Privacy Policy

Effective Date: November 13, 2025

BotAhead ("we", "us", or "our") is committed to protecting your privacy and personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws. This Privacy Policy explains how we handle your personal information when you use our services.


1. Data Controller

BotAhead Plt is the data controller responsible for your personal data. For any questions or concerns, please contact us at hello@botahead.com.


2. Data We Collect

We collect only the minimum personal data necessary to provide and improve our services:

Account Information: Email address and name (when you create an account)
Technical Data: IP address, browser type, and device information (automatically collected)
Usage Data: Information about how you use our services (for service improvement)

We do not collect sensitive personal data such as identification numbers, financial information, or demographic details unless absolutely necessary for service delivery.


3. Legal Basis and Purpose

We process your personal data only for the following purposes:

Service Delivery: To provide, maintain, and improve our products and services (Legal basis: Contract performance)
Customer Support: To respond to your inquiries and provide technical assistance (Legal basis: Contract performance)
Service Enhancement: To analyze usage patterns and improve user experience (Legal basis: Legitimate interest)
Legal Compliance: To comply with applicable laws and regulations (Legal basis: Legal obligation)

We do not use your data for marketing, profiling, or automated decision-making without your explicit consent.


4. Data Security

We implement industry-standard security measures to protect your personal data:

Encryption at Rest: All personal data is encrypted when stored on our systems
Encryption in Transit: All data transmissions are encrypted using TLS/SSL protocols
Access Controls: Strict access limitations ensure only authorized personnel can access personal data
Regular Security Audits: We conduct periodic security assessments to identify and address vulnerabilities


5. Data Sharing and Disclosure

We do not sell, rent, or share your personal data with third parties for their marketing purposes. We may share limited data only in the following circumstances:

Service Providers: With trusted vendors who process data on our behalf (e.g., cloud hosting providers) under strict contractual obligations
Legal Requirements: When required by law, court order, or to protect our legal rights

All third-party processors are GDPR-compliant and bound by data protection agreements.


6. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy:

• Active account data is retained while your account remains active
• After account deletion, personal data is securely erased within 30 days
• Certain data may be retained longer if required by law or for legitimate business purposes (e.g., resolving disputes)


7. Your Rights Under GDPR

You have the following rights regarding your personal data:

Right of Access: Request a copy of the personal data we hold about you
Right to Rectification: Request correction of inaccurate or incomplete data
Right to Erasure: Request deletion of your personal data ("right to be forgotten")
Right to Restriction: Request limitation of processing in certain circumstances
Right to Data Portability: Receive your data in a structured, commonly used format
Right to Object: Object to processing based on legitimate interests
Right to Withdraw Consent: Withdraw consent at any time (where processing is based on consent)

To exercise any of these rights, contact us at hello@botahead.com. We will respond within 30 days.


8. Cookies and Tracking

We use only essential cookies necessary for website functionality. These cookies:

• Enable basic website features and navigation
• Remember your session and preferences
• Do not track you across other websites

You can disable cookies in your browser settings, though this may affect website functionality.


9. International Data Transfers

If we transfer your data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, including:

• Standard Contractual Clauses approved by the European Commission
• Adequacy decisions for countries with equivalent data protection standards
• Encryption during all transfers


10. Children's Privacy

Our services are not directed to individuals under 16 years of age. We do not knowingly collect personal data from children. If you believe we have inadvertently collected such data, please contact us immediately.


11. Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify you of material changes via email or through our website. The "Effective Date" at the top indicates when the policy was last updated.


12. Contact and Complaints

For questions, concerns, or to exercise your rights, contact us at:

Email: hello@botahead.com

If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection supervisory authority.