FINDEREKA UAB (company code 308066820, V. Nagevičiaus g. 3, LT-08237 Vilnius, Lithuania) — "Cortexly" — decides how and why personal data is handled on https://cortexly.cloud, which makes us the data controller under the EU GDPR. Here's how we treat it.
What we hold
When you sign up and use Cortexly we end up with your name, email and a hashed password; a record of your top-ups and transactions (card numbers stay with our payment provider, not us); the crew configurations, prompts and files you submit and the output your runs return; your model and service credentials, kept encrypted; and operational data such as runs dispatched, ledger movements, tokens reserved and debited, API-key activity, IP address and basic device/browser details. Cookies are covered separately in our Cookie Policy. Please keep sensitive personal data out of your inputs.
Why we hold it
We process account, run and settlement data to actually deliver the Service and honour our contract with you; payment and bookkeeping data because the contract and Lithuanian law require it; support, security, anti-fraud and product-improvement data because we have a legitimate interest in a service that works and stays safe; and marketing or non-essential cookies only where you've consented. What we never do is train our own models on your input or output.
Who sees it
To run a crew, your input goes to the model providers and connected services that run uses — whether ours or the accounts you've linked. Beyond that, only the providers working on our behalf (hosting, analytics, support, payments) touch your data. We don't sell it, and we disclose it to authorities only when the law obliges us.
Data leaving the EEA
If any data moves outside the European Economic Area, we cover the transfer with recognised safeguards — the EU Standard Contractual Clauses or an adequacy decision.
How long we keep it
Account data lives as long as your account does. Ledger and billing records stay for the period Lithuanian accounting law sets (up to ten years). Run data and logs are kept only as long as support and security genuinely need them.
Keeping it safe
We rely on encryption in transit and at rest, encrypted storage of your credentials, and access controls. Nothing is perfectly secure, but we work to protect your data and will report a breach where the law requires.
Your rights
The GDPR gives you the right to see your data, correct it, delete it, restrict or object to how it's used, take it elsewhere, and withdraw any consent. Email [email protected] and we'll respond within a month. If you're unhappy, you can complain to Lithuania's data protection authority, the VDAI (https://vdai.lrv.lt), or to the regulator where you live.
Children
Cortexly isn't meant for anyone under 18, and we don't knowingly collect their data.
Updates
We'll revise this notice as needed and update the date above; we'll tell you about anything material.
Contact
FINDEREKA UAB · Company code 308066820 · V. Nagevičiaus g. 3, LT-08237 Vilnius, Lithuania · +370 691 98783 · [email protected]