Data, privacy and compliance

Modified on Mon, 17 Aug at 11:07 PM

What leaves your app: the text of the last ~8–12 conversation turns and the user's country code. That's it. No PII is required or requested — no names, emails, phone numbers, device IDs. session_id (optional) is an opaque string you choose; the end-user IP (optional, X-Forwarded-For) is used only for per-user rate limits.

What we do with it: detect commercial intent, match a catalog item, return a card. Conversation text is not sold and not shared with third parties; advertisers receive only clicks and conversions through the tracking link, never the conversation.

Keys: the LLM keys live only on our servers, in environment variables. There are no model keys in your app.

What you need to do:

  1. Add a disclosure to your privacy policy / terms that answers may contain sponsored recommendations and that conversation context is used to select them.
  2. Keep the visible "Sponsored" label and rel="sponsored noopener" on every card — this is what makes the placement compliant with ad-labelling rules and search-engine guidelines.
  3. If your product serves the EU/UK, treat us as a processor for the conversation text in your records; for data-processing terms write to ai@indoleads.com.

Not suitable content: children's products, medical/legal-sensitive assistants, and apps whose store or platform policy forbids ads — we don't onboard those.

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article