
Legal · last updated 24 September 2026
Privacy
CICERRO is a legal-research tool operated by Triptych Technologies LLP, currently in private testing. It searches the published judgments of the Supreme Court of India and the Calcutta High Court, and the official text of the Acts in its record. This page says plainly what it collects and who else sees it.
What we collect
Your account. Your email address. Your password is held by our authentication provider as a salted hash and is never visible to us. There is no third-party sign-in.
What you type and upload. The facts you describe, the questions you ask, the matters you create and any documents you attach. Assume that anything you paste into the product is stored.
Requests on this website. If you request access or write to us, the details you enter in that form and the time you sent it.
Usage records. A timestamped count of the analyses you run, so that allowances can be enforced and abuse spotted. No advertising trackers, no third-party analytics, no cookies beyond the ones that keep you signed in and remember your light/dark preference.
Where it is stored
In a database hosted in Mumbai (AWS ap-south-1) — your data does not leave India at rest. Rows are scoped to your account. That scoping is enforced in the application on every request today; database-level row policies are the next phase of the same work and this page will say so when they are in place.
Who processes it
To answer a question, the text of that question, the passages retrieved for it and any document you attached are sent to two processors outside India: OpenAI (to convert text into search vectors and, for voice intake, to transcribe) and Anthropic (to draft the analysis). Both are used under their commercial API terms, under which submitted content is not used to train their models.
We do not yet have zero-retention agreements with either processor. Until we do, their standard retention terms apply to what is sent to them, and this policy does not promise otherwise. This is why we ask you not to upload confidential client material during the beta.
Nothing is sold, and nothing is shared with anyone else — no advertisers, no data brokers, no other users.
Client confidentiality
This is a research tool in private testing, not a secure client file. If a matter is privileged or sensitive, describe the legal question with the facts anonymised. That is good practice with any cloud tool, and it is our explicit advice here.
Keeping and deleting
Your matters and documents are kept until you delete them or ask us to close your account. A document you attach is deleted from storage once its extract is indexed; the extract stays in your matter. Email gauravkguha@gmail.com from your registered address and we will delete your account and everything attached to it within 30 days, and confirm when it is done. You can ask for a copy of your data the same way.
Security, and honesty about it
Traffic is encrypted in transit, data is encrypted at rest, access is restricted to the operator, and every request is authenticated. What is and is not yet in place is set out on the Security & data page. No system is perfect; if data is ever exposed we will tell affected users directly rather than quietly.
Changes and contact
If this policy changes materially, testers are emailed before it takes effect. Questions, complaints or deletion requests: gauravkguha@gmail.com.