Your privacy. Our responsibility.
1. About This Policy
Risos AI ("we", "the platform") is a product of PT Riset Sinergi Sosial — a research entity registered with the Indonesian Ministry of Law (Kemenkumham RI, AHU-050449.AH.01.30). This document explains how we collect, process, store, and protect your personal data when you use our service via web, WhatsApp, or Telegram.
We commit to data minimisation — we only collect what is genuinely needed to operate the service, and we do not sell your data to third parties.
2. Data We Collect
2.1 Account Identity
- Account ID — derived from Google email, WhatsApp number, or Telegram ID
- Display name, profile photo (if uploaded), bio, institution, role (S1/S2/S3/Lecturer/Researcher), research field
- Phone number (optional, for reminders)
- Email address (for Google sign-in)
2.2 Research Content
- Files you upload: datasets (.xlsx, .csv), transcripts (.docx, .pdf, .txt), interview audio (.mp3, .m4a), images
- Analysis metadata: research title, statistical test type, variables, results
- Research projects (Journey): title, type, target date, milestones, team members
- Messages in Consultation (advisor-student threads)
- Conversation history with Risos AI Chat
2.3 Usage Data
- Login history: IP address, user agent (browser/device), timestamp, method (Google/WhatsApp/Telegram), success/fail status
- Platform activity: pages visited, features used
- Preferences: theme (dark/light), language, density, enabled notifications
2.4 Payment Data
Risos AI does not store your credit/debit card numbers. Payments are processed by third-party gateways: Tripay (QRIS) and NowPayments (crypto). We only store transaction reference, amount, status, and timestamp.
3. Processing Purposes
- Service operation: running statistical analysis, QDA, AI chat, journey tracking, team consultation features
- Personalisation: AI Persona tailors responses to your research background
- Security: detecting suspicious logins, preventing abuse
- Communication: sending notifications per your settings
- Service improvement: anonymous aggregates to understand usage patterns
- Legal compliance: retaining logs as required by applicable regulation
4. Legal Basis
Processing of your data is based on:
- Consent — given when you sign up and enable specific features (notifications, AI Persona)
- Contract performance — we must process data to provide the service you request
- Legitimate interests — platform security, fraud detection, service quality improvement
- Legal obligations — Indonesian Personal Data Protection Law (UU PDP No. 27/2022) and derivative regulations
5. Data Sharing
We do not sell your data. Sharing is limited to:
- Third-party AI providers — Content you send to chat, as well as excerpts of the transcripts you analyse, is processed by external AI providers under business-tier contracts that prohibit training on your data. Provider names, the data that reaches them, and their processing locations are listed openly on our Sub-processors page.
- Payment gateways — Tripay (QRIS), NowPayments (crypto) for transaction processing.
- Journey team members — when you invite an advisor/member to a research project, they can see content you share within that project.
- Law enforcement — only with valid legal orders from competent Indonesian authorities.
6. Storage & Security
Data is stored in our PostgreSQL servers located in a Singapore data centre. Storing data outside Indonesia is permitted for Private-Scope Electronic System Operators under Government Regulation No. 71/2019 Article 21, and Singapore has its own personal data protection regime (Personal Data Protection Act 2012) as required by Personal Data Protection Law No. 27/2022 Article 56 on cross-border transfers of personal data. We remain subject to Indonesian law and guarantee data access for supervision and law enforcement purposes by the competent Indonesian authorities.
We implement:
- TLS 1.3 encryption for all connections (HTTPS only)
- No passwords — we never store your password. Sign-in uses a single-use magic link, WhatsApp, Telegram, or Google
- Session tokens with limited validity, JWT signed with HMAC-SHA256
- Database access restricted to internal infrastructure
- Daily backups with 30-day retention
- Audit logs for all access to sensitive data
Active data is retained while your account is active. After you delete your account, data is permanently deleted within 7 working days, except those required for legal compliance (payment transactions retained 5 years per tax regulations).
