Trust and privacy

Your invention is yours, and it stays private.

Handing an unprotected idea to software takes trust. This page sets out what we promise, how the service keeps each promise, and where it is written down. Each point links to the document that binds us.

workspace_premium You own what you make lock Private by default model_training Never used to train AI models fingerprint No routine staff access sell We never sell your data

Version 1.2 · Effective 29 September 2026 · Corvair Pte. Ltd. (UEN 202551453H)

Your invention

What you bring and what the service makes for you belong to you, and stay private until you choose otherwise.

workspace_premium

You own everything you make

Your uploads, and every output the service generates for you, belong to you. The licence you give us lets the software run and improve. It does not let us use your material for anything else, and it ends when your material is deleted.

lock

Private from the first keystroke

Each project has its own knowledge base, memory and file vault. Access is decided on every request by a policy engine that refuses when it cannot reach a decision. Nothing becomes public unless you publish it.

group

You decide who else gets in

Share a project with named people and remove any of them at any time. An unlisted link works like a key, not a secret: anyone holding it can open the project, so hand it out with care.

shield_person

Our duty outlives your account

We keep your material confidential and share it only in the cases the Terms list. That duty continues after the agreement ends, so closing your account does not release us from it.

handshake

Claims between you and others stay yours to settle

If an employer, school, client or collaborator also claims an idea, that is between you and them. We do not decide it or take sides. We follow the instructions of whoever controls the account or project, and any court order.

schedule

Timing is the part only you control

A patent needs your invention to be new, and public disclosure takes that away, whoever makes it. Our confidentiality cannot undo a disclosure you make yourself. The service flags moments that would put your idea in public, and helps you keep a trade-secret record when that is the better path.

Your data and AI

How AI models, our providers and our own improvement work handle what you put in.

insights

How we improve the service, and how to opt out

Our systems analyse conversations and outputs to find where the service falls short, so we can improve our own prompts, filters, rubrics and similar software. Nothing you wrote is copied into anything used for another customer. To opt out, email privacy@ipguru.ai. We act within thirty days, and your service and price do not change. Users under 18 are left out unless they are opted in.

lan

The companies behind the service are named

A short list of providers help run IPGuru, each for one job, such as Google Cloud for hosting, Google Gemini for generation, Exa for web search and citations, and TypeSafe for the Jev scoring model we are introducing. Some never receive your content. We email you at least thirty days before a new provider starts processing your content, and you can object.

sell

No selling, no advertising

We do not sell your personal data, and we do not use it for advertising or build advertising profiles. The technical records we keep to run and secure the service, such as errors, timings and usage counts, contain none of your content.

Who can see your work

Our staff, the safety systems, the people you work with, and anyone else who might ask.

fingerprint

No standing staff access, and every look is recorded

Support sees the shape of your account, not its contents. Staff can see your content in five cases only: a time-limited support grant you approve, a safety review, an investigation, a legal requirement, or a review of examples picked out by the improvement analytics unless you have opted out. Every access is recorded. Support and analytics access always appear in your activity log.

health_and_safety

Safety checks, with a narrow human review

Requests, uploads and outputs pass through layered safety systems: the AI models' own guardrails, Google Cloud Model Armor, Google Cloud Armor, and our own filters. Uploads are scanned for malware and prohibited content before they reach your project. Where the systems flag weapons development or a serious risk of harm, such as child abuse material, a trained person may review only what was flagged, and the review is recorded.

school

Schools, employers and events

If you join a class, a workplace programme or an event, the people it names, such as an instructor, reviewer or judge, can see, read-only, the work its terms make visible and anything you choose to share. The institution does not receive your other work. When a class or event ends, that access ends unless you keep it. In a workplace programme, the organisation's rules decide what happens to that work when you leave.

family_restroom

Extra protection for young people

You can sign up yourself from age fifteen. Younger users need a parent's or guardian's permission, or a school or programme that enrols them. For anyone under 18 we send no marketing, keep publishing off by default, accept no purchases, and leave them out of the improvement analytics unless they are opted in.

account_balance

Requests from authorities

When an authority asks for data, we check that the request is lawful, disclose only what it requires, and tell you, unless the law forbids it or telling you would create a risk of harm.

