Skip to content
Draft — pending legal review. This text is a working draft and is not yet in force. Bracketed items are still to be confirmed.

Last updated 2 October 2026

Data processing agreement

How Clane AI processes personal data on behalf of customers of the hosted WebPilot.si service.

This agreement applies when a customer ("you", the controller) uses the hosted WebPilot.si service and personal data is processed by Clane AI ("we", the processor) on your behalf. It forms part of the terms of service.

1. Subject and duration

We process personal data only to provide the Service: running a browser for your users, storing its profile, saved sessions, downloads, recordings and vault entries, and producing usage and audit records. Processing lasts for the term of your subscription and ends with the deletion described in section 8.

2. Categories

  • Data subjects: your users and members; people whose data appears on the websites your browser visits.
  • Personal data: account data, credentials stored in the vault, cookies and site storage, page content, files, screenshots in recordings, audit records (including IP addresses).

3. Our obligations

  • We process personal data only on your documented instructions, which are these terms and your use of the Service.
  • Everyone who can access the data is bound by confidentiality.
  • We help you answer data-subject requests and meet your obligations on security, breach notification and impact assessments, as far as the Service allows.

4. Security measures

  • Vault values and saved sessions are encrypted with AES-256-GCM; no API returns a stored value.
  • Each user's browser runs as its own Chromium process with its own profile and screen; the user comes from the token.
  • Tokens are stored only as hashes and shown once; viewer and file links are short-lived.
  • Chromium runs with its sandbox on; read-only tabs and site rules are enforced by the server.
  • Every write, login, secret use, hand-off and admin action is written to an audit log.

The current list is on the security page.

5. Sub-processors

You authorise the sub-processors listed in the privacy policy. We will notify you at least 30 days before adding or replacing one, and you may object.

6. International transfers

[To be confirmed with legal: hosting region and transfer mechanism, for example the EU Standard Contractual Clauses.]

7. Personal data breaches

We will notify you without undue delay, and in any case within 72 hours of becoming aware of a breach affecting your data, with what we know and what we are doing about it.

8. Deletion and return

You can export your data from the console at any time. When your account is deleted, we delete the personal data we process for you within 30 days, unless the law requires us to keep it.

9. Audits

We will make available the information needed to show compliance with this agreement. We do not hold third-party certifications today; see the security page for what we do have.