Privacy Notice
Last updated 7 August 2026
1. Who controls your data
Plagino is operated by Research Crave, which is the data controller for the personal data described here. Contact us at [email protected].
2. What we collect
- Account data — your email address and name, via our authentication provider when you sign up.
- Documents you upload — the files you submit for scanning, and the reports generated from them.
- Document fingerprints — irreversible hashes of your documents, used to check later scans on your account for cross-document similarity.
- Usage data — scan counts, timestamps, and plan status, so we can enforce plan limits.
- Billing data — handled by Creem. We receive subscription status and identifiers, never your card details.
3. Why we use it
We process your data to provide the service (performing our contract with you), to enforce plan limits and prevent abuse (our legitimate interests), and to meet legal and tax obligations.
We do not sell your personal data, and we do not use your uploaded documents to train AI models.
4. Who we share it with
We use a small number of processors to run Plagino:
- Clerk — authentication and account management.
- Cloudflare — hosting, database, and document storage.
- Creem — payment processing, as merchant of record. Creem handles your payment details under its own privacy policy.
- CORE — an open-access research index queried to find plagiarism matches. Only short extracts needed for matching are sent.
5. How long we keep it
Documents, reports, and fingerprints are retained while your account is active so your scan history and cross-document checks keep working. Delete a scan and its stored file and report are removed.
If you close your account we delete your documents and reports. Records we must keep for tax or accounting purposes are retained for as long as the law requires.
6. Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, to object to or restrict processing, and to complain to your data protection authority. Email [email protected] and we will respond within the period the law allows.
7. Security
Documents are transmitted over TLS and stored in access-controlled object storage. Access is limited to what is needed to operate the service. No system is perfectly secure, but we work to protect your data and will notify you of a breach affecting it where required.
8. International transfers
Our providers may process data outside your country, including in the United States. Where required, transfers rely on appropriate safeguards such as standard contractual clauses.
9. Changes
We may update this notice. Material changes will be announced before they take effect. See also our Terms of Service and Refund Policy.