Research transcripts & recordings. Transcripts, audio files, and supporting files live as long as their analysis session lives. Deleting a session deletes its files from storage, not merely from a list. Machine work artefacts — cached results and context excerpts — are removed by a periodic sweeper, and diagnostic traces expire within 48 hours.
7. Your Rights
Per UU PDP No. 27/2022, you have the right to:
- Access — request a copy of all your data (use the Export Data button in Settings → Privacy)
- Rectification — modify inaccurate data (directly in Settings → Profile)
- Erasure — request permanent account deletion (Settings → Privacy → Delete Account)
- Portability — download data in JSON format that can be imported elsewhere
- Objection — refuse processing for specific purposes (toggle off in Notifications)
- Withdrawal of consent — anytime, with the consequence that certain services become unavailable
To exercise these rights, visit Settings or contact info@risos.id.
8. Cookies & Tracking
We use minimal cookies:
- risos_token — session authentication (HTTP-only, secure, same-site lax)
- guest_session_id — rate-limit guest chat on the landing page
We do not use ad cookies, third-party tracking pixels, or fingerprinting analytics tools.
9. AI Processing & Research Data
9.1 Features that use language models
Risos AI uses large language models for Chat, Methodology Consultation, AI Persona, and qualitative and quantitative analysis of the files you upload (including interview transcripts, field notes, and datasets). Important notes:
- Content sent to chat is forwarded to model providers to generate responses
- We cache only conversations for the "AI memory" feature — you can delete them in Settings → Privacy
- Your AI Persona is injected as a system instruction into every new conversation
- AI output does not replace professional advice — always verify with your supervisor
- We do not use your content to train our own AI models
- The list of providers that receive excerpts of your data is published on our Sub-processors page
9.2 Research data you upload
Interview transcripts, field notes, and recordings you upload consist largely of the personal data of other people — your informants. For that data, the legal roles differ from those covering your own account data:
- You are the Data Controller for your informants' data. You determine the purposes and means of its processing.
- Risos AI is the Data Processor. We process that data only on your instructions — running the analysis you request — and never for purposes of our own.
- The basis for processing is the consent you obtained from your informants (informed consent), together with ethics committee approval where your research requires it. We do not claim a processing basis of our own over your informants' data.
- Third-party AI providers that receive excerpts of that data act as our sub-processors.
Before an analysis session starts we ask about informant consent status and your ethics clearance reference, then store your answer verbatim as an audit record — answering "not yet" does not block your work, but it is recorded and resurfaces when you declare the analysis complete.
If you mark a session as holding sensitive data, anonymisation becomes a required item before raw text may be sent to any provider; if you still choose to send it as-is, that choice is recorded. In ordinary sessions anonymisation is offered once and your answer is recorded. We do not force it — but you never send informant data without knowing that you are sending it.
Obligations that remain yours: obtaining valid consent, honouring an informant's withdrawal of consent, and not uploading data you are not permitted to process. See also the sub-processor list.
10. Minors
This service is intended for users aged 17 and above (undergraduate level upwards). We do not knowingly collect data from users below that age. If you believe a child under 17 is using a Risos AI account, please contact us.
11. Policy Changes
We may update this policy from time to time. Material changes will be communicated via email and/or in-app notification at least 14 days before they take effect. Previous versions are available upon request.
12. Microsoft Word Add-in (Risos Reference)
The "Risos Reference" add-in for Microsoft Word connects to your account via a personal Reference Token that you generate yourself. The token is stored as a SHA-256 hash on our servers and grants the add-in access to your own reference library — to insert citations & bibliographies, and (on your action) to add references or import citation styles. Access is limited to your reference library.
The add-in does not read your Word document content, payment data, or any other user's data. You may revoke the token at any time at risos.ai/references/word-plugin — revocation cuts access immediately. All traffic uses HTTPS/TLS 1.3.
13. Contact
PT Riset Sinergi Sosial
Pekanbaru, Riau, Indonesia
NIB: 1709250119286
Email: info@risos.id
Privacy-related questions, complaints, or requests will be addressed within 14 working days.