Privacy Policy
Last updated: July 2026
This Privacy Policy explains how Tindavo ("we", "us") processes personal data when you use our website and AI assistant platform. We are a self-service SaaS product and host customer data in the European Union (Frankfurt); we process personal data in line with the GDPR.
1. Data we collect
Account data (name, email, company), billing data, usage and log data, and the content you send through the platform (messages, uploaded knowledge files). We do not sell personal data.
2. How we use data
To provide and operate the service, authenticate users, process payments, deliver AI responses, prevent abuse, comply with law, and — only with your consent — analytics and product communications.
3. Legal bases
We rely on contract performance, our legitimate interests, legal obligations, and your consent (for non-essential cookies and marketing).
4. Sub-processors
We use the vetted providers listed below; each is bound by a data-processing agreement. AI providers process content only to produce a response and, under their API terms, do not use it to train their models. If we add a provider, we update this page before it starts processing data.
- Vercel (US company; our application runs in the Frankfurt region) — hosting of the website, dashboard and API.
- Neon (US company; database hosted in Frankfurt, EU) — managed PostgreSQL: accounts, agents, conversations, knowledge base.
- Cloudflare R2 (US company; EU-jurisdiction bucket) — storage of the knowledge-base files you upload.
- Upstash (US company; data hosted in Frankfurt, EU — AWS eu-central-1) — Redis cache: the most recent messages of an active session (expire automatically within 24 hours), rate-limit and idempotency counters.
- Clerk (US) — authentication and account management: name, email, session data.
- Anthropic (US) — the model that generates assistant replies: prompt, conversation context and retrieved knowledge fragments.
- OpenAI (US) — embeddings for knowledge-base search: fragments of your documents and the search query.
- Cohere (Canada / US) — re-ranking of search results: the query and candidate fragments.
- Inngest (US) — background job queue: inbound channel messages and document-processing jobs.
- Langfuse (Germany, EU) — LLM tracing: prompt, question and answer text, model and retrieval scores.
- Sentry, operated by Functional Software, Inc. (US) — error monitoring: pseudonymous technical identifiers (tenant and agent IDs, hashed IP address) and error metadata (stack traces, request path, timestamps). Message content is not sent. The transfer is covered by Sentry's DPA with the EU Standard Contractual Clauses.
- Resend (US) — transactional email and the waitlist: recipient email address.
- Paddle, operated by Paddle.com Market Ltd (United Kingdom) — merchant of record for payments: billing and invoicing data. Card details never reach our servers.
- Meta Platforms Ireland (WhatsApp Cloud API) — only if you connect WhatsApp: messages between the end user and your assistant pass through Meta.
- Telegram (Telegram FZ-LLC, UAE) — only if you connect Telegram: messages between the end user and your assistant pass through Telegram.
- Not currently enabled: Stripe (US / Ireland), iyzico and PayTR (Türkiye) — alternative and regional payment processing.
5. Data location & transfers
Core customer data is hosted in the European Union: the database in Frankfurt (Neon), uploaded files in an EU-jurisdiction bucket (Cloudflare R2), LLM traces in the EU (Langfuse), the session cache in Frankfurt (Upstash), and the application itself runs in the Frankfurt region. Some sub-processors listed above operate outside the EU/EEA — in particular Sentry (United States), the AI providers (US / Canada) and Paddle (United Kingdom). Those transfers are covered by data-processing agreements with the EU Standard Contractual Clauses, or, for the United Kingdom, by the EU adequacy decision.
6. EU/EEA data subjects (GDPR)
If you are in the EU/EEA, you have the right to access, rectify, erase, restrict, port and object to processing of your personal data, and to lodge a complaint with your supervisory authority. To exercise these rights, contact us at the address below.
7. Retention
We keep personal data only as long as needed for the purposes above or as required by law, then delete or anonymise it.
8. Contact
For privacy questions or to exercise your rights, email hello@tindavo.com.