Data Privacy & Terms

Last updated: August 25, 2026

1. Information We Collect

We collect information you provide directly to us, such as when you create an account, update your profile, or contact us for support. This may include:

1.1 Information You Provide

  • Account Information: Name, email address, phone number, and contact information
  • Profile Information: Professional details, bio, skills, experience, education, and portfolio content
  • Business Information: Company name, business registration details, products, services, and pricing
  • User-Generated Content: All content you create, upload, or share including text, images, documents, videos, and other media
  • Communications: Messages, support requests, feedback, and correspondence with us
  • Payment Information: Billing details (processed securely through third-party providers)

1.2 AI-Generated and Processed Content

AI Content Processing

We use artificial intelligence and machine learning services to help you create content. Your inputs and the AI-generated outputs are processed and may be stored as part of your content.

  • Text you provide as prompts or inputs to AI services
  • AI-generated content including profile descriptions, product descriptions, blog posts, and marketing materials
  • Preferences and settings for AI-powered features
  • Feedback on AI-generated content to improve service quality

Note: AI-generated content is processed through third-party AI providers under data processing agreements that prohibit them from using your data for their own purposes or model training.

1.3 Scraped and Imported Content

Web Scraping Features

If you use our web scraping features to import content from external websites, we collect and process the URLs you provide and the content extracted from those sources.

  • URLs and website addresses you authorize us to scrape
  • Content extracted from websites including text, images, and metadata
  • Scraping job settings, preferences, and parameters
  • Status and results of scraping operations

Your Responsibility: You are responsible for ensuring you have the legal right to scrape and use content from the sources you specify. We are not responsible for verifying the legality of web scraping activities you initiate.

1.4 Public Content

⚠️ Important: Public Information

Content you publish through Savantly becomes publicly accessible. This includes profiles, portfolios, business pages, products, services, and any other content you choose to make public.

  • Your published profile and business information
  • Products, services, and pricing you list publicly
  • Portfolio items, case studies, and testimonials
  • Public posts, comments, and interactions
  • Reviews and ratings you provide

Search Engines: Public content may be indexed by search engines like Google. Even after deletion, cached copies may remain in search engine indexes for some time.

1.5 Automatically Collected Information

  • Usage Data: Pages visited, features used, time spent, and interaction patterns
  • Device Information: Browser type, operating system, IP address, and device identifiers
  • Log Data: Server logs, error reports, and diagnostic information
  • Location Data: General geographic location based on IP address
  • Analytics: Performance metrics and usage statistics

2. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our services
  • Process transactions and send related information
  • Send technical notices, updates, security alerts, and support messages
  • Respond to your comments, questions, and customer service requests
  • Communicate with you about products, services, and events
  • Monitor and analyze trends, usage, and activities in connection with our services
  • Ensure compliance with legal obligations and protect our rights

2.1 AI and Machine Learning Processing

We use AI and machine learning services to:

  • Generate profile descriptions, product descriptions, and marketing content
  • Provide content suggestions and recommendations
  • Analyze your content to offer improvements
  • Extract structured information from unstructured data
  • Power search and discovery features

Third-Party AI Providers: We use Google Gemini for content generation and Qualetics for AI-assisted chat, analytics, and personalization features. These providers process your content under strict data processing agreements that:

  • Prohibit use of your data for their own purposes or model training
  • Require deletion of data after processing
  • Implement appropriate security measures
  • Comply with applicable data protection laws

2.4 Personalized Engagement

Personalized Greetings

When a recipient of an email campaign clicks a tagged link and visits a Savantly-powered page or chat widget, we may use their first name and the related campaign context to display a short, non-intrusive personalized greeting that invites them to engage.

  • We use a per-recipient link token to recognize the visitor and look up their first name from the associated contact record.
  • Only the visitor's first name and high-level campaign/page context are used; no sensitive personal details are shown.
  • The greeting is generated by our AI provider (Qualetics) and can be dismissed by the visitor at any time.
  • This personalization is shown only where permitted: in regions that require consent (such as the EEA, UK, and Switzerland), it appears only when the visitor has given the applicable consent.

Controller Responsibility: Where Savantly customers enable email campaigns and personalization on their own websites, those customers act as the data controller for their contacts and are responsible for providing appropriate notice and establishing a lawful basis for this processing. Savantly acts as a data processor on their behalf.

