Privacy policy

Last updated: April 24, 2026. The German version is legally authoritative.

1. Controller

The controller responsible for data processing on this website is:

Baudis AI UG (haftungsbeschränkt)

Paul-Zobel-Straße 8d

10367 Berlin

Germany

Email: info@pricemirror.ai

2. Overview of processing

Pricemirror AI is an AI-powered price comparison tool. We process personal data only where required for operation, security, billing, support, and the functions selected by the user. We do not sell personal data, do not use marketing cookies, and do not use customer content to train our own AI models.

3. Data we process

3.1 Registration, login, and account

  • Email address and internal user ID
  • Password in hashed form where password login is used
  • Name, email address, and provider ID when Google or Microsoft login is used
  • Session information and short-lived handover codes for the auth portal
  • Account settings, language, theme, and table preferences

3.2 Use of the app

  • Uploaded offer documents, especially PDF, Excel, and Word files
  • Texts, tables, prices, line items, and metadata extracted from those documents
  • Generated and saved price comparison tables, comparison states, and configuration
  • Optional company logos, custom instructions, and display settings
  • Usage counters, upload limits, and technical audit information

3.3 Contact, support, and enterprise requests

  • Name, email address, subject, and message from contact and support forms
  • Company, phone number, team size, and request details for enterprise inquiries
  • Invitation email addresses, roles, license references, and inviting users
  • Technical form and abuse-prevention data, including timestamps and IP-based rate limits

3.4 Billing and subscriptions

  • Email address for checkout and invoice reference
  • Stripe customer ID, subscription ID, plan, status, and billing periods
  • Payment, invoice, and tax data where processed through Stripe
  • No storage of full credit card data in our own database

3.5 Technical data

  • IP address, browser type, operating system, device information, and access time
  • Requested pages, status codes, error logs, and security events
  • Routing and provider metadata for AI requests, such as model, provider, and region

4. Purposes and legal bases

We process data to provide the application, authenticate users, process uploaded documents, generate price comparison tables, provide exports, administer subscriptions, answer support requests, secure the service, and comply with legal obligations. The legal bases include contract performance, legitimate interests, consent where required, and statutory obligations under the GDPR.

5. AI processing and OCR

Uploaded documents may be processed by OCR and AI providers to extract text, match line items, and generate price comparison tables. Depending on user settings, requests may be routed through EU-only processing paths where technically available. Customer content is not used to train our own AI models.

6. Hosting, processors, and recipients

We use technical service providers for hosting, authentication, storage, payment processing, email delivery, analytics required for operation, AI/OCR processing, and security. These providers process data only as required for the service and, where applicable, under data processing agreements.

7. International transfers

Where providers process data outside the European Economic Area, we use appropriate safeguards such as EU Standard Contractual Clauses, adequacy decisions, or comparable legal mechanisms. EU-only mode restricts processing paths where available.

8. Cookies and local storage

We use technically necessary cookies and local storage for authentication, session handling, language, theme, table preferences, security, and abuse prevention. We do not use marketing cookies.

9. Retention

We retain personal data only for as long as needed for the respective purpose, user account, contractual relationship, legal retention duties, security documentation, or dispute handling. Users can delete accounts and content where the app provides deletion functions.

10. Your rights

Subject to legal requirements, you have rights of access, rectification, erasure, restriction of processing, data portability, objection, and withdrawal of consent. You also have the right to lodge a complaint with a data protection supervisory authority.

11. Security

We use technical and organizational measures to protect personal data, including access controls, encryption in transit, storage safeguards, rate limits, audit logs, and provider-side security controls.

12. Contact

For privacy questions or requests, contact us at info@pricemirror.ai.

13. Changes to this privacy policy

We update this privacy policy when services, providers, technical processes, or legal requirements change. The current version is available on this page.

Privacy policy – Pricemirror AI