Legal Documentation

Privacy Policy

Last Updated: September 2026

1. Overview & Service Architecture

RayCodeStar ("we", "our", or "us") operates the RayCodeStar AI Web Assistant platform at assistant.raycodestar.com. This Privacy Policy describes how we handle information collected through our public marketing website, our qualification forms, and the client website assistants we deploy.

RayCodeStar operates a multi-tenant platform where client organizations configure AI assistants to serve their website visitors. We respect data privacy and enforce strict technical isolation across organizations.

2. Information We Collect

a. Marketing Enquiries

When you submit a request through our /get-started page, we collect details including your name, organization name, business email address, WhatsApp/phone number, website URL, and information regarding your customer enquiry volume.

b. Assistant Conversation Logs

When visitors interact with an AI Web Assistant widget deployed on a client website, conversation messages, session identifiers, and timestamp metadata are stored to provide conversation review, quality monitoring, and knowledge retrieval indexing.

c. Lead Submissions

If a website visitor opts to provide contact information (such as name, email, or phone) through an assistant's lead capture prompt, those details are recorded strictly for the operating client organization.

d. Technical Telemetry & Analytics

We record performance metadata such as latency (time-to-first-token), total token consumption, model identifiers, and normalized knowledge retrieval gap queries to maintain service health and analytics.

3. Artificial Intelligence Providers

Our assistant runtime integrates with enterprise AI inference services including Cloudflare Workers AI and Google Gemini. Conversation prompts are processed through server-side APIs to generate grounded responses based on client-provided knowledge entries.

We do not use client organization knowledge or visitor conversation logs to train public foundation models without explicit consent.

4. Data Isolation & Security

All data is transmitted using encrypted HTTPS/TLS protocols. Client organization knowledge entries, assistant domain authorizations, and lead entries are isolated at the database level using Row Level Security (RLS) in our Supabase PostgreSQL architecture.

5. Contact Us

If you have questions regarding this Privacy Policy or your organization's data handling, please contact RayCodeStar:

Email: contact@raycodestar.com