2.2 Web Scraping and Content Import

When you use our web scraping features, we:

  • Access the websites you specify to extract content
  • Process and structure the scraped content
  • Store the extracted content in your account
  • Use the content to populate your profile or business pages

Important: Savantly acts only as a tool provider. You are solely responsible for ensuring compliance with the terms of service of websites you scrape and all applicable laws.

2.3 Public Content Display

Content you publish is used to:

  • Display your public profile and business pages
  • Enable discovery through search and browse features
  • Show in recommendations to other users
  • Promote our platform (with your permission)

3. Information Sharing and Third Parties

We do not sell, trade, or otherwise transfer your personal information to third parties without your consent, except as described in this policy. We may share your information in the following circumstances:

  • With your explicit consent or at your direction
  • With trusted service providers who perform services on our behalf
  • To comply with legal obligations, court orders, or protect our rights
  • In connection with a business transfer, merger, or acquisition

Third-Party Services: We use third-party services including:

  • AI Service Providers: Google Gemini for content generation and Qualetics for AI-assisted chat, analytics, and personalization (data not retained by providers for their own purposes)
  • Payment Processors: Stripe, PayPal for transaction processing
  • Email Services: For communications and notifications
  • Analytics Services: For website performance monitoring
  • Cloud Storage: AWS, Google Cloud for secure data hosting
  • CDN Services: For content delivery and performance optimization

All third-party service providers are bound by data processing agreements and security requirements.

3.1 Public Content Sharing

When you publish content on Savantly:

  • It becomes publicly accessible to anyone on the internet
  • Other users can view, share links to, and interact with your content
  • Search engines may index your public content
  • We may feature your content in marketing materials (with permission)

4. Data Retention

We retain your information for as long as necessary to provide our services and fulfill the purposes outlined in this policy.

4.1 Active Account Data

  • Account Information: Retained while your account is active
  • Published Content: Retained until you delete it or close your account
  • Usage Data: Retained for up to 2 years
  • Log Data: Retained for up to 90 days

4.2 Deleted Content

  • Active Systems: Deleted within 30 days
  • Backup Systems: Removed within 90 days
  • Search Engine Caches: May persist beyond our control
  • Public Shares: Content shared by others may remain accessible

4.3 Legal Retention Requirements

Some data may be retained longer for legal or regulatory purposes:

  • Financial Records: 7 years (tax/accounting requirements)
  • Legal Holds: Duration of legal proceedings
  • Security Logs: As required by law
  • Anonymized Data: May be retained indefinitely for analytics

5. Data Security and Protection

We implement comprehensive technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction:

  • Encryption of data in transit and at rest
  • Regular security audits and vulnerability assessments
  • Access controls and authentication mechanisms
  • Secure data centers with physical security measures
  • Employee training on data protection best practices
  • Incident response procedures for data breaches

However, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to maintaining the highest standards.

6. Your Data Rights and Controls

Depending on your location, you may have certain rights regarding your personal information, including:

  • Access: The right to access and receive a copy of your personal information
  • Rectification: The right to correct or update your personal information
  • Erasure: The right to delete your personal information (see detailed deletion process below)
  • Restriction: The right to restrict or object to processing of your personal information
  • Portability: The right to receive your data in a structured, machine-readable format
  • Withdrawal of Consent: The right to withdraw consent for data processing at any time

7. Data Deletion Instructions

How to Request Data Deletion

You have the right to request deletion of your personal data. Here's how to do it:

Method 1: Self-Service Account Deletion

  1. Log into your Savantly account
  2. Navigate to your account settings or profile page
  3. Look for the "Delete Account" or "Data Management" section
  4. Follow the prompts to permanently delete your account and associated data
  5. Confirm your identity through email verification

Method 2: Contact Support

If you cannot access your account or prefer assistance, contact our support team:

  • Email: [email protected]
  • Subject Line: "Data Deletion Request"
  • Include: Your full name, email address, and reason for deletion

What Gets Deleted

When you request data deletion, we will remove:

  • Your account profile and personal information
  • All content you've created (profiles, portfolios, pitch decks)
  • Your usage history and analytics data
  • Communication history with our support team
  • Payment information (processed securely through third-party providers)
  • Any cached or backup copies of your data

