Legal

Privacy Policy

Effective Date: August 10, 2026 · Last Updated: July 31, 2026

1. Introduction

This Privacy Policy (the “Policy”) explains how AIBE, Inc., doing business as Diald AI (“Diald,” “we,” “our,” or “us”), collects, uses, shares, and otherwise processes the personal information we collect about individuals.

This Policy details what information we collect, how we use it, and the choices and rights you have regarding its use. Our aim is to give you the necessary insights to make informed decisions about your interactions with us, including online. By using our Online Services, as defined below, you acknowledge the data practices described in this Policy. If you do not agree with the data collection practices described in this Policy, do not access or use our Online Services.

2. Scope of This Policy

This Policy describes the various contexts and circumstances in which we collect personal information, including through our “Online Services.” These Online Services include:

Our Websites and Application. Any website or application that links to this Policy, including diald.ai and the Diald platform.

Social Media. Interactions with our social media pages and content.

Other Digital Platforms. Interactions such as clicking on our content or advertisements on third-party sites and subscribing to our electronic communications.

Online Customer Services. Communications with our service representatives or use of support features through email, phone, or other online channels.

Third-Party Information. Information we may collect about you from third parties related to your use of our Online Services.

This Policy also applies to personal information we collect in the context of transactions with us, including purchases, subscriptions, invoicing, and payments.

In some circumstances, we process personal information on behalf of a business, university, or other organization that provides or manages a Diald account. In those circumstances, the organization may have its own privacy notice governing its use of that information.

3. How We Obtain Information

We obtain the information we collect about you through various means and sources, including:

Direct Interactions. We collect personal information when you provide it directly to us, such as when you create an account, request a demonstration, join a waitlist, subscribe to communications, purchase a subscription, upload content, submit forms, contact support, or otherwise communicate with us.

Automatically Using Data-Collection Tools. We use data-collection tools, such as cookies, logs, and scripts, to collect certain information about your use of our Online Services. These tools help us operate and secure the Online Services, improve performance, diagnose technical issues, and understand how our services are accessed and used.

Third-Party Sources. We may collect personal information from third parties, including organization administrators, payment processors, service providers, social media platforms, public databases, property and market-data providers, and other relevant parties based on your interactions with us.

4. Information Collected and How We Use It

We collect and use personal information for several purposes, including to provide our Online Services and continually improve them.

4.1 Personal Information We Collect Directly From You

Contact Information and Identifiers. Name, email address, company, university or organization, job title, billing address, and any other personal identifier you provide.

Account Information. Email address, password or other authentication credentials, subscription plan, account role, organization affiliation, and other business or profile information submitted during account creation or while using the Online Services.

Marketing and Lead-Generation Information. Information you provide when you request a demonstration, join a waitlist, subscribe to updates, download materials, register for an event, or otherwise express interest in Diald.

Payment and Billing Information. If you purchase a subscription through our self-service checkout, our payment processor, Stripe, collects and processes your payment information directly. Diald does not receive or store complete payment-card numbers. We may receive limited billing and transaction information from Stripe, such as your billing name and address, payment-method type, card brand and last four digits, payment and subscription status, invoice information, and transaction identifiers. For enterprise, university, and other institutional customers, we may issue invoices directly and collect billing contacts, billing addresses, purchase-order details, remittance information, and limited bank or wire-transfer information associated with the payment.

Submitted Content. Personal information contained within content you enter, upload, import, transmit, or generate through the Online Services. This may include property addresses, offering memoranda, rent rolls, financial models and assumptions, comparable-property information, prompts and chat messages, uploaded documents, comments, notes, generated reports, and related property or project information.

You are responsible for ensuring that you have the authority to submit any personal information relating to another individual.

How We Use It

To Communicate With You. We use your personal information to facilitate communications with you, respond to inquiries, provide support, and send account, service, billing, and, where permitted by law, promotional communications.

Service Fulfillment. Account setup and maintenance, authentication, access management, document processing, research, analysis, report generation, transaction processing, subscription administration, billing, and customer service.

AI-Enabled Services. We use artificial-intelligence and machine-learning technologies to extract and organize information, conduct research, generate analyses, answer questions, identify risks and opportunities, and produce reports and other outputs requested through the Online Services. To provide these features, we may transmit submitted content to third-party artificial-intelligence, machine-learning, document-processing, and model providers that process information on our behalf and subject to applicable contractual restrictions. We do not use submitted content to train general-purpose or foundation artificial-intelligence models.

Business Operations. Document management, record keeping, business intelligence, strategic decision-making, accounting, auditing, fraud prevention, security, and compliance.

Quality Assurance and Improvement. To maintain, secure, troubleshoot, evaluate, and improve the quality, performance, reliability, and safety of our Online Services.

