Effective Date: November 13, 2025
BotAhead ("we", "us", or "our") is committed to protecting your privacy and personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable data protection laws. This Privacy Policy explains how we handle your personal information when you use our services.
1. Data Controller
BotAhead Plt is the data controller responsible for your personal data. For any questions or concerns, please contact us at hello@botahead.com.
2. Data We Collect
We collect only the minimum personal data necessary to provide and improve our services:
• Account Information: Email address and name (when you create an account)
• Technical Data: IP address, browser type, and device information (automatically collected)
• Usage Data: Information about how you use our services (for service improvement)
We do not collect sensitive personal data such as identification numbers, financial information, or demographic details unless absolutely necessary for service delivery.
3. Legal Basis and Purpose
We process your personal data only for the following purposes:
• Service Delivery: To provide, maintain, and improve our products and services (Legal basis: Contract performance)
• Customer Support: To respond to your inquiries and provide technical assistance (Legal basis: Contract performance)
• Service Enhancement: To analyze usage patterns and improve user experience (Legal basis: Legitimate interest)
• Legal Compliance: To comply with applicable laws and regulations (Legal basis: Legal obligation)
We do not use your data for marketing, profiling, or automated decision-making without your explicit consent.
4. Data Security
We implement industry-standard security measures to protect your personal data:
• Encryption at Rest: All personal data is encrypted when stored on our systems
• Encryption in Transit: All data transmissions are encrypted using TLS/SSL protocols
• Access Controls: Strict access limitations ensure only authorized personnel can access personal data
• Regular Security Audits: We conduct periodic security assessments to identify and address vulnerabilities
5. Data Sharing and Disclosure
We do not sell, rent, or share your personal data with third parties for their marketing purposes. We may share limited data only in the following circumstances:
• Service Providers: With trusted vendors who process data on our behalf (e.g., cloud hosting providers) under strict contractual obligations
• Legal Requirements: When required by law, court order, or to protect our legal rights
All third-party processors are GDPR-compliant and bound by data protection agreements.
6. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this policy:
• Active account data is retained while your account remains active
• After account deletion, personal data is securely erased within 30 days
• Certain data may be retained longer if required by law or for legitimate business purposes (e.g., resolving disputes)
7. Your Rights Under GDPR
You have the following rights regarding your personal data:
• Right of Access: Request a copy of the personal data we hold about you
• Right to Rectification: Request correction of inaccurate or incomplete data
• Right to Erasure: Request deletion of your personal data ("right to be forgotten")
• Right to Restriction: Request limitation of processing in certain circumstances
• Right to Data Portability: Receive your data in a structured, commonly used format
• Right to Object: Object to processing based on legitimate interests
• Right to Withdraw Consent: Withdraw consent at any time (where processing is based on consent)
To exercise any of these rights, contact us at hello@botahead.com. We will respond within 30 days.
8. Cookies and Tracking
We use only essential cookies necessary for website functionality. These cookies:
• Enable basic website features and navigation
• Remember your session and preferences
• Do not track you across other websites
You can disable cookies in your browser settings, though this may affect website functionality.
9. International Data Transfers
If we transfer your data outside the European Economic Area (EEA), we ensure appropriate safeguards are in place, including:
• Standard Contractual Clauses approved by the European Commission
• Adequacy decisions for countries with equivalent data protection standards
• Encryption during all transfers
10. Children's Privacy
Our services are not directed to individuals under 16 years of age. We do not knowingly collect personal data from children. If you believe we have inadvertently collected such data, please contact us immediately.
11. Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will notify you of material changes via email or through our website. The "Effective Date" at the top indicates when the policy was last updated.
12. Contact and Complaints
For questions, concerns, or to exercise your rights, contact us at:
Email: hello@botahead.com
If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection supervisory authority.