Privacy Policy

Effective: October 3, 2026 · cognix.ws/privacy

1. Controller

COGNIXSE TECNOLOGIA LTDA (CNPJ 66.902.013/0001-64), Brazil, is the controller of the personal data processed on cognix.ws. Data protection officer and privacy contact: Carlos Felipe de Paiva Perche, contact@cognix.ws.

2. What we collect and why

Optional page test: with your permission, a first-party 30-day cookie remembers the version you see. We store a random identifier, version, language, timestamps, load time and form actions. A new request may be associated with that identifier for up to 7 days after the first view. Test rows contain no email or IP, but the association with your request is pseudonymous personal data. The legal basis is consent. Leave through the footer link to erase your test row and association while keeping your access request. Test rows are deleted after 90 days; the participation preference lasts up to 30 days.

We use no advertising cookies and no third-party tracking on the site.

3. The software on your machine

COGNIX[WS] runs on your computer. Your projects, agent conversations, credentials and usage metrics stay on your machine and are not sent to us. The license check, once it exists, will send only the license key and the installed version. Third-party tools you connect (agent CLIs, AI providers) handle data under their own policies.

4. Who we share data with

We do not sell personal data. Some of these providers process data outside Brazil; transfers follow the safeguards of Brazil's LGPD (art. 33) and, for people in Europe, the GDPR, such as the providers' standard contractual clauses.

5. How long we keep it

6. Your rights

You can ask for confirmation of and access to your data, correction, anonymization or deletion, portability, information on who we share it with, and withdraw consent. Email contact@cognix.ws; we reply within 15 days. You may also complain to Brazil's data protection authority (ANPD) or your local authority.

European Union and United Kingdom (GDPR): you also have the rights to object to and to restrict processing, and you may complain to the data protection authority of your country. The legal bases are those in section 2 (consent, contract, legal obligation, legitimate interest).

California (CCPA/CPRA): we do not sell or share personal data for advertising. You can ask to know, correct or delete your data at the same address, and you will not be treated differently for doing so.

7. Security

The internal dashboard requires a verified login; one-time tokens are stored only as hashes; secrets live in the hosting provider's vault.

8. Changes

We will email material changes to this policy and publish them here with a new effective date.