The short version: Your data lives encrypted on our managed AWS infrastructure on your own private volume, with encryption keys unique to your instance (customer-managed keys on the Business roadmap). Your instance runs in the AWS region matched to your country: US, EU, or India. On InventDB SOAR, AI requests route through the InventDB AI Gateway to Claude models on Amazon Bedrock in that same region, with prompt content never used to train models. InventDB Serverless has no built-in AI, and your data is never sent to any AI model by us; any AI is an external agent you connect over MCP. We log only what we need to bill you (token counts, costs) plus an audit log you can query yourself. You own your data; you can export it any time.
Scope & the two products
InventDB Software LLP operates two hosted, cloud-only products. InventDB SOAR is the AI-driven business platform with a bundled AI model. InventDB Serverless is a database with no built-in AI; it exposes MCP, SQL, and REST surfaces so external AI agents you choose can connect to it. This policy covers both. Where a practice applies to only one product, we say so. There is no locally-installed software (both run on our managed infrastructure), so this policy, together with our Terms of Service, governs the service.
Data we collect
Account information
Email, name, billing address, payment method (processed by Razorpay; we never see card numbers).
Service usage telemetry
Login times, MCP token issuance, and, on InventDB SOAR, AI turn count and token usage (for billing line-item accounting). Error logs without record content.
Your data in InventDB
Whatever you import or create in your instance. It is encrypted at rest with your encryption key, and we do not use it for any purpose other than serving your queries.
How AI requests are routed
This section applies to InventDB SOAR only. InventDB Serverless has no built-in AI, and it never sends your data to any AI model; any AI is an external agent you connect over MCP, bounded by the caller's role and row rules, and governed by that agent's own provider.
When you use InventDB SOAR, the InventDB AI Gateway routes your prompts (and the records, schemas, or document text needed to answer them) from your instance to Claude models running on Amazon Bedrock in your instance's data region. Specifically:
- The Gateway calls Amazon Bedrock in your data region (US, EU, or global profile). Bedrock does not share prompt content with the model provider and your data is not used to train any model.
- We log token counts and costs (input fresh, input cached, output) for billing transparency. We do not log the content of your prompts or AI responses.
- Amazon Bedrock processes the inference inside AWS and returns the response; prompt content is not retained beyond the request lifetime.
- BYOK (bring your own LLM key) is not supported on InventDB SOAR. All bundled AI usage routes through our Gateway so we can guarantee model quality.
Encryption keys
Today: what ships
A unique AES-256-GCM encryption key protects each instance from the moment it is provisioned. On Personal tiers the key is per-user; on Business tiers the key is per-instance. The key lives in the instance configuration (optionally derived from a passphrase via Argon2id). You can rotate it from the admin console. We hold the running key in memory only as long as needed to serve your queries.
Roadmap: AWS KMS-backed CMEK for Business
Customer-Managed Encryption Keys backed by AWS KMS are on the Business roadmap: your encryption keys will live in your AWS account, with every key access audited via CloudTrail, and revocation cuts our access without our intervention. We'll update this section when KMS integration ships.
Your rights
- Access: request a copy of all data we hold about you
- Export: full data export as standard SQL and open JSON at any time
- Deletion: request deletion of your account and all associated data; we honor within 30 days
- Correction: correct inaccurate personal information
- Portability: your data is yours; the export gives you a portable copy
- GDPR / CCPA / DPDP rights apply where you are a resident of the relevant jurisdiction
Data retention
Active subscription: data retained as long as your subscription is active. After cancellation: a 30-day grace period during which you can export, then complete deletion.
Security
AES-256-GCM encryption at rest with per-instance keys (rotatable from the admin console), on your own private encrypted volume and process. TLS 1.3 in transit. An audit log on every read, write, and access (queryable via the audit_log MCP tool). On the roadmap: AWS KMS-backed CMEK for Business plans and third-party penetration testing. We do not currently offer a HIPAA BAA.
International transfers
Your instance's region is pinned automatically by your signup country: US customers run in a US AWS region, EU customers in an EU region, and India plus all other countries in AWS Mumbai (ap-south-1). AI inference for InventDB SOAR runs on Amazon Bedrock in that same geography, so your data and your AI stay in-region.
Children's privacy
Our services are not directed to individuals under 16. We do not knowingly collect data from children. If you believe we have, contact us and we will delete it.
Changes
We may update this policy with at least 30 days' prior notice via email to subscribers.
Contact
For privacy questions, contact contact@inventdb.com.
See also our Terms of Service. Back to top ↑