Your Privacy Matters GDPR & CCPA Compliant

Privacy Policy

We're committed to protecting your data with enterprise-grade security and transparent practices.

Last Updated: November 26, 2025
~15 min read
AES-256
Encryption
SOC 2
Type II Certified
GDPR
Compliant
CCPA
Compliant
Section 1

Introduction

Section 2

Data We Collect

Information You Provide

  • Account Info: Name, email, phone, job title, company name
  • Billing: Payment details processed securely via Stripe
  • Profile: Photos, logos, brand voice preferences
  • Communications: Support messages and feedback

Automatic Collection

  • Usage Data: Pages visited, features used, interactions
  • Device Info: Device type, OS, browser, screen size
  • Log Data: IP address, access times, error logs
  • Location: General location from IP (not GPS)
Section 3

How We Use Your Data

1

Service Delivery

  • Providing and maintaining our reputation management platform
  • Generating AI-powered review responses using your brand voice
  • Aggregating and analyzing reviews across connected platforms
  • Processing payments and managing subscriptions
2

Platform Improvement

  • Analyzing usage patterns to improve features and UX
  • Training AI models using aggregated, anonymized data
  • Conducting R&D for new features
  • Troubleshooting technical issues and bugs
3

Communication

  • Sending transactional emails (confirmations, invoices)
  • Providing customer support and responding to inquiries
  • Sending marketing communications (with consent)
  • Notifying you of policy or service updates
4

Security & Compliance

  • Detecting and preventing fraud, abuse, or security threats
  • Enforcing our Terms of Service
  • Complying with legal obligations
  • Responding to lawful government requests
Section 5

Data Sharing & Third Parties

We do NOT sell your personal information to third parties.

Trusted Service Providers

Cloud Infrastructure

AWS, Google Cloud Platform

Payment Processing

Stripe (PCI-DSS compliant)

Email Services

SendGrid

SMS Services

Telnyx

AI Processing

OpenAI

Analytics

Mixpanel (anonymized)

Section 6

Data Security

Encryption

TLS 1.3 in transit, AES-256 at rest

Access Controls

Role-based access with MFA required

SOC 2 Type II

Independently audited compliance

Regular Audits

Annual penetration testing

Employee Training

Mandatory security awareness

Incident Response

72-hour breach notification

Section 7

Data Retention

Account Data

Retained while active + 30 days after deletion for recovery

30 days
Billing Records

Retained for tax and legal compliance requirements

7 years
Review Data

Deleted or anonymized after account termination

90 days
Usage Logs

Retained for security and analytics purposes

12 months
Section 8

Your Rights

GDPR Rights (EEA/UK)

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate or incomplete data
  • Erasure: Request deletion ("right to be forgotten")
  • Restriction: Limit how we process your data
  • Portability: Receive data in machine-readable format
  • Object: Object to processing or direct marketing
  • Withdraw Consent: Withdraw consent at any time

CCPA/CPRA Rights (California)

  • Know: Disclosure of data collected and sources
  • Delete: Request deletion of personal information
  • Correct: Correct inaccurate personal information
  • Opt-Out: Opt out of "sale" or "sharing" (we don't sell)
  • Limit Use: Limit use of sensitive personal information
  • Non-Discrimination: Equal service for exercising rights

Exercise Your Rights

Contact our privacy team - we'll respond within 30 days

privacy@zatisfied.io
Section 9

Cookies & Tracking Technologies

Essential Cookies

Required for authentication, security, and basic functionality. These cannot be disabled as they are necessary for the Service to operate.

Functional Cookies

Remember your preferences, settings, and choices to enhance your experience. You can disable these, but some features may not work properly.

Analytics Cookies

Help us understand how you use our Service, which pages are most popular, and how we can improve. Data is anonymized where possible.

Marketing Cookies

Used for advertising and retargeting purposes. These are only set with your explicit consent and can be managed through our cookie preferences.

Section 10

International Data Transfers

Standard Contractual Clauses (SCCs) Data Processing Agreements EU-Approved Safeguards Binding Corporate Rules
Section 11

Children's Privacy

Section 12

Contact Us