Privacy Policy
Last updated: August 27, 2026 • Effective: August 27, 2026
1. Introduction
Qubience (“Company,” “we,” “us,” or “our”) respects your privacy. This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you use our quantum error correction platform, API, website, and related services (the “Service”).
We are committed to protecting the confidentiality of your quantum research data. We do not store, log, or retain your quantum circuits or measurement data.
2. Information We Collect
2.1 Account Information
When you create an account, we collect:
- Identity data: Name, email address (provided via Clerk authentication)
- Authentication data: OAuth tokens, session identifiers (managed by Clerk)
- Profile data: Plan tier, account creation date
2.2 Usage Metadata
When you use the API, we collect non-sensitive operational metadata:
- API call timestamps and endpoint accessed (run_and_correct, validate)
- Number of qubits and circuit layers (integers only, not circuit content)
- Backend target (e.g., “ibm_fez”)
- Improvement metrics (percentage values)
- Request/response status codes and latency
2.3 Payment Information
Payment processing is handled by Razorpay. We do not store credit card numbers, CVVs, or bank account details. We retain:
- Transaction IDs and order references
- Payment amounts and dates
- Plan change history
2.4 Technical Data
We automatically collect:
- IP address and approximate geolocation (country level)
- Browser type, operating system, device type
- Referring URL and pages visited
- Cookies and similar tracking technologies (see Section 7)
3. Information We Do NOT Collect
We explicitly do not collect, store, or retain:
- Quantum circuits: Your QASM circuit descriptions are processed in-memory only and immediately discarded after the response is generated
- Measurement data: Calibration counts and measurement results are not persisted
- Optimized outputs: Corrected circuits returned to you are not stored on our servers
- Research content: We have no access to your research papers, algorithms, or IP
This is a core architectural decision: circuit data never touches persistent storage (disk, database, or object storage). Processing occurs entirely in volatile memory within a single request lifecycle.
4. How We Use Your Information
We use collected information to:
- Provide the Service: Authenticate requests, enforce rate limits, track usage against plan quotas
- Improve the Service: Analyze aggregate usage patterns (not individual circuits) to optimize performance and plan features
- Billing: Process payments, generate invoices, manage subscriptions
- Communications: Send service updates, security alerts, plan change confirmations, and support responses
- Security: Detect abuse, prevent fraud, enforce Terms of Service
- Legal compliance: Meet regulatory obligations, respond to lawful requests
We do not use your data for advertising, sell data to third parties, or train machine learning models on your circuit data.
5. Data Sharing and Disclosure
We share information only with:
- Clerk (authentication provider): account and session data
- Razorpay (payment processor): billing information
- Infrastructure providers (Oracle Cloud): encrypted data in transit and at rest
- Law enforcement: only when required by valid legal process (court order, subpoena)
We do not sell, rent, or trade your personal information. We do not share circuit data with any third party; it is never stored to begin with.
6. Data Security
We implement industry-standard security measures including:
- TLS 1.3 encryption for all data in transit
- AES-256 encryption for data at rest
- API key hashing (bcrypt): we never store plaintext keys
- Rate limiting and request validation to prevent abuse
- Regular security audits and dependency scanning
- Minimal data retention: we only keep what is necessary
- Access controls: production data access limited to essential personnel
While we take every reasonable precaution, no system is 100% secure. If you discover a vulnerability, please report it to qubience@gmail.com.
7. Cookies and Tracking
We use the following types of cookies:
- Essential cookies: Authentication session tokens (required for the Service to function)
- Preference cookies: Theme, language, and dashboard layout preferences
We do not use advertising cookies, cross-site trackers, or third-party analytics that track you across the web. We may use privacy-respecting analytics (no personal identifiers) to measure page performance.
8. Data Retention
- Account data: Retained while your account is active. Deleted within 90 days of account closure upon request.
- Usage metadata: Retained for 24 months for billing reconciliation, then aggregated and anonymized.
- Payment records: Retained for 7 years as required by financial regulations.
- Circuit data: Never stored. Zero retention.
- Server logs: Retained for 30 days for security monitoring, then deleted.
9. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access: Request a copy of the personal data we hold about you
- Rectification: Correct inaccurate personal data
- Erasure: Request deletion of your personal data (“right to be forgotten”)
- Portability: Receive your data in a structured, machine-readable format
- Restriction: Request that we limit processing of your data
- Objection: Object to processing based on legitimate interests
To exercise any of these rights, contact qubience@gmail.com. We will respond within 30 days.
10. International Data Transfers
Our servers are located in India (Oracle Cloud Infrastructure, Mumbai region). If you access the Service from outside India, your data will be transferred to and processed in India. By using the Service, you consent to this transfer.
For EU/EEA users: we process data based on legitimate interest (contract performance) and will implement Standard Contractual Clauses upon request for enterprise customers.
11. Children's Privacy
The Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, contact us immediately and we will delete it.
12. Changes to This Policy
We may update this Privacy Policy periodically. Material changes will be communicated via email and a prominent notice on our website at least 30 days before taking effect. Your continued use after changes take effect constitutes acceptance.
13. Contact Us
For privacy-related inquiries:
- Privacy: qubience@gmail.com
- Security: qubience@gmail.com
- General: qubience@gmail.com