Legal

Everything in one place.

All policies version 1.0 · Effective May 15, 2026

Every policy, agreement, and commitment that governs how Cruma works with your data, your business, and your customers — kept short, readable, and modular so each can update independently.

Terms of Service

The contract between you and Cruma — what we'll do, what you agree to, what happens when things go wrong.

v1.0 · May 15, 2026
Privacy Policy

What we collect, what we don't, who sees it, and what rights you have to access, correct, or delete.

v1.0 · May 15, 2026
Acceptable Use Policy

Rules for using Cruma — no spam, no bypassing the approval rail, no LinkedIn scraping. Incorporated into the Terms.

v1.0 · May 15, 2026
Data Processing Addendum

The B2B contract for customers acting as data controllers — GDPR/UK terms, SCCs, sub-processor obligations.

v1.0 · May 15, 2026
Sub-processors

Categories of vendors we use to run Cruma, named AI providers, and how to request the full current list.

v1.0 · May 15, 2026
Cookies Notice

What cookies and similar technologies Cruma uses, why, and how to opt out.

v1.0 · May 15, 2026
Security Overview

Public security posture — encryption, access control, audit logging, vulnerability disclosure.

v1.0 · May 15, 2026
Vulnerability Disclosure

Standardized RFC 9116 security.txt — where to send security findings, response window.

RFC 9116 · expires 2027

Contact

Cruma Inc. (Delaware)
Legal questions: legal@cruma.ai
Privacy requests: privacy@cruma.ai
Security disclosures: security@cruma.ai
Support: support@cruma.ai