Jasnah Inc., d/b/a NEAR AI, a Delaware corporation, and its subsidiaries and affiliates (“NEAR AI” “we,” “us,” or “our”) respect your privacy.
This Privacy Policy (“Privacy Policy” or “Policy”) explains how we collect, use, disclose, and store Personal Data about individuals (“you” or “User”) who interact with our websites, including www.near.ai, https://cloud.near.ai/, https://agent.near.ai/, and https://www.ironclaw.com/ (collectively the “Websites”), and our products, materials, and services provided through or on those sites (collectively, the “Services”).
This Privacy Policy applies to our activities as a “data controller” or “business,” as such terms are defined in applicable law. If you are an end-user of our customer and have questions about how we process information on behalf of that customer, please reach out directly to that customer.
Contents
1.Scope and Audience2.Information We Collect3.How We Use Personal Data4.Legal Bases for Collecting and Processing Personal Data5.Data Retention6.How We Disclose Personal Data7.Securing Your Personal Data8.Your Rights9.Additional Information for California Residents10.International Transfers of Personal Data11.Minors12.Google User Data13.Third-Party Links and Services14.Changes to This Privacy Policy15.Contact InformationThis Policy describes how we collect, use, store, and disclose Personal Data from individuals who interact with the Services, including:
By using the Services, you accept and agree to be bound by this Privacy Policy and the applicable Terms of Service. If you do not agree, you must not access or use the Services.
Our public marketing website (www.near.ai) may use analytics and advertising-related tracking technologies described in Section 4.
NEAR AI may collect certain Personal Data directly from you, as well as from other available sources, to the extent relevant and permitted by applicable local law. The categories of Personal Data we collect and process include the following:
| Category | What We Collect |
|---|---|
| Account Information | Email address; OAuth authentication proofs (access/refresh tokens, signature nonces); NEAR wallet authentication credentials; GitHub OAuth tokens. |
| Business Contact Information | Business addresses, phone numbers, email addresses, and contact persons' names provided for account administration. |
| Support & Communications | Name, email, and the contents of messages you send us (email, Discord, in-app chat). |
| Usage Data | Information in connection with your use of the Services (such as information you provide us or systems you connect to in relation to your use of Services, such as Ironclaw). |
| Commercial and Billing Data | Information in connection with products/services you purchase through our Services, such as the specific Services and subscription plan you use. (We do not receive access to your payment information. Payment information is processed through our payment processor, Stripe.) |
| Website Analytics Data | IP address (approximate location); pages viewed; timestamps and duration; referring URLs; device and browser type; operating system; cookie identifiers; pixel/tag events (page views, conversions, form submissions). |
Our infrastructure providers may process limited network metadata (e.g., IP addresses) to deliver the service.
We use analytics, advertising, and online tracking technologies on www.near.ai to understand website usage and, where enabled, to measure the effectiveness of our marketing campaigns. These technologies may include cookies, SDKs, pixels, and tags (collectively, “Tracking Technologies”).
As of the “Last Updated” date, the Tracking Technologies used on www.near.ai include:
These providers may collect or receive information such as page views, referring URLs, timestamps, device/browser characteristics, IP address (or derived approximate location), and event data. They may use cookies or similar identifiers to recognise your browser or device over time. Additionally, our advertising partners help us provide you with content we think will be of interest to you on our Services and across the Internet.
Where required by law (e.g., in the UK/EEA), we will obtain your consent before placing non-essential cookies or enabling advertising-related pixels. You can manage your preferences via our cookie banner or by adjusting browser settings. For more information, see our Cookie Policy.
Do Not Track: There is no uniform standard for responding to Do Not Track signals. At this time, the Services do not function differently based on a user's Do Not Track signal.
We use the personal and usage information we collect for the following purposes:
We may de-identify information we collect so the information cannot reasonably identify you or your device, or we may collect information that is already in de-identified form. Our use and disclosure of de-identified information is not subject to any restrictions under this Privacy Policy, and we may use and disclose it to others for any purpose, without limitation.
The laws in certain jurisdictions (such as those in the European Union and United Kingdom), require us to inform you of the “legal bases” on which we process your information.
We retain Personal Data only for as long as needed to provide and secure the Services, or as required to comply with law. When data is no longer necessary, we delete, de-identify, or aggregate it in accordance with our retention procedures, unless a particular retention period is required by law or a valid legal hold applies.
If you have an account with us, we retain your information while the account is active and as needed to perform our contractual obligations, deliver the Services, comply with legal obligations, resolve disputes, preserve legal rights, and enforce our agreements.
How we disclose Personal Data depends on the product you use and your relationship with us, and may include:
We implement technical and organisational measures appropriate to the risk level of each product and service, including encryption in transit and at rest, access controls, continuous monitoring, and incident-response procedures. Where we use third-party service providers or model APIs, they operate under written data-processing terms and are subject to appropriate security and privacy due diligence.
No method of transmitting data over the internet or storing data is completely secure. While we work to protect your information, you acknowledge that you provide Personal Data at your own risk.
Depending on your location, you may have rights to access, correct, delete, or port your data, and to object to or restrict certain processing.