Data Retention Exceptions

We may retain certain information for legal or business purposes:

  • Financial records required for tax and accounting purposes (7 years)
  • Data required to comply with legal obligations or court orders
  • Anonymized usage data for service improvement (no personal identifiers)
  • Security logs and audit trails (as required by law)

Deletion Timeline

  • Immediate: Account access and active data processing stops
  • Within 30 days: Complete deletion of personal data from active systems
  • Within 90 days: Removal from backup systems and archives
  • Ongoing: Regular audits to ensure complete deletion

Important Notes

  • Data deletion is permanent and cannot be undone
  • You will lose access to all your content and cannot recover it
  • We will send a confirmation email once deletion is complete
  • If you have active subscriptions, they will be cancelled

8. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience on our website:

  • Essential Cookies: Required for basic website functionality
  • Analytics Cookies: Help us understand how you use our website
  • Preference Cookies: Remember your settings and preferences
  • Marketing Cookies: Used to deliver relevant advertisements

You can control cookie settings through your browser preferences or our cookie consent banner.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for international transfers, including:

  • Standard Contractual Clauses (SCCs) for EU data transfers
  • Adequacy decisions where applicable
  • Certification under recognized privacy frameworks
  • Binding Corporate Rules for intra-group transfers

10. Children's Privacy

Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete such information promptly.

11. Data Breach Notification

In the event of a data breach that may affect your personal information, we will:

  • Notify affected users within 72 hours of discovery
  • Provide clear information about what happened and what data was affected
  • Explain the steps we're taking to address the breach
  • Offer guidance on protective measures you can take
  • Comply with all applicable legal notification requirements

12. Changes to This Policy

We may update this privacy policy from time to time to reflect changes in our practices or legal requirements. We will notify you of any material changes by:

  • Posting the updated policy on this page
  • Updating the "Last updated" date
  • Sending email notifications for significant changes
  • Displaying prominent notices on our website

13. Google API Services Integrations (Google Ads & Google Calendar)

Google API Services User Data Policy

Savantly's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

The use of raw or derived user data received from Workspace APIs will adhere to the Google User Data Policy, including the Limited Use requirements.

Savantly offers two optional Google integrations: Google Ads and Google Calendar. Each is connected separately by you, and neither is enabled by default. The sections below describe exactly what each integration accesses, how it is used, and how to revoke it.

13.1 Google Ads Integration

Savantly offers an optional Google Ads integration that allows Business plan users to create, manage, and monitor Google Ads campaigns directly within the Savantly platform. To enable this feature, users authenticate via Google OAuth and grant Savantly access to their Google Ads account using the https://www.googleapis.com/auth/adwords scope.

13.2 Data We Access from Google Ads

When you connect your Google Ads account, Savantly accesses:

  • Your Google Ads account ID and account name
  • Campaign names, budgets, statuses, and performance metrics (impressions, clicks, cost, conversions)
  • Ad group and ad information for campaigns created through Savantly
  • Conversion action definitions associated with your account

13.3 How We Use Google Ads Data

We use data obtained from Google Ads solely to provide the Google Ads integration feature you have explicitly requested. Specifically, we use it to:

  • Display your campaign performance and account status within Savantly
  • Create and manage campaigns on your behalf based on your instructions
  • Sync campaign statuses and metrics to keep your Savantly dashboard up to date
  • Enable you to pause, enable, or modify campaigns from within Savantly

We do not:

  • Use your Google Ads data to serve advertisements to you or others
  • Share, sell, or transfer your Google Ads data to any third party
  • Use your Google Ads data for any purpose other than operating the integration you requested
  • Use your Google Ads data for AI/ML model training or to build user profiles

13.4 Storage of Google Ads Data

OAuth access tokens and refresh tokens are stored securely and encrypted. Campaign performance data synced from Google Ads is stored in your account and deleted when you disconnect the integration or delete your account. We retain only the minimum data necessary to operate the feature.

13.5 Revoking Google Ads Access

You can disconnect the Google Ads integration at any time from Settings β†’ Integrations within Savantly. You can also revoke Savantly's access directly from your Google Account permissions page. Upon disconnection, all stored OAuth tokens are immediately deleted.

