Data Controls
If you have any questions or feedback, please email us at legal@getlexi.io!
Last Updated: October 25, 2025
1. You Control Your Data
At Lexi, your data is yours and yours alone. We are committed to transparency and giving you complete control over your information.
- We never sell your data. Our business model is based on selling software, not your information. Your trust is our most valuable asset, and we earn it by delivering exceptional legal AI tools—not by monetizing your data.
- You own your data. Every document, every interaction, every piece of work product you create with Lexi belongs to you. We are simply the tool that helps you work more efficiently.
- Your privacy is paramount. We believe that legal professionals deserve the highest standards of data protection. Your work is confidential, and we treat it that way from the moment it enters our system until the moment you choose to delete it.
- Complete transparency. We are committed to being clear about what data we collect, how we use it, and who has access to it. This Data Controls page is designed to give you that clarity.
2. Data Processing
Cloud processing for optimal performance. By default, Lexi processes data in the cloud. This approach allows us to provide you with the most accurate legal insights and the lowest latency possible. Our cloud infrastructure is designed specifically for the demands of legal work—fast, reliable, and secure.
On-premises deployment available. We understand that some law firms and legal departments have strict requirements about where their data can be processed. If your organization requires on-premises deployment, we can work with you to implement a solution that meets your security and compliance needs. Please contact us at legal@getlexi.io to discuss on-premises options.
3. How We Use Your Data
We use your data solely to provide you with better legal assistance. Here's exactly how:
- Document context for better output. Lexi takes the context of the documents you're working with to produce more accurate, relevant, and useful suggestions. For example, if you're drafting a contract, Lexi understands the type of agreement, the parties involved, and the relevant clauses to provide tailored assistance. This contextual understanding is used exclusively to serve you—not for any other purpose.
- Learning from your behavior. As you interact with Lexi, the assistant learns your preferences, writing style, and workflow patterns. This allows Lexi to become increasingly helpful and personalized to your specific needs. Your associate grows with you and gets better as you use it.
- Your data is yours alone. Any learning or personalization that occurs is specific to your account. Your data is never used to train models for other users, nor is it shared across accounts. What you create with Lexi stays with you.
- No cross-contamination. We maintain strict separation between user accounts. Your work product, client information, and legal strategies remain completely isolated from other users' data.
4. Data Security & Compliance
Security is not just a feature at Lexi—it's our foundation. We implement industry-leading security measures to protect your data:
- Industry-standard encryption. We use industry-standard encryption to protect every single piece of data in our system. This includes encryption both in transit (when data is moving between your device and our servers) and at rest (when data is stored in our databases).
- Encrypted database. Your data is encrypted in our databases using advanced encryption standards. This ensures that even in the unlikely event of unauthorized access to our systems, your data remains unreadable and protected.
- Restricted access. Only authorized personnel have access to your data, and access is granted strictly on a need-to-know basis. Our team members are bound by confidentiality agreements and undergo regular security training.
- Regular security audits. We conduct regular security audits and assessments to identify and address potential vulnerabilities. Our security posture is continuously monitored and improved.
- SOC 2 Type 2 compliance in progress. We are currently in the process of becoming SOC 2 Type 2 compliant, which is the gold standard for security, availability, and confidentiality in the software industry. This certification demonstrates our commitment to maintaining the highest security standards.
5. Third-Party AI Providers
To deliver the best possible AI-powered legal assistance, Lexi uses a combination of technologies:
- Multiple AI providers. We use a combination of open-source models and proprietary large language model (LLM) providers, including industry leaders such as OpenAI and Anthropic. This multi-provider approach allows us to leverage the strengths of different models and provide you with the most accurate and reliable legal assistance.
- Zero data retention agreements. We have established strict contractual agreements with all third-party generative AI providers. These agreements ensure that:
- Your data is never stored or retained by these providers beyond what is necessary to process your immediate request
- Your data is never used to train or improve their models
- Your legal work never contributes to any external AI training datasets
- Your work stays yours. When you use Lexi to draft a contract, research a legal issue, or analyze a document, that work product is yours and yours alone. It is never used to train AI models that other users might access.
6. Legal-Specific Protections
Document Confidentiality
All documents you upload to Lexi are treated as strictly confidential. We implement strict access controls, maintain detailed audit trails, and ensure that your documents are never shared with third parties or used for purposes other than providing you with legal assistance. Every document is handled with the same level of care and discretion you would expect from a trusted legal colleague.
Client-Attorney Privilege Protection
We understand the sacred importance of attorney-client privilege in legal practice. Lexi is designed to respect and protect attorney-client privileged communications. We do not share your communications or work product with any third parties, and we maintain the confidentiality necessary to preserve privilege. While we take every precaution to protect privileged information, we recommend that you consult with your firm's ethics counsel regarding the use of AI tools in your specific jurisdiction and practice area.
Data Retention & Deletion
You have complete control over your data retention:
- Clear retention policies. We retain your data only for as long as necessary to provide our services and comply with legal obligations. You can review our specific retention periods in our Privacy Policy.
- Deletion requests. You can request deletion of your data at any time by contacting us at legal@getlexi.io. We will process your deletion request promptly and permanently remove your data from our systems within 30 days, unless we are required to retain it for legal or regulatory reasons.
- Account closure. If you choose to close your Lexi account, all of your data will be permanently deleted according to our retention schedule.