PRIVACY POLICY (GDPR)

1. Data Controller

Cella AI


2. Data Processed

  • Identity
  • Email
  • Memory content
  • Voice, texts, images
  • Recipients’ contact details

3. Sensitive Data (Art. 9 GDPR)

Processing is based on explicit consent.
Consent can be withdrawn at any time, which will trigger permanent deletion.


4. Purposes

  • Creation of a personal sanctuary
  • Post-mortem transmission
  • AI interaction
  • Secure archiving

5. Legal Basis

  • Contractual performance
  • Explicit consent
  • Legal obligations

6. Security

  • Encryption at rest
  • Secure transmission
  • AI APIs with zero retention
  • Hosting in EU/France

7. Subprocessors

  • Hosting: e.g., OVH
  • AI providers: e.g., OpenAI, Mistral

Subprocessors comply with GDPR.


8. Data Retention

  • Active account: duration of the contract
  • Cold storage: according to subscription
  • Capsule messages: until chosen expiry
  • Deletion: crypto-shredding (permanent destruction)

9. Users’ Rights

  • Access
  • Rectification
  • Erasure
  • Portability
  • Restriction
  • Objection

Contact: dpo@cella-ai.eu
Complaints can be filed with the CNIL.


10. Third-Party Data

The User is responsible for any data concerning living third parties stored on the platform.


Version 1.2 – Mise à jour le 12 Février 2026