Archivers.ai

Privacy Policy

Archivers.ai — operated by Broadhurst Digital Limited

Effective Date: 21 February 2026 · Last Updated: 2 September 2026


1. Introduction

This Privacy Policy explains how Broadhurst Digital Limited ("we", "us", "our") collects, uses, stores, and protects personal data when you use Archivers.ai ("Service").

We are committed to protecting your privacy and complying with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

Data Controller:

  • Broadhurst Digital Limited
  • 18 St Nicholas Place, Derby, DE1 3GD
  • Company Registration Number: 12503471
  • Contact: 01332 460 205

2. Data We Collect

2.1. Account Data

When you create an account, we collect:

DataPurposeLawful Basis
NameAccount identification, display in UIContractual necessity
Email addressAccount login, notifications, password resetContractual necessity
PasswordAuthentication (stored as bcrypt hash)Contractual necessity
Organisation nameMulti-user collaboration featuresContractual necessity

2.2. Content Data

When you use the Service, you may upload:

  • Documents (PDFs, images of text)
  • Photographs
  • Audio recordings
  • Video recordings
  • Artefact photographs

This Content may contain personal data of third parties (e.g., names, addresses, photographs of individuals in archival materials). You are the data controller for any personal data contained in your Content.

2.3. AI-Generated Data

When you use AI Features, we generate and store:

  • File classifications (photograph/document/artefact)
  • Extracted metadata (titles, dates, descriptions, people mentioned, etc.)
  • Transcriptions of documents and audio
  • Sensitivity assessments (PII detected, content warnings)
  • Collection analyses and dossier reports
  • AI confidence ratings and reasoning

2.4. Usage Data

We automatically collect:

DataPurposeLawful Basis
AI usage metrics (model, token counts)Service operation, billing, cost managementLegitimate interest
Session data (login times, IP implied by session)Security, fraud preventionLegitimate interest
Feature usage (uploads, analyses run)Service improvement, tier enforcementLegitimate interest

2.5. Data We Do NOT Collect

  • We do not use advertising, marketing or cross-site tracking services. The only measurement we run is Vercel's own cookieless analytics — page views and page loading times, recorded by the platform that hosts the Service, with no profile built and nothing followed across other websites
  • We do not set third-party cookies
  • We do not collect device fingerprints
  • We do not engage in behavioural advertising or profiling

3. How We Use Your Data

We use your data for the following purposes:

  1. Providing the Service — storing your Content, running AI analysis, generating exports
  2. Account management — authentication, email verification, password resets
  3. Tier enforcement — ensuring usage stays within subscription limits
  4. Security — detecting unauthorised access, protecting against abuse
  5. Service improvement — understanding usage patterns to improve features (aggregate data only)
  6. Legal compliance — responding to lawful requests, maintaining required records

4. AI Processing and Sub-processors

When you use AI Features, your Content is processed by third-party AI providers. This is necessary to provide the core functionality of the Service.

4.1. What Data Is Sent to AI Providers

AI ProviderData SentPurpose
Mistral AI (France)Image data, page scans, OCR text, audioClassification, reading text off scans (OCR), metadata extraction, audio transcription
Google (Gemini, via Google Cloud Vertex AI — EU regions)Images, documents, audio and video files, metadata, transcripts, dossier content, research queriesItem description, metadata extraction, collection and dossier analysis, research chat, search embeddings

4.2. AI Provider Commitments

  • Neither Mistral AI nor Google use your data to train their foundation models
  • Data is processed transiently for inference and is not retained beyond the API call
  • Both providers operate under data processing agreements

4.3. International Transfers

Every Gemini model call is pinned to a European region — Google's eu multi-region, or europe-west1 (Belgium) for the models hosted there — and audio, video and long documents are staged in a European Google Cloud Storage bucket that clears itself after two days. Google's Standard Contractual Clauses and the UK International Data Transfer Agreement remain in place as a backstop for Google's own group operations.

Mistral AI is a French company and processes this in the EU. Mistral offers no separate region setting for us to select — EU hosting is its standard processing location.

Two services we use are not handled in Europe: SMS security codes are sent through Twilio in the United States (the authenticator-app alternative involves no third party at all), and the reCAPTCHA check on the sign-up form is handled by Google without a region setting. Both are covered by Standard Contractual Clauses and the UK International Data Transfer Agreement.

A fuller, provider-by-provider account — what is sent, where it is handled, how long it is kept, and how confident we are of each answer — is inside the app at Where your data goes.

