Privacy Policy
TableAI Ltd ("the Company," "we," "us," or "our") operates the TableAI platform at tableai-kr.com. TableAI turns plain-language questions into structured queries across connected data warehouses, so analysts and operators get answers in seconds without writing SQL. This Privacy Policy explains how we collect, use, retain, and protect personal data in connection with that service, and what rights you have over your information.
If you have questions about this policy or wish to exercise any right described below, contact us at [email protected].
1. Who We Are
TableAI Ltd is a data analytics software company incorporated in the Republic of Korea and headquartered at 337 Seolleung-ro, Gangnam-gu, Seoul 06212, Korea. We build and operate the TableAI platform, a natural-language query service that connects read-only to data warehouses (Snowflake, BigQuery, Redshift, Databricks, PostgreSQL, MySQL, Amazon Athena, and similar systems), interprets plain-language questions, and returns formatted result tables without requiring users to write or read SQL.
Our contact details for privacy matters are as follows:
TableAI Ltd337 Seolleung-ro, Gangnam-gu, Seoul 06212, Korea
Phone: +82 2 3775 1800
Email: [email protected]
2. Information We Collect
Because TableAI is a query-interface service that sits in front of your own data warehouse, the categories of personal data we handle are deliberately narrow. We collect:
- Account and contact data: name, work email address, and company name that you provide when signing up for early access or a paid plan.
- Natural-language query text: the plain-language questions you type into the TableAI interface. These queries are processed to determine warehouse routing and generate SQL. We do not use query content to train or fine-tune AI models without your explicit written consent.
- Warehouse connection metadata: read-only credentials (encrypted at rest), schema discovery results (table names, column names, data types), and query execution logs. We never copy, cache, or store the underlying row-level data from your warehouse.
- Usage and technical data: IP address, browser type, operating system, session identifiers, feature interaction events, and query response times. Collected automatically to operate and improve the platform.
- Communication content: any messages you send to our support team via email or the contact form.
3. How We Use Information
We use personal information solely to operate, maintain, and improve the TableAI service:
- Processing natural-language queries by routing them to the correct warehouse and returning results to you.
- Managing your account, authenticating your sessions, and enforcing your role-based access permissions.
- Diagnosing errors, investigating security incidents, and improving query accuracy.
- Responding to your support requests and communications.
- Meeting legal and regulatory obligations under applicable law, including the Korean Personal Information Protection Act (PIPA).
We do not sell personal information. We do not use your warehouse data or query content for advertising or model training purposes without your explicit written consent.
4. Legal Basis and PIPA Framework
TableAI collects and processes personal information in accordance with the Personal Information Protection Act of the Republic of Korea (PIPA, Act No. 10142 as amended). Our primary legal grounds are:
- Contract performance: processing necessary to deliver the query service you have subscribed to.
- Legitimate interests: usage analytics and security monitoring, balanced against your privacy rights.
- Consent: for any optional communications, such as product update emails, which you may withdraw at any time.
- Legal obligation: where applicable law requires us to retain or disclose specific data.
5. Sharing and Disclosure
We share personal information only in the following circumstances:
- Service providers: cloud infrastructure, authentication, and monitoring vendors acting as processors under written data processing agreements that restrict their use of data to providing the contracted service.
- Warehouse credential transmission: encrypted credentials are passed to our query engine solely to authenticate against your specified warehouse endpoint. They are not shared with or sold to any third party.
- Legal requirements: we may disclose personal information if required by Korean law, court order, or legitimate government request, to the extent permitted by applicable law.
- Business transfers: in the event of a merger, acquisition, or sale of substantially all assets, personal information may be transferred to the successor entity, which will be bound by this policy.
6. Retention and Security
We retain personal data only as long as necessary for the purposes described here or as required by law. As a general guide:
- Account data: retained for the life of your account and deleted within 30 days of account closure.
- Query logs: retained for up to 90 days (Growth plan) or a custom period (Team plan), then purged.
- Support correspondence: retained for up to 2 years from the date of the interaction.
- Legal compliance records: retained for the period required by applicable Korean law.
We apply administrative, technical, and physical safeguards designed to protect personal information against unauthorized access, disclosure, alteration, or destruction. All warehouse credentials are encrypted in transit and at rest. We maintain read-only warehouse connections and do not write data back to your warehouse.
7. Your Rights Under PIPA
Under the Korean Personal Information Protection Act, you have the following rights with respect to personal information about you that we hold:
- Right to access: you may request a copy of your personal information and information about how it is processed.
- Right to correction: you may request that inaccurate personal information be corrected without delay.
- Right to deletion: you may request deletion of personal information where it is no longer necessary for the purpose collected, where consent is withdrawn, or where processing is unlawful.
- Right to suspension of processing: you may request that processing be suspended in certain circumstances.
- Right to withdraw consent: where we rely on consent, you may withdraw it at any time without affecting the lawfulness of prior processing.
To exercise any of these rights, email us at [email protected]. We will respond within 30 days. We may ask you to verify your identity before processing a request. Where we cannot fulfil a request (for example, because we are required to retain data by law), we will explain why.
If you believe your rights have not been respected, you may also file a complaint with the Personal Information Protection Commission of Korea (pipc.go.kr).
8. Cookies
We use cookies and similar technologies to operate the platform and measure usage. See our Cookie Policy for full details, including how to manage your preferences.
9. International Transfers
Our infrastructure may involve service providers outside the Republic of Korea. Where personal information is transferred internationally, we ensure that appropriate safeguards are in place as required by PIPA, including contractual protections with receiving parties.
10. Children
The TableAI platform is a professional data analytics service directed at business users. We do not knowingly collect personal information from individuals under 14 years of age. If we become aware that we have collected information from a child under 14 without appropriate consent, we will take steps to delete it promptly.
11. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will post the revised policy with an updated "Last updated" date and, where appropriate, notify you by email. Continued use of the service after a change constitutes acceptance of the revised policy.
12. Contact
For privacy-related questions, requests, or concerns, contact the Company at:
TableAI Ltd337 Seolleung-ro, Gangnam-gu, Seoul 06212, Korea
Phone: +82 2 3775 1800
Email: [email protected]