🛡️ Trust & Privacy Center

Your Privacy Matters.

At Automataiz, protecting your business data is one of our highest priorities. This Privacy Policy explains how we collect, use, protect and manage your information when you use our AI Business Operating System.

Effective Date: August 14, 2026
Policy Version: 2026.2 (Enterprise)
Compliance: SOC2 Type II, ISO 27001, HIPAA, GDPR
01

Introduction & Scope

This Privacy Policy governs the manner in which AWAZME CONSULTING SERVICE, operating under the enterprise brand name Automataiz ("Automataiz", "we", "us", or "our"), collects, processes, stores, protects, and manages data collected from users, corporate subscribers, and visitors across our unified AI Business Operating System, APIs, web interfaces, and customer portals (collectively, the "Platform").

Automataiz operates as a sovereign B2B enterprise AI software provider. When our commercial customers utilize our platform to manage customer relationships, execute marketing campaigns, automate WhatsApp communications, or orchestrate autonomous AI agents, Automataiz generally operates as a Data Processor / Service Provider under applicable data protection frameworks, including the Digital Personal Data Protection Act (DPDPA), the European Union GDPR, the California Consumer Privacy Act (CCPA/CPRA), and global privacy regulations.

Scope & Corporate Identity:

Legal Entity: AWAZME CONSULTING SERVICE • Brand: Automataiz • GSTIN: 21BIIPK9304G1ZI
Corporate Office: OMM City, Mancheswar, Bhubaneswar, Odisha 751010, India
Registered Office: Bandhamundi, Rasgobindapur, Santoshpur, Mayurbhanj, Odisha 756030, India

02

Information We Collect

We adhere to strict data minimization principles. We only collect information that is strictly necessary to deliver, maintain, secure, and improve our sovereign AI business infrastructure.

Account & Business Data

Full name, corporate email address, business telephone/WhatsApp number, job title, company legal name, tax identification (GSTIN/VAT), and billing credentials.

Payment & Transaction Data

Processed via tokenized, PCI-DSS Level 1 compliant processors (Stripe & Razorpay). We never store full unencrypted credit card numbers on our infrastructure.

Communications & CRM Data

Messages, WhatsApp conversation logs, email headers, appointment schedules, contact records, customer support tickets, and form submissions managed by your workspace.

AI Inputs & Knowledge Vault

Customer prompt payloads, uploaded business documents (PDF, CSV, Docx), company SOPs, vectorized embeddings, and generated AI assistant completions.

Telemetry & Usage Metrics

IP addresses, browser user-agent, operating system, API request timestamps, error traces, and aggregate feature adoption statistics.

Third-Party Credentials

OAuth tokens, Meta WhatsApp Cloud API keys, and custom webhook configurations encrypted with AES-256 envelope key management.

03

How We Use Your Information

We use collected information solely for legitimate enterprise purposes, including:

  • Core OS Service Delivery: Providing real-time execution of the 8 native modules (Marketing, Sales, CRM, WhatsApp, Workflows, Finance, Community, and AI Assistants).
  • Autonomous Workflow Orchestration: Triggering event pipelines, lead routing, and scheduled broadcasts configured by workspace administrators.
  • Billing & Tax Administration: Generating automated invoices, verifying GST/VAT numbers, and processing recurring subscription cycles.
  • Security & Threat Prevention: Monitoring anomalous login attempts, mitigating DDoS attacks, enforcing MFA/SSO policies, and maintaining immutable audit logs.
  • Enterprise Customer Support: Diagnosing reported platform issues, investigating API error codes, and providing SLA-backed assistance.
04

AI Data Processing & Sovereign Privacy

Our AI architecture is designed from the ground up for strict data sovereignty and zero customer data leakage.

ZERO TRAINING ON CUSTOMER DATA POLICY

Automataiz NEVER uses customer prompts, proprietary business documents, CRM interactions, WhatsApp conversations, or generated AI completions to train, fine-tune, or improve public foundation models.

Key AI Governance Pillars:

  • Ephemeral Memory & Stateless Execution: Prompt payloads sent to Large Language Model inference endpoints are processed transiently in-memory and discarded immediately upon completion generation.
  • Sovereign RAG Vector Vaults: Custom knowledge bases (PDFs, SOPs, catalogs) uploaded to your workspace are isolated within single-tenant encrypted vector partitions that are physically un-queryable by other workspaces.
  • Bring-Your-Own-Key (BYOK) Support: Enterprise customers can route AI agent reasoning through their own private OpenAI, Anthropic, or Google Vertex AI enterprise agreements with zero data retention terms.
  • Human Review Safeguards: Our engineering personnel do NOT read, inspect, or manually review customer AI conversations unless explicitly requested in writing by the customer's verified security admin for technical triage.
05

Cookies & Tracking Technologies

We use cookies and similar browser storage mechanisms to maintain active sessions, remember user interface preferences, and protect against cross-site request forgery (CSRF).

