TRUST & DATA HANDLING

Your unpublished workstays yours.

Thesify is built and run by a Swiss company on European infrastructure. Your manuscripts are not used to train public AI models, they are never sold, and they are deleted when you are done with them. This page sets out exactly what we store, where it lives and how long we keep it — the answers your research office, library or supervisor will ask for.

Theo catching papers in a net and sorting them through a funnel

IN SHORT

Where is my data processed, and is it used to train AI models?

Thesify is operated by thesify SA in Renens, Switzerland, and the service is hosted in Switzerland — a country the European Commission recognises as providing an adequate level of data protection. Your documents are not used to train public AI models and are never sold. Personal data is deleted or anonymised within three months of closing your account.

Switzerland
Where the service is operated and hosted
EU adequacy
Swiss data protection is recognised by the European Commission
3 months
Maximum retention of personal data after you close your account

THE SHORT ANSWERS

What a research office needs to know.

Six commitments that decide whether a tool can be used on unpublished research. Each one is written into our Terms and Privacy Policy, not just this page.

Theo in glasses holding a diploma and a briefcase

European hosting, EU adequacy

The service runs on European infrastructure and is operated by thesify SA, a company registered in Renens, Vaud. Switzerland holds an EU adequacy decision, so institutions in the EU and EEA can use Thesify without arranging additional transfer safeguards.

Never used to train public models

Your draft is processed to produce your review, your digests and your journal matches — and that is all. We do not use your documents to train public AI models, and one researcher’s work never shows up in another’s results.

Deleted on your schedule

Delete a document or an entire project whenever you want and it goes with it. Close your account and your personal data is deleted or anonymised within three months at the latest, or sooner if you ask us.

You keep the copyright

You retain full ownership of everything you upload and write. Thesify claims no rights over your manuscripts, and we never publish, license or resell what you put into the product.

Encrypted in transit and at rest

Everything travels over TLS, and documents are stored with industry-standard encryption. Access inside Thesify is limited to the people who need it to keep the service running or to answer your support request.

A short list of processors

A handful of providers help us operate — hosting, payments, email and support. Each is bound by contract to protect your information, and we do not sell personal data to anyone, ever.

WHAT WE STORE

Every category of data, and how long it stays.

If you are filling in a supplier questionnaire, this is the table to copy from. Ask us for anything that is missing and we will put it in writing.

Manuscripts and documents you upload

Why we hold it
To produce your feedback report, digests and journal matches
How long we keep it
While the project exists — removed when you delete the document or project

Feedback reports, digests and chat history

Why we hold it
So you can revisit, export and act on your review
How long we keep it
Alongside the project they belong to

Account details: name, email, institution

Why we hold it
To sign you in, support you and apply your institution’s licence
How long we keep it
Until you close your account, then deleted or anonymised within 3 months

Payment and invoicing records

Why we hold it
Billing, tax and accounting obligations
How long we keep it
For as long as accounting law requires us to keep them

Support conversations

Why we hold it
To answer your question and follow up on it
How long we keep it
Until the request is resolved and no longer needed for support

Product usage analytics

Why we hold it
To see which features help researchers and where the product breaks
How long we keep it
Aggregated, and never tied to the text of your manuscript

Retention periods follow our Privacy Policy. For a data processing agreement or a completed security questionnaire, email contact@thesify.ai.

WHERE WE DRAW THE LINE

The things Thesify will not do with your research.

Integrity is the product. These limits are the reason supervisors and integrity officers are comfortable with researchers using Thesify.

We do not sell your personal information

Not to advertisers, not to data brokers, not to publishers. Our revenue comes from subscriptions and institutional licences only.

We do not train public AI models on your documents

Your unpublished manuscript is not training data. It is processed to generate your own review and nothing else.

We do not show your work to other users

A project is visible to you and to the co-authors you invite. Nobody else — inside or outside your institution — can see it.

We do not write your paper for you

Thesify reviews the writing you have done and explains what to improve, so the argument and the words stay yours. That is what makes it safe under academic integrity rules.

We do not hold on to data you have asked us to delete

Deletion requests are acted on, not queued indefinitely. Email contact@thesify.ai and we will confirm when it is done.

THE FULL DOCUMENTS

Everything above, in the binding version.

This page is the plain-language summary. The policies below are what you agree to, and what your legal team should read.

Frequentlyasked questions.

Who operates Thesify, and where is it hosted? +

Thesify is operated by thesify SA, a company registered at Chem. du Closel 5, 1020 Renens, Vaud, Switzerland. The service is hosted in Switzerland, so your data is processed there rather than being moved between regions.

Can institutions in the EU and EEA use Thesify under the GDPR? +

Yes. Switzerland is covered by a European Commission adequacy decision, which means transfers from the EU and EEA to Switzerland do not need additional safeguards such as standard contractual clauses. We also act on data subject requests — access, correction and deletion — at contact@thesify.ai.

Are my documents used to train AI models? +

No. Documents you upload are processed to produce your feedback, digests and journal matches. They are not used to train public AI models, are not shared with other users, and are never sold to third parties.

How long do you keep my manuscripts and my account data? +

Documents stay while their project exists and are removed when you delete them. Personal data is kept only as long as it is needed, and no longer than three months after your account is terminated, at which point it is deleted or anonymised. Payment records are kept for the period accounting law requires.

Who inside Thesify can see my manuscript? +

Your project is private to you and any co-authors you invite. Internal access is limited to the people who need it to operate the service or to answer a support request you have raised, and everything is stored with industry-standard encryption.

Can we get a DPA or a completed security questionnaire? +

Yes — email contact@thesify.ai with what your procurement or research office needs. We regularly work through data processing agreements, security questionnaires and institutional reviews as part of setting up a licence.

Do you support institution-wide licences? +

Yes. Institutional licences cover students, researchers and faculty under one agreement with central invoicing and onboarding support. See the Institutions page for what is included, or contact us for a proposal.

academic integrity.

Still have a question your policy team needs answered? Ask us directly.

Contact Us