Trust Center
As a compliance and ethics platform, we hold ourselves to the same standards we teach. Below you'll find the principles, policies, and security practices that govern how ThinkEthics.ai operates.
Code of Ethics
ThinkEthics.ai exists to help organizations understand and apply ethical and legal standards. We hold ourselves to the same standards we teach.
Every claim we make about the law, a regulation, or a compliance obligation is grounded in a primary or authoritative source. We do not publish content we have not verified.
We are transparent about what our platform can and cannot do. We do not claim certainty where none exists, and we do not present our AI assistant, Louis, as a substitute for licensed legal counsel.
When we make a mistake, we correct it and say so. Our Corrections Policy exists so that errors are fixed, not buried.
Our educational content is not influenced by advertisers, sponsors, or third parties. Our recommendations are based on what the law and authoritative guidance actually say.
We protect user data, we are clear about what we collect and why, and we do not use user information for purposes users have not agreed to.
This Code of Ethics governs how ThinkEthics.ai operates as a company. It is reviewed periodically and updated as the company grows.
Editorial Standards
Every lesson, scenario, quiz question, and AI response in ThinkEthics.aibegins with authoritative source material.
We prioritize primary legal and regulatory sources whenever they are available, including federal and state statutes, administrative regulations, government guidance, ethics commission opinions, court decisions, and official procurement regulations. We intentionally avoid relying on unverified secondary sources when primary authority exists.
Our training scenarios are developed against specific statutory and regulatory text. For example, our anti-corruption content is built from the DOJ's FCPA Resource Guide and related enforcement guidance, cross-referenced against current case law. Where federal law overlaps with state-level obligations relevant to government contractors, we cite the specific statute, such as 18 U.S.C. § 666, rather than describing the obligation in general terms.
Our AI assistant, Louis, is built to retrieve answers from a curated knowledge base of authoritative source material rather than generating unsupported answers from general internet knowledge. Wherever possible, Louis cites the underlying source so users can verify it directly rather than relying solely on a summary.
Educational content is reviewed by our founder, who holds a graduate degree in law and a GRC certification with an AI emphasis, before publication.
Laws and regulations change. We review content quarterly to identify changes that affect accuracy, and we update affected modules and citations accordingly.
Our objective is simple: teach people what the law actually says, not what a summary claims it says.
Privacy Policy
When you use ThinkEthics.ai, we collect account information you provide (such as name, email, and organization), usage data (such as training progress and quiz results), and interactions with Louis, our AI assistant.
We use this information to deliver the training platform, track completion for compliance recordkeeping, improve our content and product, and communicate with you about your account. We do not sell user data, and we do not use user data to train any AI model. ThinkEthics.ai's educational content and Louis's underlying knowledge base are built from statutes, regulations, and other authoritative legal and ethics sources, not from user data.
ThinkEthics.ai relies on established, independently audited third-party providers to operate the platform, including SOC 2 Type II certified providers for AI processing, application hosting, and knowledge base infrastructure. These providers are contractually limited to processing data on our behalf and do not use our data to train their own models. A detailed list of subprocessors is available to customers upon request.
We retain account information for the duration of your active subscription. Following cancellation or termination, account data is retained for up to 90 days to support reactivation and support requests, after which it is deleted or anonymized. Because training completion records serve your organization's own compliance and audit needs, we retain those records for up to seven years, consistent with common compliance recordkeeping practice. Interactions processed through our AI assistant, Louis, follow our AI provider's standard data retention policy: inputs and outputs are retained for up to 30 days to provide the service and detect abuse, then automatically deleted, and are not used to train the underlying models.
You may request access to, correction of, or deletion of your personal information by contacting us at support@thinkethics.ai.
We will update this page when our practices change and note the effective date below.
Effective date: July 7, 2026
Security Overview
ThinkEthics.ai serves organizations making decisions involving ethics, compliance, public-sector interaction, and legal risk. We therefore treat infrastructure security as a foundational product requirement rather than an afterthought.
ThinkEthics.ai was intentionally built using established cloud infrastructure providers selected in part for their security architecture, independent audits, encryption standards, access controls, resilience, and enterprise readiness.
ThinkEthics.ai's website, user accounts, learning environment, organizational data, and application functionality operate on modern cloud infrastructure that provides:
These capabilities form part of the underlying infrastructure supporting ThinkEthics.ai.
Louis's citation-backed retrieval architecture operates on enterprise-grade knowledge infrastructure designed to provide:
Customer information is processed only as necessary to provide authorized platform functionality.
AI processing used by Louis operates through an enterprise API environment designed for business use. The AI infrastructure supporting ThinkEthics.ai includes:
ThinkEthics.ai is designed around organization-level and role-based permissions so users access only the functionality and information appropriate to their organization and assigned role. Our infrastructure also supports row-level data controls and scoped access mechanisms designed to maintain appropriate separation between organizations and users.
Administrative access to production systems is deliberately restricted and governed according to least-privilege principles. As ThinkEthics.ai grows, production access will be expanded only when operationally necessary and will remain subject to appropriate access controls.
Our infrastructure providers were selected in part because of their established security programs, external audits, technical safeguards, and enterprise operating standards. ThinkEthics.ai periodically reviews relevant security, privacy, compliance, and trust documentation published by these providers. Specific subprocessor and infrastructure information is available to customers as appropriate during vendor-risk assessments, security reviews, or procurement processes.
ThinkEthics.ai itself has not yet completed an independent SOC 2 examination or obtained separate ISO 27001 certification. Certifications and independent assessments referenced throughout this Trust Center apply to the infrastructure providers supporting ThinkEthics.ai and should not be interpreted as independent certifications of ThinkEthics.ai. We disclose this distinction intentionally and will update this Trust Center as our own security and compliance program matures.
Organizations with security, privacy, vendor-risk, or public-sector procurement questions may contact support@thinkethics.ai. Additional information regarding infrastructure, subprocessors, data handling, access controls, and security practices may be provided during an appropriate organizational review.