Last updated: June 2026
FaradayMind ("we", "us", "our") is committed to protecting your personal data and complying with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. This policy explains what data we collect, how we use it, and your rights.
FaradayMind is registered with the Information Commissioner's Office (ICO). Registration number: [ICO REGISTRATION NUMBER — ADD AFTER REGISTERING].
Our contact address is: [YOUR ADDRESS]. You can also reach us at hello@faradaymind.com.
We collect the following personal data from clients and prospective clients:
We do not collect or store the content of your API requests. Documents and prompts sent to the API are processed in memory and discarded immediately. They are never written to disk, logged, or retained in any form.
We process client contact and billing data on the basis of contract performance (UK GDPR Article 6(1)(b)) — it is necessary to deliver the service and manage your account. We retain billing records for 7 years as required by HMRC.
We do not share your personal data with third parties for marketing or any other purpose. We do not use sub-processors for AI inference — all processing is performed on our own UK hardware.
We may disclose data where required by law, or to comply with a legal obligation.
All personal data is stored and processed within the United Kingdom. We do not transfer personal data outside the UK.
Client account data is retained for the duration of your subscription and deleted within 30 days of contract termination, except where retention is required by law (e.g. billing records).
API inference data (your prompts and documents) is not retained at any point.
Under UK GDPR you have the right to:
To exercise any of these rights, email hello@faradaymind.com. We will respond within one calendar month.
You have the right to lodge a complaint with the ICO at ico.org.uk or by calling 0303 123 1113.
We implement appropriate technical and organisational measures to protect personal data, including encrypted data transfer (TLS), API key authentication, and physical access controls on our hardware.
We may update this policy from time to time. The current version is always available at this URL. We will notify active clients of material changes by email.