Error reports;
  • Performance information;
  • Security events;
  • Diagnostic information.

3.6 Payment data

Payments may be handled by third-party payment providers.

Zethinking may receive:

  • Customer identifier;
  • Billing name;
  • Billing email;
  • Billing country;
  • Subscription status;
  • Transaction amount;
  • Payment status;
  • Invoice information;
  • Limited payment-method information;
  • Refund information.

Zethinking does not intend to store complete payment card numbers or payment-card security codes.

3.7 Support communications

When you contact Zethinking, we may collect:

  • Your contact details;
  • Support message;
  • Screenshots;
  • Attachments;
  • Account information;
  • Technical diagnostics;
  • Previous support communications.

4. How We Collect Personal Data

We collect personal data:

  • Directly from you;
  • Automatically from your browser or device;
  • From authentication providers;
  • From connected applications;
  • From payment providers;
  • From infrastructure and security providers;
  • From public websites when you request search or research;
  • From organizations that provide you access to Zethinking.

5. How We Use Personal Data

We may use personal data to:

  1. Create and maintain accounts;
  2. Authenticate users;
  3. Generate AI responses;
  4. Save and restore conversations;
  5. Apply personalization settings;
  6. Maintain saved memory;
  7. Provide tutoring and learning features;
  8. Process documents, images, audio, and files;
  9. Perform web searches and research;
  10. Operate connected applications;
  11. Process subscriptions and payments;
  12. Send account and service communications;
  13. Provide customer support;
  14. Detect fraud, misuse, and security threats;
  15. Enforce platform policies;
  16. Debug technical problems;
  17. Improve reliability and performance;
  18. Understand feature usage;
  19. Comply with legal obligations;
  20. Protect users, Zethinking, and the public;
  21. Establish, exercise, or defend legal claims.

6. Legal Bases for Processing

Where applicable law requires a legal basis, Zethinking relies on one or more of the following:

6.1 Contractual necessity

We process data where necessary to:

  • Create your account;
  • Provide AI responses;
  • Save conversations;
  • Deliver paid services;
  • Provide requested features;
  • Manage subscriptions.

6.2 Consent

We may rely on consent for:

  • Optional analytics;
  • Non essential cookies;
  • Connected app access;
  • Optional personalization;
  • Marketing communications;
  • Other optional processing.

You may withdraw consent at any time. Withdrawal does not make earlier lawful processing unlawful.

6.3 Legitimate interests

We may process data where reasonably necessary to:

  • Secure the platform;
  • Prevent fraud and abuse;
  • Improve service reliability;
  • Diagnose errors;
  • Provide support;
  • Understand general product performance;
  • Protect legal rights.

We consider the impact on user privacy before relying on legitimate interests.

6.4 Legal obligations

We may process data to comply with:

  • Court orders;
  • Regulatory requirements;
  • Tax and accounting obligations;
  • Lawful government requests;
  • Other applicable legal duties.

6.5 Vital interests

In exceptional circumstances, we may process information where necessary to protect a person’s life, physical safety, or vital interests.

7. AI Model Providers

Zethinking may send information to third party AI model providers to generate responses.

Information sent may include:

  • Your current message;
  • Relevant conversation history;
  • Platform instructions;
  • Personalization instructions;
  • Relevant saved memory;
  • Uploaded files;
  • Search results;
  • Technical information necessary to complete the request.

The specific provider may depend on:

  • The model selected;
  • The user’s subscription plan;
  • Availability;
  • Request type;
  • Safety requirements;
  • Platform routing.

Third-party providers may process information outside Somalia or outside your country of residence.

Zethinking requires service providers to process information for authorized service purposes, subject to applicable agreements and safeguards.

Zethinking does not claim that third-party model providers have identical data-retention or privacy practices.

8. Model Training and Service Improvement

Zethinking does not use private conversations, files, or connected app content to train a proprietary foundation model unless this practice is clearly disclosed and a valid legal basis is established.

Zethinking may use limited information to:

  • Test platform reliability;
  • Evaluate response quality;
  • Identify errors;
  • Detect abuse;
  • Improve routing;
  • Investigate security incidents.

Where reasonably possible, such information will be minimized, aggregated, de identified, or reviewed under restricted access.

Users will be informed if Zethinking introduces materially different model training practices.

9. Web Search and Research

When you request search or research, Zethinking may send:

  • Your search query;
  • Relevant conversation context;
  • Language information;
  • Approximate location where useful;
  • Technical request information;

to search or research providers.

Search results may come from third party websites that have their own privacy policies and tracking practices.

Zethinking does not control independent third party websites.

10. Voice Processing

When you use voice features, Zethinking may process:

  • Audio input;
  • Voice transcription;
  • Language;
  • Generated voice output;
  • Voice settings;
  • Technical metadata.

Audio may be transmitted to a voice processing provider to generate transcription or audio output.

Zethinking does not intend to retain raw voice recordings longer than reasonably necessary to provide the requested feature, investigate security problems, resolve technical errors, or comply with law.

