Private by default.
Swiss hosted.
Privacy Policy.
Last updated: March 2026
1. Introduction
Trustbook AG ("Trustbook", "we", "us") is a Swiss company registered in Zurich, Switzerland. We are committed to protecting your privacy and handling your personal data responsibly. This Privacy Policy explains how we collect, use, store, and protect your information when you use our services.
Trustbook is subject to the Swiss Federal Act on Data Protection (FADP/nDSG) and adheres to the principles of the EU General Data Protection Regulation (GDPR).
2. Data Controller
The data controller responsible for your personal data is:
Trustbook AG
Zurich, Switzerland
Email: privacy@trustbook.ai
3. Data We Collect
We collect the following categories of personal data:
- Account Information — Name, email address, and language preference when you create an account.
- Documents — Files you upload to your vault (insurance contracts, tax documents, etc.). These are encrypted at rest using AES-256.
- Profile Data — Family composition, canton of residence, employment status, and other profile information you choose to provide.
- Usage Data — Anonymous analytics about how you use the app (page views, feature usage) collected via PostHog, only with your consent.
4. How We Use Your Data
We use your data exclusively to:
- Provide and improve our services
- Analyze your documents and generate AI-powered insights
- Send you relevant notifications about deadlines and obligations
- Personalize your dashboard and recommendations based on your profile
We do NOT use your data for advertising, profiling for third parties, or any purpose beyond providing our service.
5. Data Storage & Security
- All data is stored in Microsoft Azure data centers in Switzerland (Zurich region).
- Documents are encrypted at rest using AES-256 encryption.
- Data in transit is protected with TLS 1.3.
- Authentication is handled through Microsoft Azure Active Directory B2C.
- We do not store your password directly.
6. Data Sharing
We do not sell, rent, or share your personal data with third parties for marketing purposes. We may share data with:
- Service Providers — Microsoft Azure (hosting), Azure OpenAI (document analysis). These providers are bound by data processing agreements.
- Your Chosen Connections — If you connect a broker or fiduciary via KETL, only data you explicitly select is shared.
- Legal Requirements — If required by Swiss law or a valid legal order.
7. Cookies & Analytics
We use the following cookies:
- Essential Cookies — CSRF protection and language preference. These are required for the app to function and do not require consent.
- Analytics Cookies — PostHog analytics, loaded only after you accept cookies. You can reject analytics cookies at any time.
8. Your Rights
Under the FADP and GDPR, you have the right to:
- Access your personal data
- Correct inaccurate data
- Delete your data (right to be forgotten)
- Export your data in a portable format
- Withdraw consent for analytics at any time
- Object to data processing
To exercise any of these rights, contact us at privacy@trustbook.ai.
9. Data Retention
We retain your data for as long as your account is active. When you delete your account, all personal data and documents are permanently deleted within 30 days. Anonymized analytics data may be retained for statistical purposes.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes via email or in-app notification. The latest version is always available on this page.
11. Contact
If you have questions about this Privacy Policy or your data, contact us at:
Trustbook AG
Email: privacy@trustbook.ai
Your data stays in Switzerland.
All data is stored in Microsoft Azure data centers located in Switzerland (Zurich region). Your documents never leave Swiss jurisdiction, benefiting from some of the strongest data protection laws in the world.
Documents are encrypted at rest (AES-256) and in transit (TLS).
Access is restricted to authorized users and our processing systems, which analyze your documents to provide insights. We never share your data with third parties. Fernet encryption protects all extracted data, summaries, user data, and PII in the database. All document access is audit-logged.