Data Security & Privacy

At Insilica, owner, builder, and operator of Sysrev, we take the security and privacy of your data extremely seriously. All customer data stored within our systems is encrypted at rest by default, ensuring that it remains protected against unauthorized access.

Our infrastructure leverages industry-leading encryption standards (AES-256) in conjunction with AWS Key Management Service (KMS) customer-managed keys to safeguard sensitive information. This includes your databases, backups, application data, and credentials stored in our environment.

By enforcing encryption at rest across our storage, databases, and repositories, we provide multiple layers of protection, so you can trust that your data is always secure, whether actively in use or archived.

We continuously monitor and update our security controls to remain aligned with industry best practices and compliance frameworks, giving you the confidence that your information is handled with the highest standards of confidentiality and integrity.

User access 

User: Every Sysrev account requires an email and password for creation and access. It is the User’s sole responsibility to ensure the privacy of their password. As there is no cost associated with creating a Sysrev account, Insilica does not permit the use of shared Sysrev accounts. 

Enterprise: Customer and its Authorized Users will have access to the Customer Content and will be responsible for all changes to and/or deletions of Customer Content and the security of all passwords and other Access Protocols required in order to access the Sysrev Platform.

User Data Privacy

Other than the email and password required for account creation, the User is under no obligation to provide any personal information, or otherwise identifying information, in order to use the Sysrev platform. 

If the User chooses, they are able to add information to their User profile. It should be understood by the User that Sysrev User Profiles are public, searchable, and accessible and any information they add to their profile is likewise public and accessible to anyone.

User Billing & Communication

If the User chooses, they are able to access additional features through a Premium or Enterprise account. In these instances, User will be required to share billing information. All invoicing and billing activities will occur within the Sysrev application. Any invoicing and payment is managed and executed via the secure Stripe platform unless otherwise agreed upon in writing. The email provided by the User upon the creation of the Account will be used for all billing related communications.

Project Data Privacy

Public Projects should be understood to be public, searchable, and accessible to anyone, including but limited to all user names, article metadata, and labels associated with Public projects. Moreover, the project, user names, article metadata, and labels are viewable to any individual with the project URL. It should be noted that article content, e.g. abstracts, PDFs, or JSON, will ONLY be viewable to members of the Public project. Individuals are not able to affect Public projects (e.g. review articles or update label definitions) unless they are a member of the Public Project. 

Private Projects are only accessible, viewable, and interactable to Users who are members of the Private Project. An individual who navigates to a URL associated with a Private Project will not be able to access the project unless they are logged in as a member of the Private Project

User/Customer Warranty & Data Integrity

User/Customer represents and warrants that any User/Customer Content will not (a) infringe any copyright, trademark, or patent; (b) misappropriate any trade secret; (c) be deceptive, defamatory, obscene, pornographic or unlawful; (d) contain any viruses, worms or other malicious computer programming codes intended to damage Insilica’s system or data; and (e) otherwise violate the rights of a third party. Insilica is not obligated to back up any User/Customer Content; the User/Customer is solely responsible for creating backup copies of any User/Customer Content at User/Customer’s sole cost and expense. User/Customer agrees that any use of the Sysrev Platform contrary to or in violation of the representations and warranties of User/Customer in this Section 5.2 constitutes unauthorized and improper use of the Sysrev Platform. 

Integrated Third-Party Technology:

Insilica, at its sole discretion, may integrate with third parties to make their Large-Language Models (LLMs), or other machine learning model(s), available for use on Sysrev. Users are under no obligation to use any third party, LLM, other machine learning model, or integrated service/technology. By using a feature(s) which relies on third-party services/technology, User agrees to all terms and conditions as stated in the third party’s Terms and Conditions and related agreements.

Neither OpenAI nor Gemini use User-supplied data for model training.

Information Collection and Use

For a better experience while using our Service, we may require you to provide us with certain personally identifiable information, including but not limited to first and last name, email address, cookies, and usage data. The information that we request will be retained by us and used as described in this privacy policy. The Service does use third party services that may collect information used to identify you. You can read more about the Sysrev Privacy Policy here.