Transcriptions may be retained as part of a saved conversation where normal chat history is enabled.

Private Chat voice content is not intended to appear in normal saved conversation history.

11. Files and Images

Uploaded files and images may be:

  • Stored within your account;
  • Extracted or converted for analysis;
  • Sent to an AI provider;
  • Scanned for malware;
  • Indexed for file search;
  • Temporarily cached;
  • Included in conversation history.

Files remain associated with the relevant chat, workspace, feature, or account until deleted, unless retention is required for security or legal reasons.

You should maintain independent copies of important files.

12. Normal Chat History

Normal conversations may be stored so that users can:

  • Access previous conversations;
  • Continue earlier work;
  • Search chat history;
  • Maintain context;
  • Review generated responses.

Normal chats remain stored until:

  • You delete the conversation;
  • You delete your account;
  • Zethinking deletes content under a valid legal or policy basis;
  • A stated retention limit applies.

13. Private Chat

Private Chat is designed not to appear in normal persistent chat history.

Private Chat content may still be:

  • Processed temporarily to generate responses;
  • Sent to relevant AI providers;
  • Evaluated by automated safety systems;
  • Included in temporary technical or security records;
  • Preserved where legally required.

Limited Private Chat security and abuse-prevention records may be retained for up to 30 days unless a longer period is required for:

  • Security investigation;
  • Fraud prevention;
  • Legal compliance;
  • Enforcement of platform rules;
  • Protection of users.

Private Chat is not necessarily end-to-end encrypted.

14. Saved Memory

When memory is enabled, Zethinking may save selected information for future conversations.

Saved memory may include:

  • Preferences;
  • Background information;
  • Recurring instructions;
  • Occupation;
  • Learning preferences;
  • User-provided facts.

Where memory controls are available, you may:

  • View saved memories;
  • Delete individual memories;
  • Disable memory;
  • Reset memory.

Disabling memory prevents new memory from being deliberately saved but may not automatically delete existing saved memories.

Existing memories must be deleted separately unless the interface states otherwise.

15. Custom Instructions

Custom instructions are stored so they can be applied to future responses.

They remain active until:

  • You edit them;
  • You reset them;
  • You delete your account;
  • Zethinking removes them for legal, safety, or security reasons.

Custom instructions may be included in requests sent to AI providers where necessary to personalize a response.

16. Connected Applications

When you connect an application, Zethinking may store authorization tokens or related credentials.

These credentials are used only to provide authorized connector functionality.

You may revoke access by:

  • Disconnecting the application through Zethinking;
  • Revoking access through the third-party application;
  • Contacting legal@zethinking.com.

Disconnecting an application does not automatically remove content that was previously imported into a saved chat, file, or workspace.

17. How We Share Personal Data

Zethinking may share personal data with the following categories of recipients.

17.1 AI, search, and voice providers

To generate responses, conduct research, process audio, analyze files, or provide AI features.

17.2 Hosting and infrastructure providers

To host applications, databases, files, authentication systems, monitoring tools, and related infrastructure.

17.3 Payment providers

To process subscriptions, invoices, refunds, taxes, and payment fraud checks.

17.4 Analytics and performance providers

To understand service performance, identify errors, and improve reliability, subject to applicable consent requirements.

17.5 Professional advisers

With lawyers, accountants, auditors, insurers, and security specialists where reasonably necessary.

17.6 Government and legal recipients

Where disclosure is required by:

  • Applicable law;
  • A valid court order;
  • Regulatory obligations;
  • Lawful legal process;
  • A good-faith need to protect rights, safety, or platform security.

17.7 Business transfers

In connection with a lawful:

  • Merger;
  • Acquisition;
  • Investment;
  • Financing;
  • Reorganization;
  • Sale;
  • Insolvency process;
  • Transfer of platform operations.

17.8 Sharing directed by you

When you direct Zethinking to:

  • Send information to another service;
  • Publish content;
  • Export a file;
  • Connect an application;
  • Share a conversation.

18. Sale of Personal Data

Zethinking does not sell personal data for money.

Zethinking does not use private AI conversations for targeted third-party advertising.

Zethinking will update this Policy and obtain consent where legally required before introducing materially different advertising or data-sharing practices.

19. International Data Transfers

Zethinking and its service providers may process personal data in countries outside Somalia or outside your country of residence.

Where required, Zethinking will use appropriate safeguards, which may include:

  • Data-processing agreements;
  • Contractual protections;
  • Transfer assessments;
  • Technical safeguards;
  • Encryption;
  • Access restrictions;
  • Consent;
  • Other legally recognized transfer mechanisms.

20. Data Retention

Zethinking retains information only for as long as reasonably necessary for the purposes described in this Policy.