5. Data Storage and Security

5.1. Where Your Data Is Stored

Data TypeProviderLocation
Account data, metadata, AI outputsNeon (Postgres database)AWS UK (London, eu-west-2)
Uploaded files (images, documents, audio, video)Vercel Blob StorageEdge (nearest region)
Application hostingVercelEdge (nearest region)

5.2. Security Measures

  • Passwords are hashed using bcrypt (never stored in plaintext)
  • Session tokens are SHA-256 hashed before storage
  • Session cookies use httpOnly, secure, and sameSite flags
  • All data transmitted over HTTPS/TLS
  • Database connections use SSL
  • Deny-by-default access control on all API endpoints
  • Admin functions require explicit admin role verification
  • Cron jobs authenticated via separate secret

6. Data Retention

Data TypeRetention PeriodDeletion Trigger
Account dataWhile the account existsRemoved by an administrator
Uploaded files, Community (free) plan28 days from upload by default — an administrator can set a longer period, or none, for an individual accountAutomatic, nightly
AI-generated metadataSame as its fileRemoved with the file
Session recordsUntil expiry (30 days) or logoutAutomatic expiry
Half-finished sign-ins and visitor sign-ins to a public portalUntil expiryAutomatic expiry
What the AI cost (the record behind your bill)Life of the workspaceNothing removes it
Workspace activity record (who did what, when)Life of the workspace, and afterNothing removes it — it outlives even the workspace that created it

Workspace activity record (who did what, when) — kept for the life of the workspace, and not removed even when the workspace itself is later deleted. A person can be erased from it: their name and contact details are replaced, the record of what happened is kept.

We keep this record on the basis of our legitimate interests: it is the evidence an archive service needs for accreditation (who changed what, and when), and it is what settles a dispute about a record. It holds the name and email address of the person who acted, as they were at the time. If you ask us to erase you, that name and email address are replaced and the record of what happened stays.

Free-tier accounts have an automatic file retention limit, which an administrator can change or switch off for an individual account. You will be notified before any automated deletion.

7. Your Rights

Under UK GDPR, you have the following rights:

7.1. Right of Access (Article 15)

You can request a copy of all personal data we hold about you.

7.2. Right to Rectification (Article 16)

You can update your account information at any time via the Service. For other corrections, contact us.

7.3. Right to Erasure (Article 17)

You can ask us to remove you personally. We remove your account and replace your name and contact details wherever they are recorded, including the workspace activity record described in section 6 — but what you catalogued for the archive is not deleted with you: it stays as part of the workspace's own record, because it belongs to the archive, not to any one person who worked on it. If instead the archive itself is closing its account, everything is deleted within 30 days, as our Terms of Service say; today that is carried out as a recorded action by us on request, rather than by an automatic timer. That action is guaranteed to remove the workspace's own records. A file already cleared through the ordinary course of deleting its accession goes with it; where that has not happened, removing it from the file store is not yet guaranteed by this same action — a known limit of today's procedure, not a promise that it does not exist, and something we are working to close.

7.4. Right to Data Portability (Article 20)

You can export your data at any time using the Service's export features (EAD3, Dublin Core, CSV formats). For a machine-readable copy of all personal data, contact us.

7.5. Right to Restrict Processing (Article 18)

You can request that we restrict processing of your data in certain circumstances.

7.6. Right to Object (Article 21)

You can object to processing based on legitimate interest. We will cease processing unless we have compelling legitimate grounds.

7.7. Rights Related to Automated Decision-Making (Article 22)

AI Features produce suggestions for human review — they do not make automated decisions with legal or similarly significant effects. You always have the ability to review, edit, and override AI outputs.

How to Exercise Your Rights

Contact us at:

  • Phone: 01332 460 205
  • Address: Broadhurst Digital Limited, 18 St Nicholas Place, Derby, DE1 3GD

We will respond to all requests within one month.

8. Cookies

We use a single essential cookie:

CookiePurposeTypeDuration
session_tokenAuthentication — keeps you logged inEssential (first-party)30 days

We do not use analytics cookies, advertising cookies, or third-party cookies. See our Cookie Policy for full details.

9. Children's Data

The Service is not intended for use by individuals under the age of 18. We do not knowingly collect personal data from children.

10. Data Breaches

In the event of a personal data breach that poses a risk to your rights and freedoms:

  • We will notify the Information Commissioner's Office (ICO) within 72 hours
  • We will notify affected individuals without undue delay where the breach poses a high risk
  • We maintain an internal breach register

11. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be notified by email or via the Service at least 30 days before they take effect. The "Last Updated" date at the top will reflect the most recent revision.

12. Complaints

If you are unsatisfied with how we handle your data, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):

  • Website: ico.org.uk
  • Phone: 0303 123 1113
  • Address: Information Commissioner's Office, Wycliffe House, Water Lane, Wilmslow, Cheshire, SK9 5AF

13. Contact

For any questions about this Privacy Policy or our data practices:

Broadhurst Digital Limited

18 St Nicholas Place, Derby, DE1 3GD

Phone: 01332 460 205