principiamo

Privacy notice

How Principiamo uses and protects your information.

Astrasum, Inc. operates Principiamo. This notice explains what the current service keeps, why it is used, which providers receive it, how long it remains, and the choices available to you.

Information Principiamo keeps

Account information includes your email address, optional name, verification and account dates, account status, and recent sign-in information. Astrasum stores a one-way Argon2id password hash, not your readable password.

Authentication and security records include short-lived verification and recovery records, server-side sessions, and hashed identifiers used to limit abusive requests. Your browser receives necessary host-only, HTTP-only cookies for authentication. Principiamo does not currently use advertising cookies or third-party tracking analytics.

Product history includes the principles, situations, intended results, limits, decisions, results, reflections, comparisons, corrections, and other text you or the agent place in your work. It also includes titles, timestamps, model usage, cost, latency, and errors needed to operate the service.

If you create a sharing link, Principiamo keeps a fixed read-only copy of the parts shown to you when sharing: its title, situation, chosen principles, decisions, results, and reflections. The copy does not include your account identity, billing, or private work added after it was created.

Billing records include your plan, billing interval, Stripe identifiers, paid periods, monthly agent use, cancellation state, and refund records. Principiamo does not store full payment-card details or the billing address entered in Stripe.

Why this information is used

Astrasum uses it to:

  • create and secure your Astrasum sign-in and Principiamo account;
  • preserve the history of your work and produce agent responses and reflections;
  • administer plans, monthly agent use, taxes, cancellations, and refunds;
  • prevent duplicate free experiences and abusive requests; and
  • operate, monitor, recover, support, and protect the service or meet legal obligations.

The current service does not sell personal information, use private work for advertising, or use it to train a Principiamo model.

Where privacy law requires a legal basis, Astrasum processes account, product, and billing information to perform its agreement with you; security and service records for its legitimate interests in operating and protecting Principiamo; and financial or other records where needed to meet a legal obligation.

Providers and processing

Amazon Web Services hosts the public application, encrypted database, recovery copies, and operational logs in the United States. Amazon SES receives your email address and a signup, email-change, security-notice, or password-recovery message when it delivers account email.

Stripe receives the account and transaction information needed to host checkout, collect billing details and tax, issue invoices and refunds, and manage subscriptions. Stripe keeps information under its own privacy terms and legal obligations.

Your private work is stored in your Principiamo account and shared with Amazon Bedrock, running OpenAI GPT-5.6 Luna when Principiamo needs an agent response. Principiamo sends the instructions and relevant starting point and history needed for that response, rather than your entire account.

The US inference profile may process private text in US regions. AWS normally does not retain model input or output, but GPT-5.6 traffic flagged by automated classifiers may be retained for up to 30 days for automated abuse detection.

Principiamo is operated from the United States. If you use it elsewhere, your information is transferred to and processed in the United States, where privacy rules may differ from those where you live.

Administration and operational access

Principiamo’s administration portal shows account, subscription, monthly agent use, service-use, cost, and reliability information. It does not expose your situations, principles, decisions, results, reflections, comparisons, agent text, or downloaded history. Authorised infrastructure operators may access service systems or recovery material when necessary for security, support, recovery, or legal compliance.

Sessions and security

Production traffic uses HTTPS. The database and recovery copies are encrypted, and the production database is private. Session cookies are opaque and only token hashes are stored on the server.

A session ends after seven days without activity or after thirty days in total. Signing out revokes the current session. Changing or resetting your password, or changing your verified sign-in email, revokes earlier sessions and creates one replacement session for the browser making the change.

Signup, email-change, and recovery challenges expire after ten minutes. No security system can guarantee that information will never be lost, misused, or accessed without authority.

Retention and deletion

Live account and product records remain until you delete the relevant work or your account. Operational application and database logs are kept for thirty days. Ordinary encrypted database recovery points roll through a fourteen-day recovery window, so deleting live data does not rewrite an existing recovery point.

Account deletion first resolves any subscription cancellation and annual refund, then removes the live Astrasum identity, email and name, password hash, sessions, Principiamo account, product history, billing account, monthly agent-use, and usage records. If a required billing step cannot be confirmed, deletion stops so paid time or a refund is not lost.

After live deletion, Astrasum keeps only:

  • keyed one-way records for verified emails linked to a redeemed account, used to prevent reuse of the included experience and containing no readable email or authored history;
  • limited payment, Stripe event, refund, and reconciliation records required for financial and legal purposes; and
  • the time and type of an administrative action, with the deleted account identifier and free-text reason removed.

Stripe may independently retain transaction information. Ordinary recovery points age out within fourteen days. If the production database itself is removed, a final encrypted snapshot and remaining automated backups may stay under restricted operator control until deliberately disposed of; they are not a user-visible archive.

Your choices

From your account you can change your name, verified sign-in email, or password; sign out this browser; download a JSON copy of your complete product history; delete complete work; manage or cancel billing; and permanently delete the live account and its history. An account that alone administers Astrasum must transfer that role to another verified account first. The download does not include password material, session tokens, billing-provider records, administrative records, or every security record.

Sharing is off until you create a link. Anyone who has that link can read and copy its fixed snapshot without an account. You can replace the snapshot or stop sharing at any time; deleting the work or account also removes access. Stopping the link cannot recall copies another person already made.

Depending on where you live, law may let you request access, correction, deletion, or portability; object to or restrict some processing; withdraw consent where processing depends on consent; or complain to your local privacy authority. Astrasum may need to verify that a request concerns your account. Principiamo does not sell or share personal information for cross-context behavioural advertising.

Age, changes, and contact

Principiamo is for people aged 18 or older. Astrasum may update this notice as the service or its providers change; the last-updated date above identifies the current version.

Privacy questions and requests can be sent to contact@astrasum.com.