Privacy Policy

Your privacy is important to us. This Privacy Policy explains how Spairr collects, uses, and protects your information when you use our AI agent platform.

INTRODUCTION

Spairr AI Automation LLP ("Spairr", "we", "us", "our") is committed to protecting the privacy and security of personal data.

This Privacy Policy describes how we collect, use, process, disclose, and protect personal data in connection with our platform and services, in accordance with applicable Indian laws including the Digital Personal Data Protection Act, 2023.

APPLICABILITY

This Privacy Policy applies to:

  • Business users of the Spairr platform
  • Individuals whose data is processed through our platform on behalf of our users
  • Visitors to our website

ROLE OF SPAIRR

Spairr acts as a data processor and processes personal data:

  • On behalf of its business users
  • Based on user-defined instructions and workflows

Spairr does not independently determine the purpose of processing such data.


Spairr processes personal data strictly based on instructions configured by authorized users of the platform.

CATEGORIES OF PERSONAL DATA

We may process the following categories of personal data:

Account Information

  • Name
  • Email address
  • Phone number
  • Login credentials

Business Data

  • Customer and lead information uploaded by users
  • Communication content (emails, messages, follow-ups)
  • Meeting notes and task-related data

Integration Data

  • Google and Microsoft account data (as authorized)
  • Email and calendar data

Technical Data

  • IP address
  • Device and browser information
  • Usage logs and authentication logs

PURPOSE OF PROCESSING

Personal data is processed for the following purposes:

  • Providing and operating the platform
  • Executing user-defined workflows and communications
  • Lead qualification and task execution
  • Customer support and service functionality
  • Platform improvement and analytics
  • Security monitoring and fraud prevention
  • Compliance with legal obligations

CONSENT

Processing of personal data is based on:

  • Consent provided by users
  • Instructions of business users acting as data fiduciaries

Business users are responsible for obtaining valid consent from their customers and end users before using the platform.

AI-BASED PROCESSING

Spairr uses AI technologies (including third-party providers such as OpenAI) to:

  • Analyse communication data
  • Assist in workflow execution
  • Categorise leads (e.g., hot, warm, cold)

Such processing:

  • Occurs strictly within user-defined workflows
  • Is assistive in nature
  • Does not independently determine outcomes
  • Remains configurable and reviewable by business users

Spairr does not use personal data to train AI models.

COMMUNICATION MANAGEMENT

All communications:

  • Are triggered based on user-defined rules and workflows
  • Are configured and controlled by business users

Spairr does not independently initiate communication without user-defined instructions.

Users retain full control to modify or stop workflows.

DISCLOSURE OF DATA

We may share data with third-party service providers, including:

  • Zoho Catalyst (Hosting – India)
  • Supabase (Database – India)
  • Make.com (Automation – EU)
  • OpenAI (AI processing)
  • Gmail API and Microsoft Outlook
  • Razorpay (Payments)
  • AuthKey.io (WhatsApp integration – when enabled)

These entities act as service providers and process data only for service delivery.

GOOGLE API SERVICES USER DATA POLICY COMPLIANCE

Spairr's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Google user data is accessed, processed, stored, and used solely to provide user-authorized functionality within the Spairr platform, including authentication, communication automation, scheduling, workflow execution, and related user-facing features.

OAuth access tokens and refresh tokens are securely stored and used only to perform actions explicitly authorized by the user.

Spairr does not sell Google user data, use Google user data for advertising purposes, or use Google user data to determine credit-worthiness or lending eligibility.

Spairr does not use Google Workspace API data to develop, improve, or train generalized artificial intelligence (AI) or machine learning (ML) models.

MICROSOFT API SERVICES DISCLOSURE

Spairr's use of information received from Microsoft APIs is limited to providing functionality explicitly requested and authorized by users, including authentication, communication automation, scheduling, workflow execution, and related user-facing features.

OAuth access tokens and refresh tokens are securely stored and used only to perform actions explicitly authorized by the user.

Microsoft user data is not sold to third parties and is not used for advertising purposes.

CROSS-BORDER DATA TRANSFER

Personal data may be transferred outside India (including to the EU and other jurisdictions) for processing.

We take reasonable steps to ensure such transfers comply with applicable laws and are subject to appropriate safeguards.

DATA RETENTION

We retain personal data:

  • For as long as necessary to provide services
  • As instructed by business users
  • As required for legal, security, or operational purposes

System logs are generally retained for up to 90 days unless required for legal or security purposes.

Upon account deletion, data is deleted or anonymized within a reasonable period.

DATA DELETION AND ACCOUNT INFORMATION

Users may request deletion of their account and associated data by contacting:

hello@spairr.com

Upon verified request:

  • User account data may be deleted or anonymized within a reasonable period
  • Connected OAuth tokens may be revoked
  • Associated workflow data may be removed unless retention is required for legal, security, or compliance purposes

Users may also revoke Google or Microsoft account access directly through their respective account security settings.

DATA SECURITY

We implement industry-standard administrative, technical, and organizational safeguards designed to protect personal data against unauthorized access, misuse, alteration, disclosure, or destruction.

  • Encryption in transit (HTTPS/TLS)
  • Encryption at rest via infrastructure providers
  • Secure authentication (password-based and OAuth)
  • Access control based on roles and organization
  • Secure handling of authentication tokens and credentials

COOKIES & ANALYTICS

Spairr may use cookies, session storage, and similar technologies for:

  • Authentication
  • Security
  • Platform Functionality
  • Analytics & performance monitoring

Users may control cookies through browser settings where applicable.

USER RESPONSIBILITIES

Business users are responsible for:

  • Ensuring lawful collection and use of personal data
  • Obtaining required consents from individuals
  • Configuring workflows appropriately

Spairr does not verify the legality of data provided by users.

RIGHTS OF INDIVIDUALS

Subject to applicable law, individuals may:

  • Request access to their data
  • Request correction or deletion
  • Withdraw consent
  • Raise grievances related to data processing

Requests may be directed to the relevant business user or to Spairr.

CHILDREN'S DATA

Spairr does not knowingly process personal data of individuals under 18 years of age.

NO SALE OF PERSONAL DATA

Spairr does not sell personal data.

CHANGES TO THIS POLICY

We may update this Privacy Policy from time to time. Updated versions will be published on our website.

GRIEVANCE OFFICER

CONTACT


Spairr AI Automation LLP

Email: hello@spairr.com

CONTACT INFORMATION

Spairr AI Automation LLP

Email: hello@spairr.com

Website: https://www.spairr.com


Registered Address:

Bengaluru, Karnataka, India