Askie.ai

Privacy Policy

Your privacy and security is of the utmost importance to us. This policy describes how we collect and use information about you in your use of our services, including our platform and the website. If you are one of our customers, you should read this policy in conjunction with our Terms of Service.

1. Who are we?

We are Askie, provider of a customer engagement platform for personal care services businesses. The processing explained in this policy is carried out by Askie as the data controller. This means that we are responsible for deciding how we hold and use personal data about you.

2. How do we collect your data?

We collect information about you in several ways:

  • Direct interactions: When you fill in a sign-up or contact form on our website, create an account, send us an email, or interact with our support team.
  • Automated technologies: When you visit our website, use our platform, view our advertisements, or read our marketing newsletters, we automatically collect information about you via cookies, web beacons, and other similar technologies. These are small files that your browser or our servers save for purposes such as saving your login session, remembering your display preferences, and tracking your use of our services. For more information on our use of cookies, please read our Cookies Notice.
  • Third parties: We may receive your personal data from third parties when you express interest in our services to them.

3. What data do we collect?

We collect two types of information about you: personal data and non-personal data.

Personal data

This is information that lets us know who you are. This includes:

  • Account information: Your name, business name, email address, postal address, phone number, associated domain name, and payment information provided during registration.
  • Login credentials: Username, password, and other authentication information.
  • Communications: Information you provide when contacting our support team or interacting with our services.
  • Service usage data: When you use our platform to manage appointments, communicate with clients, and collect reviews, we have access to the information contained in these communications as well as the contact information of your clients.
  • Payment information: Credit card details, billing information, and transaction history.

The data you submit should not include any sensitive personal data, such as government identifiers (i.e., social security, driving license, or taxpayer identification numbers), complete credit card or complete personal bank card numbers, medical records or particulars connected with healthcare applications.

Non-personal data

This is information that doesn't let us determine your identity. This generally comes from your use of the services after registering. Non-personal data includes information that could personally identify you in its original form, but that we have modified (for instance, by aggregation) to remove personal identifiers.

4. How do we use your data?

We use the information we collect about you to provide our services. As part of that purpose, we use your data:

  1. To create and maintain your platform account and to control access to it;
  2. To provide our services and facilitate performance, including verifications relating to you;
  3. To provide you with real-time logs of your use of the platform;
  4. To enable appointment management, client communications, and review generation;
  5. To respond to any requests you may submit for support or sales information;
  6. To communicate with you about our services (for example, through newsletters, marketing emails, announcements or special offers);
  7. For billing and collection purposes if you have subscribed to one of our paid plans;
  8. For the investigation, prevention, and management of fraud and for breaches of our Terms of Service;
  9. To enable third parties to provide services to us;
  10. To personalize, assess, and improve our services, content and materials;
  11. To comply with applicable laws to which we are subject.

We may use your non-personal data to enhance the services, for instance through web analytics or troubleshooting. We may also use aggregated or depersonalized information to promote our services, such as by citing usage statistics.

5. What are our purposes and legal basis for collecting your personal data?

  • Contract performance: Because we need it to perform a contract we have signed with you or because you have taken steps to enter into a contract with us (for instance, when you fill in a contact form or when you sign up for an account).
  • Consent: Based on your consent for specific purposes, such as marketing communications.
  • Legitimate interests: To enable us to foster and develop our business relationship, perform credit checks, or verify payment details.
  • Legal obligation: To comply with legal requirements to which we are subject.

6. With whom do we share personal data?

Except for the limited circumstances we describe here or in an applicable agreement or our Terms of Service, we do not share your personal data with third parties. When we need to provide your personal data to third parties, we will only share it to the extent necessary to provide you with our services, and we ensure that we have appropriate data protection agreements in place.

We may share your personal data with the following types of service providers:

Hosting Services

We host the website and operate the platform using third-party cloud services, including Firebase, Google Cloud Platform, and Cloudflare. Your data will be hosted in data centers based on where you have selected to deploy our services.

Payment Providers

We use third-party payment processors to handle subscription payments, and therefore provide them with the personal data required to charge your payment method and maintain payment records as required by law.

Website Functionalities and Optimization

We may use third-party services either embedded into our website or outside of it to communicate with you or to enhance the function of the website and services, and for product development and optimization.

Customer Engagement

We use third-party service providers and platforms for customer engagement, customer support ticketing, and product feedback.

Messaging Services

We use Twilio for SMS and communication services to facilitate appointment reminders and client communications.

In certain situations, we may be required to disclose personal data in response to lawful requests by public authorities or regulatory bodies, including to meet law enforcement requirements, in the case of a court order, a summons to appear in court, or any other similar requisition from a government or the judiciary, or to establish or defend a legal application.

Additionally, we will provide information to a third party in the event of any reorganization, merger, sale, joint venture, assignment, transfer, or other disposition of all or any portion of our business, assets, or stock (including in connection with any bankruptcy or similar proceedings).

7. For how long do we retain your personal data?

We keep your personal data for as long as is necessary to provide our services to you (unless otherwise required by law). If you would like us to cease all of the described uses of your personal data, you may delete your account at any time from the Account Settings section of our Dashboard. This will delete your personal data from our records (within a maximum of ninety (90) days), and we will make no further use of it. We may, however, retain copies of your personal data in backups for legal retention purposes and/or for our own legitimate business purposes.

8. How do we transfer your data?

Askie complies with applicable data protection regulations, including the European General Data Protection Regulation 2016/679 (GDPR) where applicable. For transfers of personal data from the EU and EEA, we maintain appropriate safeguards such as standard contractual clauses, data encryption, and data minimization practices.

9. What are your rights in connection with personal data?

In accordance with applicable data protection laws, you have the right to:

  1. Request access to your personal data. This enables you to receive a copy of the personal data we hold about you and to check that we are lawfully processing it.
  2. Request correction of the personal data that we hold about you. This enables you to have any incomplete or inaccurate information we hold about you corrected.
  3. Request erasure of your personal data. This enables you to ask us to delete or remove personal data where there is no legitimate reason for us to continue processing it.
  4. Withdraw your consent and opt-out from our communications. We will honor your opt-out within 14 days. Please note that you cannot unsubscribe from service-related messages if you remain a customer.
  5. Object to processing of your personal data, for example, if we are relying on a legitimate interest and there is something about your particular situation which makes you want to object to processing on this basis.
  6. Request restriction of processing of your personal data. This enables you to ask us to suspend the processing of personal data about you.
  7. Request the transfer of your personal data to another party (data portability).

If you want to exercise any of the above rights, please email our privacy team at [email protected].

10. Security

The security and integrity of your personal information is very important to us. We follow industry-accepted standards to protect the personal information submitted to us, both during transmission and once it is received. We ensure appropriate electronic, physical, and managerial procedures are in place to safeguard and preserve the data handled.

Our infrastructure is located in top-tier data centers. Each of these locations adheres to strict physical and procedural controls which are frequently audited. Our applications are routinely scanned for vulnerabilities and security tests are conducted regularly. Our employees undergo background checks (when allowed) and sign non-disclosure agreements.

We implement robust security measures including:

  • Data encryption in transit and at rest
  • Multi-factor authentication
  • Role-based access controls
  • Regular security audits
  • Secure tenant isolation in our multi-tenant architecture

Remember, though, that some parts of the services are public, and email/SMS, by their nature, are not reliably private means of communication. If you voluntarily provide personal data in a public area of the website, unrelated parties online will be able to view it and collect it.

11. Changes

The information provided in this policy may be modified to address new issues or changes to our services. If we make significant changes, we may notify you by other means (for instance, by email or with a banner on the website) prior to the change becoming effective. Any changes we make will take effect 30 days after the update date noted below. If you object to the changes, you may choose to close out your account with us before the new effective date.

Last revised: April 18, 2025

If you have any questions about this Privacy Policy, please contact us at [email protected].