Legal
Privacy
Last updated: 8 September 2026. Replaces the policy dated 27 August 2024.
This policy describes how iSearch App Sweden AB (“iSearch”, “we”) process personal data when you visit isearch.app and when you use iSearch as a product.
Controller
iSearch App Sweden AB, org. no. 559410-3367, Påskvippegatan 9, 194 54 Upplands Väsby. Contact: hello@iSearch.app.
The website
On the website we collect what you submit in the “Book a walkthrough” form: name, work email, company, approximate size, a description of the need and optional phone. The purpose is to answer the enquiry. The legal basis is legitimate interest in handling inbound business contact, or contract if you become a customer. We use cookie-free analytics without identification.
The product — two deployment modes
On your side. You run the server in your environment. You are the controller for accounts, documents, chats and any Microsoft 365 connections. iSearch supplies the software.
Hosted by us. We operate your instance as processor. Your documents are not mixed with other customers’. A data processing agreement is signed when we host.
Data in the product
Depending on use, an instance may process account details, documents in knowledge banks, search index and embeddings, chats, assistant instructions, and tokens for Microsoft 365 (files and calendar — not email).
Models
When the assistant answers, relevant excerpts are sent to a model provider for inference. iSearch does not use your knowledge to train models or improve the product for others. Provider and region are specified in the contract.
Sharing
A knowledge bank can be shared by email, company domain or publicly. Recipients can read and attach the bank to their assistant. Write access stays with the owner.
Retention and deletion
Website leads are kept in email to hello@iSearch.app and deleted when no longer needed. In the product the owner deletes banks, assistants and the account. At the end of a hosted contract we help remove the instance.
Your rights
You have rights of access, rectification, erasure, restriction, objection and portability under the GDPR. Complaints can be filed with the Swedish Authority for Privacy Protection (IMY).
Changes
We publish the updated text on this page.