Privacy policy.

At LoxeAI , we prioritize the security and confidentiality of your data. This Privacy Policy explains how we handle information collected through our AI audit preparation platform, LoxeAI. By using LoxeAI, you consent to these practices.

We collect only essential data to operate the service: your name, email, company details, and financial information you provide (General Ledger codes, transaction records, variance reports, and documentation like Excel files or Slack threads). We also log usage patterns (e.g., workflows activated or reports generated) to improve functionality. Sensitive credentials (bank logins, ERP passwords) are never stored.

Your data is used strictly to deliver and enhance LoxeAI’s core functions: automating audit preparation (e.g., GL reconciliations or variance analysis), generating audit-ready outputs (PDF/Excel with embedded trails), and communicating service updates. We never sell, rent, or share your data for advertising or third-party marketing.

Security is fundamental to our mission. All data is encrypted in transit (TLS 1.3+) and at rest (AES-256). Access is restricted through role-based controls, and we host data on enterprise-grade cloud infrastructure (AWS/GCP). While we are actively targeting SOC 2 Type II compliance, we currently advise against uploading highly confidential data (e.g., SSNs) until certification is complete.

Third-party sharing is minimal: data may be shared with your auditors if you enable collaboration features, or with essential subprocessors (e.g., cloud hosting providers), all contractually bound to equivalent security standards. We prohibit sharing with advertisers, brokers, or unrelated entities.

You retain full control: access, correct, or export data via your dashboard; opt out of non-essential emails; or delete your account entirely (Settings → Delete Account), which erases all financial data within 72 hours. Anonymized backups are retained for 30 days.

We will notify you via email or in-app alerts of material policy changes. Continued use implies acceptance. For questions, data requests, or breach reports, contact us at loxaiautomations@gmail.com or directly at arjavmehta08@gmail.com. We respond within 48 hours.