Retica Privacy Policy
Effective date: January 1, 2024
At Retica (a service provided by Swifty srl ), privacy and data security are the cornerstones of our technology. This Policy explains what data we collect, why we collect it, how we manage it, and what your rights are, in full compliance with EU Regulation 2016/679 ( GDPR ).
1. General Information
1.1 Data Controller
The Data Controller is Swifty srl, with registered office in Via Matteotti 102/e, Reggiolo (RE), email: info@swiftysrl.com
1.2 Our philosophy
Unlike consumer services, Retica is designed to process corporate data. We apply the principle of data minimization : we collect only what is strictly necessary to provide the AI extraction service.
2. Data we collect and purposes
2.1 Information provided by the user
- Account data: Name, email address, and login credentials. This data is used to manage your workspace and billing.
- Uploaded Content (Input): PDF documents uploaded for processing.
- Generated data (Output): Information extracted from documents in JSON or CSV format using our AI models.
2.2 Information collected automatically
- System logs: IP addresses, browser type, activity timestamps. This data is necessary to ensure the security of the platform and prevent fraud or abuse.
3. Storage and Technical Infrastructure
3.1 Data Localization
All documents (PDF) and structured data (JSON, CSV) are stored on Amazon Web Services (AWS) infrastructure . To ensure maximum compliance with European standards, the servers are located exclusively in the Frankfurt region (Germany) .
3.2 Infrastructure Security
Data is protected with encryption at rest (AES-256) and in transit (TLS/SSL). Heading the databases to Swifty ensures that no third party, including the infrastructure provider, can access the cleartext content without authorization.
4. Data Access and Control
4.1 Zero-Privilege Access Policy
By default, no Swifty operator can view uploaded documents or extracted data.
- Exceptional Access: Access is granted exclusively to our technical staff only in the event of a specific customer support request to resolve specific technical issues. All access is logged and monitored.
4.2 Using data for training
Let us be clear: Retica does not use customer documents or extracted data to train its own proprietary AI models or third-party models , unless explicit and separate consent is provided for product improvement purposes.
The documents you provide will be used exclusively to provide the extraction service and, where applicable in the subscribed plan, to optimize the specific model dedicated to the Client. Under no circumstances will this data be used to train models shared with other users.
5. Retention and Final Elimination
5.1 Data life cycle
We apply a strict retention policy. Unless otherwise configured in your account settings:
- Automatic Deletion: Both original PDFs and derived JSON files are automatically deleted after 30 days of upload.
- Irreversibility: Once the deletion process is initiated, the data is overwritten and cannot be recovered in any way.
5.2 Cancellation Certification
To ensure maximum compliance (Audit Trail), our servers generate encrypted Deletion Logs . These logs certify the successful execution of the data “wipe” command, providing documentary proof of compliance with the “Right to be Forgotten” and data retention policies.
6. Your rights (GDPR)
As the interested party, you have the right to:
- Access your personal data at any time.
- Correct inaccurate information.
- Request immediate cancellation (before the automatic 30 days) by contacting support.
- Export your data in a structured, readable format (Portability).
7. Changes to this Policy
We reserve the right to update this policy to reflect technological or legislative changes. We will notify you of any material changes via the Retica dashboard or by email.
Retica Terms and Conditions of Service
Last updated: January 1, 2024
Welcome to Retica. These Terms and Conditions of Service (“Terms”) govern your access to and use of the Retica platform, provided by Swifty srl . By registering for an account or using our services, you (“Customer” or “User”) accept these Terms in their entirety.
1. Description of the Service
Retica is an AI-based platform designed to automate data extraction from PDF documents. The service allows file upload, analysis, and download of the extracted data in structured format (JSON or CSV).
2. Registration and Account
- Requirements: You must provide accurate and complete information during registration. Your account is personal and non-transferable.
- Security: You are solely responsible for maintaining the confidentiality of your credentials. Any activity conducted under your account will be attributed to you.
- Business Use: If you are accepting these Terms on behalf of a business, you represent that you have the legal authority to bind such entity.
3. Data Ownership and Intellectual Property (see Appendix A below)
- Customer Data: The Customer retains full ownership of all uploaded PDFs and extracted JSON data. Retica claims no ownership rights in the User’s content.