The general retention schedule is:

Data categoryGeneral retention period
Account and profile dataUntil account deletion
Normal conversationsUntil deleted by the user or the account is deleted
Private Chat historyNot added to normal chat history
Private Chat security recordsUp to 30 days, unless extended for a valid investigation or legal duty
Saved memoryUntil deleted or reset by the user
Custom instructionsUntil edited, reset, or the account is deleted
Uploaded filesUntil the related file, conversation, workspace, or account is deleted
Authentication recordsUp to 12 months
General security logsUp to 12 months
Support communicationsUp to 24 months after the support matter is closed
Billing recordsFor the period required by applicable financial, tax, and accounting obligations
Cookie consent recordsFor as long as reasonably necessary to demonstrate consent choices
Deleted information in backupsUp to 90 days after deletion from active systems

Data may be retained for longer where necessary for:

  • Legal claims;
  • Fraud prevention;
  • Security investigations;
  • Tax or accounting obligations;
  • Court orders;
  • Regulatory requests;
  • Enforcement of agreements.

Aggregated or properly de identified information may be retained where it no longer reasonably identifies an individual.

21. Account and Data Deletion

You may request account deletion through available account settings or by emailing:

legal@zethinking.com

After a valid deletion request:

  • Access to the account may be disabled;
  • Personal data will be removed or de identified from active systems;
  • Deleted information may remain temporarily in protected backups;
  • Certain records may be retained for legal, security, fraud-prevention, or financial obligations.

Zethinking aims to complete deletion from active systems within 30 days, unless a longer period is reasonably required.

Protected backup copies may remain for up to 90 days.

Deleting one conversation is different from:

  • Clearing all conversation history;
  • Resetting memory;
  • Disconnecting an application;
  • Deleting an account.

Users should use the appropriate control for the information they want removed.

22. Your Privacy Rights

Depending on applicable law, you may have the right to:

  • Confirm whether Zethinking processes your personal data;
  • Request access to your data;
  • Request correction;
  • Request deletion;
  • Request restriction of processing;
  • Object to certain processing;
  • Withdraw consent;
  • Request a portable copy;
  • Request information about data recipients;
  • Challenge certain automated decisions;
  • Submit a complaint to a data-protection authority.

To exercise a right, email:

legal@zethinking.com

Your request should include:

  • Your account email;
  • The right you wish to exercise;
  • Information needed to identify the relevant data;
  • Any relevant dates or details.

Zethinking may need to verify your identity before completing a request.

A request may be limited where information must be retained by law, is necessary to protect another person, or is subject to a lawful exemption.

23. Automated Processing

Zethinking uses automated systems to:

  • Generate content;
  • Personalize responses;
  • Route requests;
  • Recommend features;
  • Apply usage limits;
  • Detect spam and abuse;
  • Identify security risks;
  • Support account protection.

Zethinking does not intend to use solely automated processing to make decisions that create serious legal or similarly significant effects concerning a person without appropriate legal authority, safeguards, transparency, and meaningful human review.

24. Cookies

Zethinking uses cookies and similar technologies as explained in the Cookie Policy.

Where required, non essential cookies will not be activated until you provide consent.

Cookie preferences may be adjusted through the available cookie settings.

25. Marketing Communications

Zethinking may send essential messages relating to:

  • Account access;
  • Authentication;
  • Billing;
  • Security;
  • Service availability;
  • Policy changes;
  • Customer support.

These communications may be necessary to provide the service.

Marketing messages will be sent only where legally permitted.

You may unsubscribe from marketing messages using the provided link or available account settings.

26. Information Security

Zethinking uses reasonable technical and organizational measures designed to protect personal data.

Measures may include:

  • Encryption in transit;
  • Secure authentication;
  • Access controls;
  • Role based permissions;
  • Credential protection;
  • Database security policies;
  • Monitoring and logging;
  • Rate limiting;
  • Vulnerability management;
  • Backups;
  • Incident-response procedures.

No online system is completely secure.

You should protect your account, enable available security features, and avoid submitting information that is unnecessary for the requested task.

27. Personal Data Breaches

Where a security incident affects personal data, Zethinking will:

  1. Investigate the incident;
  2. Take reasonable containment measures;
  3. Assess the risk to affected users;
  4. Preserve relevant evidence;
  5. Notify relevant authorities where legally required;
  6. Notify affected users where legally required or reasonably appropriate;
  7. Take corrective measures.

28. Children and Young Users

Zethinking is not intended for children under 15.

Zethinking does not knowingly collect personal data from a child under the minimum permitted age without valid authorization.

A parent or guardian who believes that an underage person has created an account may contact:

legal@zethinking.com

Zethinking may restrict or delete an account that does not meet the age requirement.

29. Changes to This Privacy Policy

Zethinking may update this Policy to reflect changes in:

  • Law;
  • Technology;
  • Service providers;
  • Data practices;
  • Platform features;
  • Security requirements.

The “Last Updated” date will be changed.

Where a change materially affects privacy rights, Zethinking will provide reasonable notice through the platform, email, or another appropriate method.

30. Privacy Complaints

You should first submit privacy complaints to:

legal@zethinking.com

You may also have the right to submit a complaint to the Somalia Data Protection Authority or another data protection authority responsible for your location.

31. Contact Information

Zethinking

Taleex, Mogadishu, Somalia

Website: zethinking.com

Privacy and legal email: legal@zethinking.com