Your local laws may permit you to request that we: provide access to and/or a copy of certain information we hold about you; update information which is out of date or incorrect; delete certain information; restrict or object to the way that we process and disclose certain of your information; transfer your information, where technically feasible; prevent the processing of your information for direct-marketing purposes; or opt out of automated processing that results in legal or similarly significant effects.
You may exercise your rights through in-product settings where available, or by emailing us at privacy@near.ai or legal@near.ai.
To opt out of marketing communications, follow the unsubscribe instructions in the marketing communication or email us. We may still send you non-marketing communications (e.g., service announcements, security notices, transactional emails).
Depending on your jurisdiction, you may have the right to opt out of “sales” of your personal information and/or “sharing” or processing of your personal information for targeted advertising.
If you are located in the European Economic Area (EEA), the United Kingdom (UK), or another jurisdiction that grants similar privacy rights, you may have additional rights under applicable data protection laws, including the GDPR. These may include the right to withdraw consent, the right to object, the right of access, the right to rectification, the right to erasure, the right to data portability, and the right to make a formal complaint to your competent data protection authority.
This section describes how we collect, use, and share Personal Information of California residents in our capacity as a “Business” under the California Consumer Privacy Act (“CCPA”), as amended by the California Privacy Rights Act (“CPRA”).
| Category of Personal Information | How We Use This Information | Sold or Shared? |
|---|---|---|
| Contact information (e.g., email address) | Provide Services; communicate; personalise; analyse and improve Services; marketing; security/fraud prevention; legal compliance; business transfers | Yes |
| Device and online information (e.g., IP address, browsing history, usage information) | Provide Services; communicate; personalise; analyse and improve Services; marketing; security/fraud prevention; legal compliance; business transfers | Yes |
| Commercial information (e.g., transactions and subscription plans) | Provide Services; analyse and improve Services; security/fraud prevention; legal compliance; business transfers | Yes |
| Account credentials | Provide Services; analyse and improve Services; security/fraud prevention; legal compliance; business transfers | No sale/share |
| Information in connection with your use of the Services | Provide Services; analyse and improve Services; security/fraud prevention; legal compliance; business transfers | No sale/share |
CCPA Rights: As a California resident, you have the following rights: the right to know, the right to delete, the right to correct, the right to opt out of sale or sharing, the right to limit use of sensitive personal information, and the right to non-discrimination. You can submit a request to legal@near.ai or privacy@near.ai.
Sale/Sharing of Personal Information: You have the right to opt out of the sharing/sale of your personal information for purposes of online analytics and advertising by clicking the “Your Privacy Choices” link on our website footer. Over the last 12 months, we have not knowingly “sold” or “shared” personal information of individuals under 16.
Your Personal Data may be transferred outside your home country, including outside the European Economic Area (EEA), Switzerland, and the United Kingdom, for purposes described in this Policy. Whenever we transfer your Personal Data out of these jurisdictions, we will endeavour to ensure a similar degree of protection by implementing at least one of the following safeguards:
Please contact us if you want further information on the specific mechanism used when transferring your Personal Data outside your jurisdiction.
All Services are intended solely for individuals aged 18 or older. By accessing or using any of the Services, you represent and warrant that you are at least 18 years of age. We do not permit use of the Services by anyone under 18, regardless of parental consent.
We do not knowingly collect Personal Data from individuals under 18 in connection with our Services. If we become aware that we have inadvertently collected such data, we will take reasonable steps to delete it promptly.
When you connect Google services to NEAR AI / IronClaw, we access Google user data only as needed to perform actions you explicitly request through the AI assistant. This section describes how we handle data received from Google APIs, in compliance with the Google API Services User Data Policy, including the Limited Use requirements.
You choose which Google services to connect. No Google data is accessed until you explicitly authorize a specific integration. Depending on which integrations you enable, we may access the following:
Google user data is accessed solely to execute actions you initiate through the AI assistant. Retrieved data is passed to the language model within your conversation context to generate responses and carry out your instructions. We do not use Google user data to train, retrain, or fine-tune any AI models.
Google user data is not shared with any third parties. Data flows only between your Google account, the Google API, and your NEAR AI / IronClaw instance. No Google user data is transmitted to analytics providers, advertisers, or any other external services.
OAuth access and refresh tokens are encrypted at rest using AES-256-GCM encryption. Tokens are injected at runtime through a sandboxed execution boundary. All communication with Google APIs occurs over HTTPS/TLS. Google API responses are processed in-memory within your active conversation session and are not persisted to disk or database unless you explicitly choose to save information to your workspace.
Google API responses are not automatically stored beyond your active session. OAuth tokens persist in encrypted storage solely to maintain your connection across sessions. You may revoke NEAR AI's access to your Google account at any time through your Google Account permissions page, which immediately invalidates all stored tokens. You may also request deletion of all stored credentials by contacting us at privacy@near.ai.
NEAR AI's use and transfer to any other app of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
The Websites may contain links to third-party websites or services that are not operated or controlled by NEAR AI. We are not responsible for the privacy practices, content, or policies of any third-party sites. We encourage you to review the privacy policies of any such third parties before providing them with your Personal Data.
This Privacy Policy may change from time to time. When changes are made, we will post a revised version on our Website with the last updated date at the top of this page. Your continued use of the Services after we make changes is deemed to be acceptance of those changes.
To ask questions or comment about this Privacy Policy and our privacy practices, please contact us at: