Privacy Policy
Your privacy is important to us. This Privacy Policy explains how Spairr collects, uses, and protects your information when you use our AI agent platform.
INTRODUCTION
Spairr AI Automation LLP ("Spairr", "we", "us", "our") is committed to protecting the privacy and security of personal data.
This Privacy Policy describes how we collect, use, process, disclose, and protect personal data in connection with our platform and services, in accordance with applicable Indian laws including the Digital Personal Data Protection Act, 2023.
APPLICABILITY
This Privacy Policy applies to:
- Business users of the Spairr platform
- Individuals whose data is processed through our platform on behalf of our users
- Visitors to our website
ROLE OF SPAIRR
Spairr acts as a data processor and processes personal data:
- On behalf of its business users
- Based on user-defined instructions and workflows
Spairr does not independently determine the purpose of processing such data.
Spairr processes personal data strictly based on instructions configured by authorized users of the platform.
CATEGORIES OF PERSONAL DATA
We may process the following categories of personal data:
Account Information
- Name
- Email address
- Phone number
- Login credentials
Business Data
- Customer and lead information uploaded by users
- Communication content (emails, messages, follow-ups)
- Meeting notes and task-related data
Integration Data
- Google and Microsoft account data (as authorized)
- Email and calendar data
Technical Data
- IP address
- Device and browser information
- Usage logs and authentication logs
PURPOSE OF PROCESSING
Personal data is processed for the following purposes:
- Providing and operating the platform
- Executing user-defined workflows and communications
- Lead qualification and task execution
- Customer support and service functionality
- Platform improvement and analytics
- Security monitoring and fraud prevention
- Compliance with legal obligations
CONSENT
Processing of personal data is based on:
- Consent provided by users
- Instructions of business users acting as data fiduciaries
Business users are responsible for obtaining valid consent from their customers and end users before using the platform.
AI-BASED PROCESSING
Spairr uses AI technologies (including third-party providers such as OpenAI) to:
- Analyse communication data
- Assist in workflow execution
- Categorise leads (e.g., hot, warm, cold)
Such processing:
- Occurs strictly within user-defined workflows
- Is assistive in nature
- Does not independently determine outcomes
- Remains configurable and reviewable by business users
Spairr does not use personal data to train AI models.
COMMUNICATION MANAGEMENT
All communications:
- Are triggered based on user-defined rules and workflows
- Are configured and controlled by business users
Spairr does not independently initiate communication without user-defined instructions.
Users retain full control to modify or stop workflows.
DISCLOSURE OF DATA
We may share data with third-party service providers, including:
- Zoho Catalyst (Hosting – India)
- Supabase (Database – India)
- Make.com (Automation – EU)
- OpenAI (AI processing)
- Gmail API and Microsoft Outlook
- Razorpay (Payments)
- AuthKey.io (WhatsApp integration – when enabled)
These entities act as service providers and process data only for service delivery.
GOOGLE API SERVICES USER DATA POLICY COMPLIANCE
Spairr's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Google user data is accessed, processed, stored, and used solely to provide user-authorized functionality within the Spairr platform, including authentication, communication automation, scheduling, workflow execution, and related user-facing features.
OAuth access tokens and refresh tokens are securely stored and used only to perform actions explicitly authorized by the user.
Spairr does not sell Google user data, use Google user data for advertising purposes, or use Google user data to determine credit-worthiness or lending eligibility.
Spairr does not use Google Workspace API data to develop, improve, or train generalized artificial intelligence (AI) or machine learning (ML) models.
MICROSOFT API SERVICES DISCLOSURE
Spairr's use of information received from Microsoft APIs is limited to providing functionality explicitly requested and authorized by users, including authentication, communication automation, scheduling, workflow execution, and related user-facing features.
OAuth access tokens and refresh tokens are securely stored and used only to perform actions explicitly authorized by the user.
Microsoft user data is not sold to third parties and is not used for advertising purposes.
CROSS-BORDER DATA TRANSFER
Personal data may be transferred outside India (including to the EU and other jurisdictions) for processing.
We take reasonable steps to ensure such transfers comply with applicable laws and are subject to appropriate safeguards.
DATA RETENTION
We retain personal data:
- For as long as necessary to provide services
- As instructed by business users
- As required for legal, security, or operational purposes
System logs are generally retained for up to 90 days unless required for legal or security purposes.
Upon account deletion, data is deleted or anonymized within a reasonable period.
DATA DELETION AND ACCOUNT INFORMATION
Users may request deletion of their account and associated data by contacting:
hello@spairr.com
Upon verified request:
- User account data may be deleted or anonymized within a reasonable period
- Connected OAuth tokens may be revoked
- Associated workflow data may be removed unless retention is required for legal, security, or compliance purposes
Users may also revoke Google or Microsoft account access directly through their respective account security settings.
DATA SECURITY
We implement industry-standard administrative, technical, and organizational safeguards designed to protect personal data against unauthorized access, misuse, alteration, disclosure, or destruction.
- Encryption in transit (HTTPS/TLS)
- Encryption at rest via infrastructure providers
- Secure authentication (password-based and OAuth)
- Access control based on roles and organization
- Secure handling of authentication tokens and credentials
COOKIES & ANALYTICS
Spairr may use cookies, session storage, and similar technologies for:
- Authentication
- Security
- Platform Functionality
- Analytics & performance monitoring
Users may control cookies through browser settings where applicable.
USER RESPONSIBILITIES
Business users are responsible for:
- Ensuring lawful collection and use of personal data
- Obtaining required consents from individuals
- Configuring workflows appropriately
Spairr does not verify the legality of data provided by users.
RIGHTS OF INDIVIDUALS
Subject to applicable law, individuals may:
- Request access to their data
- Request correction or deletion
- Withdraw consent
- Raise grievances related to data processing
Requests may be directed to the relevant business user or to Spairr.
CHILDREN'S DATA
Spairr does not knowingly process personal data of individuals under 18 years of age.
NO SALE OF PERSONAL DATA
Spairr does not sell personal data.
CHANGES TO THIS POLICY
We may update this Privacy Policy from time to time. Updated versions will be published on our website.
GRIEVANCE OFFICER
CONTACT
Spairr AI Automation LLP
Email: hello@spairr.com
CONTACT INFORMATION
Spairr AI Automation LLP
Email: hello@spairr.com
Website: https://www.spairr.com
Registered Address:
Bengaluru, Karnataka, India