- Swifty Srl Property: All software, AI algorithms, logos, trademarks, and graphical interfaces are the exclusive property of Swifty Srl. Attempting to reverse engineer, copy, or derive the platform’s source code is prohibited.
4. Limitations of Artificial Intelligence
- Accuracy: The Client acknowledges that data extraction is performed using artificial intelligence models. While Retica strives for maximum accuracy, we do not guarantee 100% error-free results. It is the Client’s responsibility to verify the accuracy of the extracted data before using it in critical processes.
- No Warranty: The Service is provided “as is.” We do not guarantee that the Service will be uninterrupted or bug-free.
5. Payments and Subscriptions
- Plans: Access to Retica is subject to a fee based on the number of page views (covered by a contract signed by you and Swifty srl).
- Billing: In case of non-payment, Swifty reserves the right to suspend access to the service.
6. Data Retention and Deletion Policy
- Automatic Deletion: As specified in our Privacy Policy, PDF and JSON/CSV files are irreversibly deleted after 30 days .
- Backup Responsibility: It is the Customer’s sole responsibility to download and back up the extracted data within 30 days (if necessary). Swifty is not responsible for data loss resulting from scheduled automatic deletion.
7. Acceptable Use
You agree not to use Retica to:
- Uploading documents containing illegal material, viruses, or malware.
- Violate the intellectual property rights of others.
- Stress test or attempt to breach the security of the AWS servers on which the platform resides.
8. Limitation of Liability
To the maximum extent permitted by law, Swifty will not be liable for any indirect, incidental, special, or consequential damages (including, without limitation, lost profits, business interruption, or loss of information) arising out of the use of or inability to use the Platform.
9. Changes to the Terms
We reserve the right to modify these Terms at any time. Changes will be communicated via the platform or email. Your continued use of the Service after the changes are posted constitutes acceptance of the new Terms.
10. Applicable Law and Jurisdiction
These Terms are governed by Italian law. Any dispute arising from the interpretation or execution of this contract will be subject to the exclusive jurisdiction of the Court of Reggio Emilia.
Appendix A: Data Processing Agreement (DPA)
This Data Processing Agreement (“DPA”) supplements the Retica Terms and Conditions of Service and is entered into between Swifty srl (“Processor”) and the Client (“Controller”).
1. Object and Scope of Application
This DPA applies to the processing of personal data contained in PDF documents and JSON/CSV files managed through the Retica platform. Swifty will process such data exclusively on behalf of the Client and according to its documented instructions.
2. Obligations of the Data Controller (Swifty srl)
Swifty is committed to:
- Processing on instructions: Process personal data only for the provision of the AI data extraction service and not for your own purposes.
- Confidentiality: Ensure that authorized data processing personnel (technical operators) are bound by confidentiality obligations and only access data upon request from the Customer.
- Security: Take appropriate technical and organizational measures (such as AES-256 encryption and hosting on AWS Frankfurt) to ensure a level of security commensurate with the risk.
- Subprocessors: Customer authorizes Swifty to engage subprocessors (e.g., AWS). Swifty will impose the same data protection obligations on these entities as set forth in this DPA.
3. Rights of the interested parties
Swifty will assist the Data Controller, through technical measures (dashboard, export and deletion functions), in processing any requests from data subjects (e.g., right of access, rectification, or deletion).
4. Place of Processing
Data processing takes place exclusively within the European Economic Area (EEA), specifically in the AWS eu-central-1 region (Frankfurt, Germany) , ensuring compliance with EU regulations without the need for risky cross-border transfers.
5. Data Retention and Deletion
In accordance with the Owner’s instructions:
- The data will be retained for a maximum period of 30 days from the upload.
- At the end of this period, Swifty will proceed with irreversible deletion through procedures certified by system logs.
- It is the Owner’s responsibility to download the extracted data before the retention period expires.
6. Data Breach Notification
In the event of a security breach resulting in the accidental or unlawful destruction, loss, or disclosure of data (Data Breach), Swifty will inform the Customer without undue delay and will assist in complying with legal requirements.

