1. Data controller
INVERSO HUB S.R.L.
Registered office: Autonomous City of Buenos Aires, Argentina
CUIT (Argentine tax ID): registration with AFIP in progress
DPO contact: dpo@furx.cloud
INVERSO HUB S.R.L. acts as the data controllerwith respect to the User's account and billing data.
INVERSO HUB S.R.L. does NOT act as a processor or controllerof the User's prompts, code, LLM responses, or API keys — that data travels directly from the User's device to the LLM provider the User has chosen, without passing through INVERSO HUB S.R.L. infrastructure.
2. Data we collect
2.1 Account data (minimum necessary)
- Email used for signup/contact. Source: you provide it in the Paddle checkout flow.
- Billing data: name, address, card details (processed by Paddle, not stored by us), country (for tax calculation).
- Active plan and subscription status.
- License token issued by us (linked to the email, the unlocked features, and the device count).
2.2 Technical data (opt-in telemetry, default OFF)
- Sentry crash reports: stack trace + platform + version. PII-scrubbed (no paths, no env vars, no clipboard). Can be enabled manually from Settings → Telemetry.
- Audit metadata cloud sync (only if enabled and on a Pro+ plan): timestamps, event types, LLM model name. Never the prompt/response body.
2.3 Website analytics data
- Self-hosted Plausible with consent gating: page views, referrer, screen size, browser. Cookie-less, no fingerprinting, IP addresses anonymized immediately.
- Cloudflare server access logs: IP, user agent, URL, status. Retained for 30 days.
3. Data we NEVER collect
- Prompts sent to LLM providers.
- Responses received from LLM providers.
- API keys for LLM providers (they live in the User's OS keychain).
- Source code or the contents of the User's files.
- The User's local audit log (it lives in
~/.furx/furx.db; the opt-in cloud sync transmits metadata only, never bodies). - Clipboard contents.
- Biometric data, precise location, or any GDPR Art. 9 special category of data.
4. Legal bases for processing (GDPR Art. 6)
| Activity | GDPR legal basis |
|---|---|
| Provision of the Pro/Team/Enterprise subscription | Art. 6(1)(b) — performance of a contract |
| Billing processing via Paddle | Art. 6(1)(b) — performance of a contract |
| Compliance with tax/accounting obligations | Art. 6(1)(c) — legal obligation |
| Newsletter (opt-in) | Art. 6(1)(a) — consent |
| Crash telemetry (opt-in) | Art. 6(1)(a) — consent |
| Platform security, fraud prevention | Art. 6(1)(f) — legitimate interest |
5. Retention periods
- Email + account: for as long as the subscription is active + 30 days after cancellation. Deletable on request via dpo@.
- Billing data: 7 years (legal obligation — AFIP Argentina + EU VAT).
- Crash telemetry: 90 days.
- Audit metadata cloud sync: 30 days (Pro), 90 days (Team), configurable (Enterprise), 3 years (Compliance Pack).
- Cloudflare logs: 30 days.
6. Subprocessors
A public, up-to-date list is available at subprocessors. Change notifications are provided via RSS and by email to Team/Enterprise customers with 30 days' advance notice.
7. International transfers
Your data may be transferred to the United States, the EU, and the United Kingdom by our subprocessors (Paddle UK, Cloudflare US/global, GitHub US, Better Stack EU). For transfers from the EEA we apply Standard Contractual Clauses (SCCs) 2021/914, Module 2 controller → processor.
8. Your rights · GDPR (EU)
If you reside in the EU/EEA, you have the right to:
- Access (Art. 15): obtain confirmation and a copy of your data.
- Rectification (Art. 16): correct inaccurate data.
- Erasure (Art. 17, "right to be forgotten"): have your data deleted.
- Restriction of processing (Art. 18).
- Data portability (Art. 20): export in structured JSON.
- Object (Art. 21): to processing based on legitimate interest.
- Not to be subject to automated decision-making (Art. 22).
- Withdraw consent at any time without affecting the lawfulness of processing carried out beforehand.
- Lodge a complaint with a supervisory authority (your national DPA).
To exercise these rights: write to dpo@furx.cloud and identify yourself. Response within 30 days (extendable to 60 days with documented justification, Art. 12(3)).
9. Your rights · Law 25,326 (Argentina)
If you reside in Argentina, you have the right to:
- Access (Art. 14): free of charge once every 6 months, response within 10 calendar days.
- Rectification, update, or deletion (Art. 16): response within 5 business days.
- Lodge a complaint with the Agencia de Acceso a la Información Pública (AAIP) (www.argentina.gob.ar/aaip).
Procedure: written request (email to dpo@furx.cloud) with proof of identity (DNI or equivalent). Response format: PDF or exportable JSON, at the data subject's choice.
10. Your rights · CCPA / CPRA (California, US)
If you reside in California:
- Right to know what personal data we collect and how we use it.
- Right to deletion.
- Right to opt out of sale (we do not sell personal data).
- Right to non-discrimination for exercising these rights.
11. Security
Key controls (details in the Security Policy):
- TLS 1.3 on all endpoints.
- Encryption at rest: AES-256.
- License tokens signed with HMAC-SHA256.
- Magic links with a 10-minute expiry, single-use.
- Rate limiting (3/min/IP) on sensitive endpoints via Cloudflare.
- Daily encrypted backups, retained for 30 days.
- Breach notification within 72 hours to the supervisory authority and affected individuals (GDPR Art. 33/34).
12. Cookies
Details in the Cookie Policy. By default, only strictly necessary cookies are used. Measurement (Plausible) is opt-in.
13. Minors
Furx is not directed at minors. We do not provide the service to:
- Anyone under 16 years of age (GDPR Art. 8(1) — digital age of consent).
- Anyone under 13 years of age in the United States (COPPA).
14. Changes to this policy
Material changes will be announced 30 days in advance by email + banner. The version history is available at github.com/hernaninverso/furx/tree/main/legal.
15. Contact
DPO / Privacy: dpo@furx.cloud
Security incidents: security@furx.cloud (PGP key at /.well-known/security.txt)