  • Essential Cookies: Required for secure authentication, session routing, and platform load balancing. These cannot be disabled.
  • Functional Cookies: Store workspace preferences, active currency (INR / USD), and theme settings.
  • Analytics Cookies: Anonymized telemetry to measure page load speeds and API latency. You can manage or disable these in your browser settings.
06

Third-Party Services & Integrations

Automataiz integrates with reputable enterprise sub-processors to power global communications, payment rails, and cloud hosting. Each vendor is vetted through our annual security review and bound by Data Processing Agreements (DPAs):

  • Official Meta WhatsApp Cloud API: Encrypted carrier delivery of verified WhatsApp business messages.
  • Payment Gateways (Stripe / Razorpay): Tokenized, PCI-DSS Level 1 subscription billing and tax reconciliation.
  • Cloud Infrastructure (AWS / GCP): Encrypted multi-availability zone database hosting and vector processing.

Customer-enabled custom integrations (such as webhooks, Slack bots, or CRM syncs) only process information explicitly specified in your workflow configurations.

07

Data Security & Encryption

We implement defense-in-depth architectural controls to safeguard enterprise information against unauthorized access, alteration, or exfiltration:

  • Encryption Standards: All data in transit is protected using TLS 1.3 encryption. All data at rest is encrypted using military-grade AES-256 with envelope key rotation.
  • Access Controls & RBAC: Granular role-based permissions, automated session timeouts, and enforced multi-factor authentication (MFA).
  • SOC2 Type II & HIPAA Compliance: Annual third-party penetration testing, continuous vulnerability remediation, and signed Business Associate Agreements (BAAs).
  • Business Continuity: Continuous geo-replicated encrypted snapshots with a Recovery Point Objective (RPO) of < 1 hour.
08

International Data Transfers

Automataiz operates global cloud clusters. If data is transferred across international boundaries, we ensure appropriate legal transfer mechanisms are in place, including European Commission Standard Contractual Clauses (SCCs) and UK International Data Transfer Addendums.

Enterprise customers can select designated regional data residency zones (United States, European Union, APAC, or India) to keep customer data localized within sovereign geographical borders.

09

Data Retention & Deletion

We retain customer data for as long as your workspace account remains active. Upon subscription termination or explicit account closure:

  • 30-Day Grace Period: Customer admins have 30 days to execute 1-click self-serve data exports in standard JSON/CSV formats.
  • Irrevocable Purge: After 30 days, all workspace records, vector embeddings, uploaded media, and CRM logs are permanently and irrevocably overwritten from primary production databases.
  • Backup Lifecycle: Secondary encrypted system backups cycle out and expire automatically within 90 days.
10

Your Privacy Rights & Controls

Regardless of your geographic jurisdiction, Automataiz extends the following fundamental privacy rights to all users:

  • Right of Access & Portability: Request a complete digital copy of your personal and workspace data.
  • Right to Rectification: Correct inaccurate or incomplete account information directly within your settings.
  • Right to Erasure ("Right to be Forgotten"): Request the complete deletion of your personal records.
  • Right to Restrict or Object: Opt out of non-essential communications or specific automated processing.

To exercise any of these rights, email our Data Protection Office at privacy@automataiz.com.

11

Children's Privacy

The Automataiz AI Business Operating System is strictly an enterprise business solution designed for commercial entities, professionals, and organizations. The platform is not directed to individuals under the age of 18, and we do not knowingly collect or solicit personal data from minors. If we discover that personal information from a minor has been inadvertently collected, we will take immediate steps to delete that information.

12

Changes to This Privacy Policy

We may periodically update this policy to reflect enhancements to our AI architecture, new regulatory obligations, or platform feature expansions. In the event of material revisions, we will provide at least 30 days prior notice to workspace owners via administrative email and in-app notification banners prior to the change taking effect.

13

Contact Our Privacy & Legal Team

If you have questions, regulatory inquiries, or wish to execute an Enterprise Data Processing Agreement (DPA) or Business Associate Agreement (BAA), please contact our Data Protection and Compliance Desk:

General & Privacy: hello@automataiz.com
Legal & Governance: legal@automataiz.com
Phone & WhatsApp: +91 83380 91603

Corporate Office: Automataiz, OMM City, Mancheswar, Bhubaneswar, Odisha 751010, India

Registered Office: AWAZME CONSULTING SERVICE, Bandhamundi, Rasgobindapur, Santoshpur, Mayurbhanj, Odisha 756030, India

Contact Support Page →