13.6 Google Calendar Integration

Savantly offers an optional Google Calendar integration so your AI assistant can schedule meetings with website visitors on your behalf. You connect your own Google account once from Settings β†’ Integrations. Bookings are created on your primary Google Calendar. Website visitors never sign in to Google and never gain access to your calendar; they only see the open times your assistant offers in chat. When you connect, Savantly requests only these scopes:

  • https://www.googleapis.com/auth/calendar.events β€” create the booked meeting, and delete it if the booking is cancelled
  • https://www.googleapis.com/auth/calendar.freebusy β€” read busy and free times to work out which slots are open

13.7 Data We Access from Google Calendar

When you connect your Google Calendar, Savantly accesses:

  • The email address of the connected Google account
  • Busy and free time ranges on your primary calendar
  • The meeting events Savantly itself creates, including any Google Meet link generated for them

We do not read the titles, descriptions, guests, or any other contents of your existing calendar events. Availability checks return only blocks of time marked busy or free.

13.8 How We Use Google Calendar Data

We use Google Calendar data solely to operate the scheduling feature you enabled. Specifically, we use it to:

  • Calculate the open appointment slots your assistant offers, based on your busy times, working hours, and meeting length
  • Create the confirmed meeting on your primary calendar once a visitor picks a time and provides their name and email
  • Add the visitor as an attendee so Google sends the calendar invitation, and attach a Google Meet link if you have enabled it
  • Delete the event we created if the meeting is cancelled through Savantly

The event we create includes the visitor's name and email address and a short summary of the chat conversation that led to the booking, so you know why the meeting was scheduled. Visitors provide these details in the chat for that purpose.

We do not:

  • Use your Google Calendar data for advertising or to serve advertisements
  • Sell, share, or transfer your Google Calendar data to any third party, other than sending the invitation through Google Calendar itself to the visitor who booked
  • Use your Google Calendar data to train AI or machine learning models, or to build user profiles
  • Read, export, or modify events that Savantly did not create

13.9 Storage and Retention of Google Calendar Data

We store the OAuth access and refresh tokens for the connected account encrypted at rest, and use them only on our servers. Alongside them we keep the connected Google account email, the primary calendar identifier, and your booking preferences such as timezone, meeting length, and working hours. For each appointment booked through Savantly we retain the visitor's name and email, any phone number or notes they provided, the conversation summary, the start and end times, and the Google event and Meet link identifiers. We keep only what is needed to show, reschedule, and cancel these bookings.

13.10 Revoking Google Calendar Access

You can disconnect Google Calendar at any time from Settings β†’ Integrations within Savantly, which immediately deletes the stored OAuth tokens and stops all further calendar access. You can also revoke access directly from your Google Account permissions page. Meetings already on your calendar remain there after disconnecting; you can delete them in Google Calendar as you would any other event.

13.11 Limited Use and AI processing of Workspace data

The use of raw or derived user data received from Workspace APIs will adhere to the Google User Data Policy, including the Limited Use requirements.

Google Calendar data is read and written only on Savantly's servers, through Google's Calendar API. We do not send raw Google Calendar events, event contents, OAuth tokens, or free/busy payloads to any third-party AI or machine learning service. We do not use Google Calendar data β€” raw, aggregated, or derived β€” to create, train, or improve foundational or generalized AI/ML models.

The website and WhatsApp assistant that offers open times is powered by Qualetics Data Machines (operated by Qualetics, the company that builds Savantly) on a commercial production plan. That assistant receives visitor chat messages and, when scheduling, the open time labels Savantly already computed on our servers. It does not receive your existing calendar events. A separate Qualetics generate-text machine may write a short summary of the visitor chat (not of your Google Calendar) onto the invitation we create. Qualetics processes this under agreements that prohibit using the data to train its models or for any purpose other than operating Savantly.

Google Gemini is used for optional website and marketing content generation. Gemini does not receive Google Calendar or other Workspace API user data.

14. Contact Information

If you have any questions about this privacy policy, data deletion, or your privacy rights, please contact us:

Privacy & Data Protection

Email: [email protected]

Response Time: Within 48 hours

General Support

Email: [email protected]

Response Time: Within 24 hours