Privacy Policy
Last updated: August 20, 2026
1. Who we are
LegalRobe is a matter management platform operated by Corauxis Private Limited, a company incorporated in India, with its registered office at 1201, One West, Balewadi High Street, Baner, Pune, Maharashtra 411045, India. This policy explains what personal data we collect when you use LegalRobe, why we collect it, who we share it with, and what rights you have over it.
This policy covers both people who sign up for LegalRobe (typically advocates, law firm staff and their clients) and visitors to our website. Where a law firm creates accounts for its team or clients, that firm decides what case information is entered into the platform; we process it on the firm's behalf.
2. Information we collect
We collect the following categories of information:
- Account and profile information: your name, email address, phone number, role, the firm you belong to, your time zone, and — if you choose to provide them — your practice areas, years of experience, hourly rate, profile description and profile photo. Passwords are stored only as a cryptographic hash, never in readable form.
- Sign-in information: if you sign in with Google, we receive your Google account identifier and email address. We never receive your Google password.
- Matter and client information: everything you enter about your cases — matter details, client names and contact details, court and case numbers, hearing dates, notes, tasks and invoices.
- Documents you upload: the files themselves, and text extracted from them so the platform can search and summarise their contents.
- Messages and notifications: messages sent through in-app team chat, and notifications generated by the platform.
- Calendar and meeting information: meetings you schedule, including titles, times, attendee email addresses and video meeting links.
- Billing information: your subscription status, invoices and payment records. We do not collect or store your card, UPI or bank details — these are handled directly by our payment processor.
- Court records: where you enable case syncing, we retrieve publicly available case information from court websites using the case numbers you supply.
- Technical information: IP address, browser and device details, access logs, and diagnostic data captured when an error occurs.
3. How we use your information
- To provide, operate, secure and support the platform.
- To authenticate you and enforce the access permissions your firm has set.
- To power search, summarisation and drafting features across your documents and matters.
- To sync your meetings and hearings with your calendar, where you connect one.
- To process subscriptions, issue invoices and prevent payment fraud.
- To send service messages such as verification codes, invitations and reminders.
- To diagnose faults, monitor performance and improve reliability.
- To comply with legal obligations and enforce our Terms of Use.
We do not sell your personal data, and we do not use your matter or client information for advertising.
4. Artificial intelligence features
Some features — document summarisation, search across your matters, the assistant and drafting tools — work by sending the relevant text to OpenAI, our AI processing provider. This means the contents of documents and matter information you use those features on leave our servers and are processed by OpenAI.
OpenAI processes this content solely to return a result to us. Under OpenAI's API terms, data submitted through the API is not used to train their models. We do not use your content to train any model of our own.
AI features can be switched off for an individual user by a firm administrator. If your practice handles material you would prefer never leaves our infrastructure, disable AI for those users, or avoid using AI features on that material.
AI output can be wrong or incomplete. It is not legal advice and must be checked by a qualified professional before you rely on it.
5. Google Calendar and Google Meet
If you connect your Google account, we request only these permissions:
- See and edit events on your calendars — used solely to create, update and cancel the meetings you schedule in LegalRobe, and to generate Google Meet links for them.
- Your email address — used to show you which Google account is connected.
We store the access and refresh tokens Google issues, encrypted, so the connection keeps working. We do not read your calendar for any purpose beyond the meetings you create in LegalRobe, and we never use Google data for advertising or sell it.
LegalRobe's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
You can disconnect at any time from your profile page, which deletes the stored tokens. You can also revoke access from your Google Account permissions page.
6. Service providers we share data with
We share data only with providers who help us run the service, and only as far as each needs to perform its function:
- Amazon Web Services — hosting, databases and file storage (Mumbai region, India).
- OpenAI — AI processing, as described in section 4 (United States).
- Google — calendar and meeting sync, and Google sign-in, where you enable them.
- Firebase (Google) — authentication infrastructure.
- Razorpay — payment processing and subscription billing.
- Sentry — error monitoring and diagnostics.
- Email delivery providers — for verification codes, invitations and service notices.
We may also disclose information where required by law, court order or a binding request from a public authority, and to establish or defend legal claims.
Some of these providers are located outside India, so your information may be transferred and processed abroad. We rely on contractual protections with each provider to safeguard it.
7. Security
The measures we currently have in place include:
- Encryption of all traffic between you and the platform using TLS.
- Encryption at rest of our primary database.
- Encryption of stored Google authorisation tokens.
- Passwords stored only as salted cryptographic hashes.
- Role and permission controls so firm members see only what they are entitled to.
- Audit logging of significant actions within a firm workspace.
We want to be straightforward about the limits of this. Your documents and matter information are stored on our infrastructure in a form our systems can read — this is what makes search and summarisation possible. It is not end-to-end or "zero-knowledge" encryption, and a small number of authorised personnel can access stored data where necessary to operate, support or secure the service. No system can be guaranteed completely secure.
8. How long we keep data
We keep your information for as long as your account is active. When an account is deleted, we remove the associated personal data and case content from our active systems, retaining only what we must for legal, tax or audit purposes — for example, invoice records required under Indian tax law. Residual copies may persist in encrypted backups for a limited period before being overwritten.
Firm administrators can delete individual accounts, and account holders can request deletion of their own account, from within the platform.
9. Your rights
Under the Digital Personal Data Protection Act, 2023 and other applicable law, you may:
- Ask what personal data we hold about you and how it is processed.
- Ask us to correct or complete inaccurate data.
- Ask us to erase your personal data, subject to our legal retention obligations.
- Withdraw consent you previously gave, without affecting processing already carried out.
- Nominate another person to exercise these rights if you are unable to.
- Raise a grievance with us, and escalate to the Data Protection Board of India.
Write to privacy@legalrobe.com to exercise any of these. If your account was created by a law firm, we may need to direct your request to that firm, since they control the case information held in their workspace.
10. Grievance Officer
In accordance with the Digital Personal Data Protection Act, 2023 and the Information Technology Act, 2000, our Grievance Officer is:
Amey Kadam
Corauxis Private Limited
1201, One West, Balewadi High Street, Baner, Pune, Maharashtra 411045, India
privacy@legalrobe.com
We aim to acknowledge grievances within 24 hours and resolve them within 30 days.
11. Children
LegalRobe is a professional tool and is not directed at children. We do not knowingly collect personal data of anyone under 18. If you believe a child's data has been provided to us, contact privacy@legalrobe.com and we will delete it.
12. Changes to this policy
We may update this policy as the service or the law changes. The date at the top shows when it was last revised. Where changes are significant, we will notify you by email or through a notice in the platform before they take effect.
13. Contact us
For any question about this policy or how we handle your data, write to privacy@legalrobe.com, or to Corauxis Private Limited, 1201, One West, Balewadi High Street, Baner, Pune, Maharashtra 411045, India.