Security

The controls we rely on, where your data is held, and what we can and cannot claim today.

security

Built to hold a secret

Encryption in transit and at rest, multi-factor authentication, per-project isolation, authorisation that denies by default, an append-only audit ledger, malware scanning on every upload, daily backups, and a fresh sign-in for the actions that matter, such as exporting, transferring or publishing.

public

Where your data is held

We are a Singapore company, and our infrastructure is currently hosted in the United States, wherever you are. Where a transfer restriction applies, we rely on Standard Contractual Clauses. Data covered by Singapore law goes only to recipients bound to protect it to a comparable standard.

notification_important

If something goes wrong

If a data breach is likely to cause significant harm, or affects 500 or more people, we notify Singapore's Personal Data Protection Commission within three days of assessing it, and tell the people affected as soon as practicable where significant harm is likely. Where the GDPR applies, we notify the regulator within 72 hours.

verified

Independent assurance, stated plainly

A SOC 2 programme, including third-party penetration testing, begins in November 2026. No SOC 2 report exists today, and we do not claim one. Until it completes, we describe our controls rather than point to a certificate, and we will publish the position as it changes.

Your control

Taking your work with you, deleting it, paying for the service, and holding us to what we said.

download

Export at any time

Export your content whenever you like, in common formats with the files you uploaded, and for thirty days after your account closes. You do not have to ask us.

delete_forever

Delete, with a receipt

Deleting your account destroys your projects, files, outputs and conversations, including any copies held for the improvement analytics. Before you confirm, we show what will be destroyed and what the law makes us keep. Afterwards you get a receipt.

hourglass_empty

Quiet accounts are not lost

An account unused for 180 days may be archived, and one sign-in restores it. We purge only after 18 months without activity and three emails. An account holding a paid project grade or an active paid membership is never purged.

how_to_reg

Your rights over your data

You can see, correct, export and delete your data, object to how we use it, and withdraw consent. Most of this is self-service. For anything else, email privacy@ipguru.ai, and we reply within thirty days.

credit_card_off

We never see your card

From 29 September 2026, Cleverbridge GmbH sells to you as our authorised reseller and merchant of record. Your payment details go to Cleverbridge and never reach us. Its own customer terms and privacy notice, shown at checkout, cover the payment.

gavel

Terms you can hold us to

We email you at least thirty days before a change that materially affects your rights. If you do not accept it, you can cancel before it takes effect and get a refund under the Refund Policy. The price, allowances and refund terms of a purchase stay as they were when you bought, and every order records the version of the terms you accepted.

The documents

The summaries above are only summaries. The binding text is in these documents, each on its own page.

Download the full set as a PDF

All six documents in one file, for review by your lawyer, school, employer or procurement team. Version 1.2, effective 29 September 2026, with a summary of what changed. Links in the PDF go to the pages below.

download Download PDF
DocumentWhat it coversVersion
Terms of ServiceThe agreement between you and Corvair Pte. Ltd., including ownership, confidentiality and AI output1.2 · 29 Sep 2026
Privacy PolicyWhat personal data we hold, why, who we share it with, how long we keep it, and your rights1.2 · 29 Sep 2026
Acceptable Use PolicyWhat the service must not be used for, and what we do about misuse1.2 · 29 Sep 2026
Refund PolicyWhen you get money back, and how to ask1.2 · 29 Sep 2026
Market SchedulesLocal rules and contacts for each market1.2 · 29 Sep 2026
Data processingSecurity measures, and data processing agreements for organisations1.2 · 29 Sep 2026

Also useful: what we do and don't do, in plain terms, and the FAQ.

Prove the idea without giving it away.

Work on a real invention, privately, before you tell anyone anything.

auto_awesome Start free
Private by default. You own it. Never used to train models.