Volver / Back

Privacy and Data Protection Policy

Last updated: March 2026

1. Data Collection

At Lilfy, we collect two types of information: (a) Organization Data (name, admin email, billing data) and (b) End-Customer Data. By acting as a CRM and AI language processor, Lilfy stores names, phone numbers, business preferences, and conversation histories of the end-customers interacting with your business.

2. Data Usage

The collected data is used exclusively to provide, maintain, and improve our B2B services. Lilfy analyzes conversation history using third-party Artificial Intelligence tools (such as OpenAI) strictly to classify leads (intents) and generated automated responses on behalf of your business. Lilfy DOES NOT sell, rent, or trade your end-customers' information to third parties for advertising purposes.

3. Protection and Security

We implement technical and organizational security measures (such as in-transit encryption and secure databases behind firewalls) to protect your information against unauthorized access, modification, or destruction. User passwords are not stored in plaintext on our servers.

4. Data Rights

As an Organization, you have the right to access, rectify, or request the complete deletion of your workspace and database (Right to be Forgotten). If an Organization's end-customers wish to have their data deleted, the Organization is responsible for processing this deletion using the tools provided by Lilfy.

5. AI Providers and Third Parties

For Artificial Intelligence functionalities, Lilfy transmits conversation snippets to Large Language Model (LLM) providers. We ensure we only use providers that comply with strict confidentiality agreements and that retain information solely under Zero-Data-Retention policies (excluding them from public model training).