Privacy Policy
Last updated: February 2026
This Privacy Policy explains how AskOpenly ("we", "us") collects, uses, and protects personal data in connection with our website and platform (the "Services"). We designed AskOpenly to minimize data exposure — including on-premises and VPC options where your content never leaves your environment.
1. Data we collect
- Contact & demo-request data: name, work email, company, role, team size, and the use case you describe when you request a demo or contact us.
- Account data: credentials and profile information for provisioned users.
- Usage & log data: request metadata, feature usage, and diagnostic logs used to operate and secure the Services.
- Customer Data: documents and queries you submit. In hosted deployments we process these to provide the Services; in self-hosted / VPC deployments they remain in your environment.
2. How we use data
We use personal data to:
- respond to demo requests and sales inquiries, and evaluate qualification;
- provide, secure, and improve the Services;
- communicate about your account, security, and product updates; and
- comply with legal obligations.
We do not sell personal data, and we do not use your Customer Data to train shared or third-party models.
3. Legal bases
Where applicable (e.g., under GDPR), we process personal data on the bases of your consent, our legitimate interests in operating the business, performance of a contract, and compliance with legal obligations.
4. Sharing and subprocessors
We share personal data only with service providers who help us operate the Services (e.g., cloud hosting) under appropriate contractual protections, or when required by law. A current list of subprocessors is available on request.
5. Data retention
We retain personal data for as long as needed to fulfill the purposes described here, to comply with legal obligations, and to resolve disputes. Demo-request records are retained to manage our sales relationship and may be deleted on request.
6. Security
We apply technical and organizational measures including encryption in transit, access controls, in-stream PII redaction, and audit logging. No system is perfectly secure, but we design the platform to enforce least-privilege access at the data layer.
7. Your rights
Depending on your location, you may have rights to access, correct, delete, or port your personal data, and to object to or restrict certain processing. To exercise these rights, contact us at the address below. We honor right-to-erasure requests, which purge associated data from our systems.
8. International transfers
Where personal data is transferred across borders, we rely on appropriate safeguards such as standard contractual clauses. Self-hosted deployments allow you to keep data within your own jurisdiction.
9. Contact
For privacy questions or requests, contact privacy@askopenly.ai.
