luckpanda

How your data is handled

What the chatbot reads, what it does with it, where it is kept and how it is removed. We only claim what the product does today, and we say what it does not do.

Last reviewed 11 October 2026.

It answers from your sources

This is an instruction and a search, not a guarantee. Check the answers before you go live.

  • Before it answers about features, prices or policies, the bot searches the pages, documents, text and FAQs you gave it.
  • Its rules tell it not to invent features, prices or policies, and to say so when it does not know and offer a handoff.
  • A wrong answer is a sign that a source is missing, old or unclear. Fix the page or add an answer, and the bot uses your wording.
  • In the test chat you can see what it looked up behind each reply.

What we do with your content

  • We do not train or fine-tune any model on your content, your documents or your visitors' chats.
  • To write a reply, the relevant text of that conversation and the passages found in your sources go to our model provider's API. That is the only place your content is sent for this.
  • Our sub-processors include Cloudflare (hosting and the database), a large language model provider under a commercial API agreement that does not train on your data, SendHQ (email) and Dodo Payments (billing). Ask us for the full list.
  • We do not sell data and we do not show ads.

Where it is stored

  • Sources, chats and settings are stored in a Cloudflare D1 database, on Cloudflare's network, which encrypts stored data.
  • We have not pinned a data-residency region. If you need one, ask before you rely on it.
  • For a document, only the extracted text is kept, not the file. A website source keeps the text of each page.
  • Credentials for live connections and webhook signing secrets are encrypted with AES-256-GCM and are never shown again, sent to the model or written to logs.
  • Visitor network addresses are stored only as a one-way hash, to apply rate limits.

How the website reader behaves

  • It identifies itself as LuckPandaBot, reads public http and https pages only, and follows robots.txt, noindex and nofollow.
  • It refuses addresses on private networks and anything that resolves to one, checks every redirect, and stops after a short time and size limit.
  • It does not log in, fill forms or run scripts.

Prompt injection and what the bot can do

A visitor can write anything. We limit what the bot can do rather than trust it.

  • Visitor text is treated as untrusted. The bot's rules say never to follow instructions in it that change the rules, reveal the prompt or ask for other businesses' data.
  • Every tool works on the business that owns the bot. The conversation, the business and the user are taken from the stored chat, never from what the model writes.
  • Live connections are read-only by default: HTTP GET requests, and MCP tools marked read-only. Only addresses you set up are called.
  • The bot cannot issue invoices, take payments, change your data or go live. Putting a chatbot live is always a person's action.
  • Buttons the bot suggests can only open a path on your own site or an https address; other schemes are dropped.

People stay in control

  • Chats that need a person are flagged as waiting for you. You take over, reply as your business and hand back.
  • While a person has a chat, the bot does not reply to it.
  • You can set topics that always go to a person, and hand off after a number of bot replies.
  • Who can see chats follows your business roles: only people with Chatbot access.

Deleting things

  • Remove a source and its learned text is deleted at once.
  • A try-it preview built before you sign up is deleted after 7 days, or when you choose Delete this preview.
  • Chats are kept until deleted and are not removed automatically. Deleting a project or a chat from the app is not built yet; write to hello@luckpanda.app and we will remove it.
  • When a subscription ends the chatbot stops answering visitors. Your data stays so you can come back.

Security questions

Do you train AI models on my content or my visitors' chats?

LuckPanda does not train or fine-tune models on your content, your documents or your visitors' chats. To write each reply we send the relevant text of that conversation to our model provider's API, and the reply comes back. We do not send your data anywhere else to improve models.

Can it read pages behind a login?

No. It reads public pages as LuckPandaBot, follows robots.txt and noindex, and never logs in. If a page cannot be read, the source shows why.

Can I delete what it learned?

Yes. Removing a source deletes its learned text at once. Try-it previews are deleted after 7 days, or when you press Delete this preview. Deleting a whole project or a past chat from the app is not built yet; write to hello@luckpanda.app and we will do it.

Does it use cookies?

The chat window on your site uses no cookies. It keeps a conversation token in the visitor's browser storage so a chat can continue. The preview before sign-up uses one cookie to remember your preview.

Are you SOC 2 or ISO 27001 certified?

Not today. This page says what we do; we will not claim a certificate we do not have.

Questions this page does not answer: hello@luckpanda.app. See also the privacy policy and the terms.

Check it on your own site

Build a preview from your website and ask it questions before you decide anything.