Aggregated and De-Identified Insights. To create aggregated and de-identified data from submitted content and from use of the Online Services, and to use that data to operate and improve the Online Services and to develop, publish, and license benchmarks, indices, and market research, as described in Section 7.

4.2 Information Collected Using Online Data-Collection Tools

Identifiers and Contact Information. IP addresses, cookie IDs, session identifiers, and similar identifiers.

Device and Browser Data. Browser type and version, device type, operating system, screen size and resolution, and other technical information.

User Interaction Data. Browsing and usage activity on our Online Services, including pages and features viewed, buttons or links clicked, actions taken, and session duration.

Authentication and Security Data. Email-verification status, login timestamps, authentication tokens, password-reset activity, failed login attempts, and security logs.

Electronic Communication Records. Email records, support communications, and related logs.

User Preferences. Communication preferences, language, time zone, application settings, and general location information derived from technical data.

We currently use essential cookies required for authentication, session management, security, and basic operation of the Online Services. We may also use preference and analytics technologies to remember settings, diagnose technical issues, understand how the Online Services are used, and improve performance.

We do not currently use advertising or targeting cookies or session-replay or heat-mapping technologies on the Online Services.

4.3 Organization-Managed Accounts

If your Diald account is provided, sponsored, or managed by an employer, university, or other organization, authorized administrators of that organization may be able to access certain account and usage information, assign or remove user access, manage roles and permissions, allocate or monitor subscription resources, and administer the organization’s workspace.

The organization may have its own privacy notice or policies governing how it uses information associated with the organization-managed account.

5. Disclosure of Your Personal Information

We may disclose personal information to the following types of parties:

Other AIBE Affiliates. Entities related to us by common ownership or control, where applicable.

Authorized Persons and Agents. Customer-support, communications, analytics, security, and other service providers acting on our behalf.

Business Services Providers. IT operations providers, cloud hosting and infrastructure providers, professional service providers, document-processing providers, analytics providers, error-monitoring providers, and other vendors that support our business and the Online Services.

Benchmark and Research Recipients. Licensees, subscribers, publishers, and distributors of benchmarks, indices, and market research. We disclose only aggregated and de-identified data to these recipients, as described in Section 7; we do not disclose personal information to them for this purpose.

Artificial-Intelligence and Model Providers. Vendors that process submitted content on our behalf to support document extraction, research, analysis, question answering, report generation, and other AI-enabled features.

Payment Processors. Stripe and other vendors involved in payment processing, subscription administration, invoicing, refunds, fraud prevention, and related financial services.

Property and Market-Data Providers. Third parties that provide data or information used to support research, analysis, and other features of the Online Services.

Organization Administrators. Authorized administrators of organization-managed accounts, as described in Section 4.3.

Other Users and Recipients. Individuals with whom you choose to share projects, reports, or other content.

Law Enforcement and Government Agencies. As required or permitted by law, such as pursuant to a subpoena, court order, legal process, or governmental request.

Corporate Transaction Disclosures. In connection with an actual or proposed sale, merger, acquisition, financing, reorganization, bankruptcy, sale of assets, or other business transaction.

We do not sell personal information or share personal information for cross-context behavioral advertising, as those terms are defined under applicable privacy laws.

6. Data Retention

We retain your personal information only as long as needed to fulfill the purposes for which we collected it.

We retain personal information only as long as reasonably necessary to fulfill the purposes described in this Policy, including providing the Online Services and satisfying legal, accounting, tax, security, contractual, or reporting requirements.

The applicable retention period depends on the nature and sensitivity of the information, the duration of our relationship with you or the relevant organization, whether the information is needed to provide the Online Services, and applicable legal and operational requirements.

Account information is generally retained while your account remains active and for a limited period afterward. Submitted content is generally retained while the applicable account or workspace remains active, unless it is deleted earlier by an authorized user or administrator. Deleted information may remain in routine backups for a limited period before being overwritten.

We may create, retain, and use information that has been aggregated or de-identified so that it can no longer reasonably be linked to an identifiable individual, as described in Section 7. Aggregated and de-identified data created before an account, workspace, or item of submitted content is closed or deleted is not deleted as part of that closure or deletion, and may be retained and used after it. Where required by law, we maintain such information in de-identified form and do not attempt to re-identify it.

7. Aggregated and De-Identified Data

We create aggregated and de-identified data from use of the Online Services and from submitted content — for example, statistics about underwriting assumptions, market activity, and platform usage. This data is combined across many customers and processed so that it cannot reasonably identify you or your organization and cannot be attributed to any specific customer, property, or transaction.

We use this data to operate and improve the Online Services and to develop, publish, and license benchmarks, indices, and market research.

Before any external use, we apply minimum aggregation thresholds. We maintain technical and organizational safeguards designed to prevent re-identification, we maintain and use this data only in de-identified form, and we do not attempt to re-identify it or to re-associate it with any individual, organization, or transaction. We contractually require recipients to do the same and to refrain from further disclosing the data except on equivalent terms.

Aggregated and de-identified data is not personal information under applicable United States privacy laws and may be created, retained, and used after account closure or deletion. Where other applicable law imposes a different standard for de-identified or anonymous information, we handle the data in accordance with that standard.

8. Your Privacy Choices

Email. To opt out of promotional emails, follow the “unsubscribe” instructions located at the bottom of each email. Even if you opt out of promotional emails, we may continue to send service-related and transactional communications, including account notices, security alerts, billing communications, and support messages.

Cookie Controls. You may be able to control certain cookies through your browser settings or any cookie-preference tool made available through the Online Services. Disabling essential cookies may prevent portions of the Online Services from functioning properly.

Account Information. You may be able to review or update certain account information through your account settings or by contacting us using the information below.

9. Your Privacy Rights

Depending on your location and applicable laws, you may have some or all of the following rights:

You have clear, enforceable rights over your personal data — including access, correction, deletion, and the right to opt out.

Right to Access

Request access to personal information we hold about you.

Right to Correct

Request correction of inaccurate personal information.

Right to Delete

Request deletion of your personal information, subject to applicable exceptions. Deletion does not extend to aggregated or de-identified data created before we receive your request, which is not personal information and cannot reasonably be re-associated with you or your organization. See Section 7.

Right to Portability

Request a copy of certain personal information in a portable or machine-readable format.

Right to Opt Out of Sale or Sharing

Direct us not to sell or share your personal information, where applicable. Diald does not currently sell personal information or share personal information for cross-context behavioral advertising.

Right to Opt Out of Targeted Advertising

Control how your personal information is used for targeted advertising, where applicable. Diald does not currently engage in targeted advertising.

Right to Restriction or Objection

Request that we limit or stop certain processing of your personal information, where applicable.

Right to Withdraw Consent

Withdraw consent where we rely on your consent to process personal information.

Right Against Discrimination

Exercising an applicable privacy right will not result in unlawful discriminatory treatment.

Right to Appeal

If we decline your request, you may have the right to appeal our decision.

To exercise any applicable right, please contact us using the information below. We may take reasonable steps to verify your identity and will respond within the timeframe required by applicable law.

Where permitted by law, an authorized agent may submit a request on your behalf. We may require evidence of the agent’s authority and may separately verify your identity.

Certain information may be exempt from a request under applicable law, including information we must retain to comply with legal obligations, complete transactions, maintain security, prevent fraud, or establish or defend legal claims.

10. Security

We implement physical, technical, and organizational safeguards designed to protect the confidentiality, integrity, and availability of the personal information we collect and process.

However, no security controls, storage system, or method of transmission can provide absolute protection against all security threats. We have procedures in place to address suspected data-security incidents and will notify affected individuals and applicable regulators where legally required.

11. Data Transfers

Diald’s primary operations are based in the United States, and the majority of data processing occurs within the United States.

In order to provide the Online Services, we may transfer or process your personal information in other locations, including countries other than the country in which the information was originally collected. Those countries may have privacy and data-protection laws that differ from those in your jurisdiction.

Where required by applicable law, we use legally recognized safeguards for international transfers of personal information.

12. Children’s Privacy

Our Online Services are intended for business, professional, and higher-education users and are not directed to children under 13, or another age as required by applicable local law.

We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take reasonable steps to promptly delete that information.

13. Third-Party Links and Data Sources

Our Online Services may contain links to, integrate with, or display content from third-party websites, services, property and market-data providers, and publicly available sources.

The privacy practices of those third parties are governed by their own privacy policies and terms, not this Policy. We encourage you to review the applicable privacy notices of any third-party services you use.

14. Updates to This Privacy Policy

We reserve the right to modify this Policy from time to time to reflect changes in our Online Services, data practices, legal requirements, or business operations.

Any modifications will be effective as of the date specified in the updated Policy. When we update this Policy, we will revise the “Last Updated” date above.

If we make material changes, we will provide notice as required by applicable law, such as by posting the updated Policy, displaying a notice through the Online Services, or sending an email or other communication.

15. Contact Information

If you have any questions or concerns about this Policy or our data practices, or wish to exercise an applicable privacy right, contact us at:

AIBE, Inc., d/b/a Diald AI
12400 Wilshire Blvd., Suite 1450
Los Angeles, CA 90025
United States

Email: privacy@diald.ai