Privacy Policy

Last Updated:

1. Introduction

HeyParker.ai ("we," "our," or "us") operates an AI agent platform that provides intelligent automation and assistance services. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform.

2. Information We Collect

2.1 Account Information

  • Email address and authentication credentials

  • Profile information (name, organization)

  • Billing and payment information

2.2 Usage Data

  • API requests and responses

  • Agent interactions and conversation logs

  • Performance metrics and usage analytics

  • Device and browser information

  • IP addresses and location data

2.3 AI Training Data

  • User inputs and prompts submitted to AI agents

  • Feedback on AI responses and corrections

  • Custom agent configurations and workflows

2.4 Technical Data

  • Server logs and error reports

  • Database queries and response times

  • Authentication tokens and session data

3. How We Use Your Information

3.1 Service Provision

  • Process and respond to your AI agent requests

  • Maintain and improve platform functionality

  • Provide customer support and troubleshooting

3.2 AI Model Enhancement

  • Train and improve our AI models (with appropriate anonymization)

  • Develop new features and capabilities

  • Optimize response accuracy and performance

3.3 Platform Operations

  • Monitor system performance and security

  • Conduct analytics for service improvement

  • Ensure compliance with usage policies

4. Data Processing and Storage

4.1 Infrastructure

  • Data is stored on secure AWS infrastructure, GCP and Vercel (EC2, Lambda, Fargate)

  • Database management through Supabase with encryption at rest

  • Serverless functions for processing sensitive operations

4.2 Data Retention

  • Conversation logs: 90 days (unless explicitly deleted)

  • Account data: Duration of account plus 30 days

  • Analytics data: 24 months in aggregated form

  • Billing records: As required by law

4.3 Data Security

  • End-to-end encryption for sensitive communications

  • Regular security audits and vulnerability assessments

  • Access controls and authentication via secure tokens

  • Automated backup and disaster recovery procedures

5. Third-Party Services

We integrate with the following services that may process your data:

5.1 Essential Services

  • Supabase: Database and authentication services

  • AWS Services: Cloud infrastructure and computing

  • Postmark: Email delivery and notifications

5.2 Analytics and Monitoring

  • Performance monitoring tools

  • Error tracking and logging services

  • Usage analytics (anonymized)

5.3 Payment Processing

  • Secure payment processors for billing

  • PCI-compliant transaction handling

6. AI-Specific Privacy Considerations

6.1 Model Training

  • Personal data is anonymized before use in model training

  • You can opt out of having your data used for training

  • We implement differential privacy techniques where applicable

6.2 AI Responses

  • AI responses are generated based on your inputs and our models

  • We do not guarantee accuracy of AI-generated content

  • Conversations may be reviewed for quality assurance

6.3 Data Minimization

  • We only collect data necessary for AI functionality

  • Automatic deletion of unnecessary conversation data

  • Regular audits of data collection practices

7. Your Rights and Controls

7.1 Access and Portability

  • Request copies of your personal data

  • Export conversation history and agent configurations

  • API access to retrieve your data programmatically

7.2 Correction and Deletion

  • Update or correct your account information

  • Delete specific conversations or entire account

  • Right to be forgotten (where legally applicable)

7.3 Control Over AI Training

  • Opt out of data use for model training

  • Request exclusion of specific conversations

  • Control over data sharing with third parties

8. Data Sharing and Disclosure

We do not sell your personal data. We may share information in these circumstances:

8.1 With Your Consent

  • When you explicitly authorize sharing

  • For integrations you've enabled

8.2 Service Providers

  • Third-party vendors supporting our operations

  • Cloud infrastructure providers (AWS)

  • Payment processors and email services

8.3 Legal Requirements

  • To comply with legal obligations

  • To protect our rights and users' safety

  • In response to valid legal requests

9. International Data Transfers

  • Data may be processed in multiple AWS regions

  • We implement appropriate safeguards for international transfers

  • Compliance with GDPR, CCPA, and other applicable regulations

10. Cookies and Tracking

10.1 Essential Cookies

  • Authentication and session management

  • Platform functionality and preferences

10.2 Analytics Cookies

  • Usage patterns and performance metrics

  • Error tracking and debugging information

10.3 Cookie Control

  • Manage cookie preferences in your account settings

  • Browser-level cookie controls respected

11. Data Breach Notification

In the event of a data breach:

  • We will notify affected users within 72 hours

  • Relevant authorities will be informed as required

  • We will provide clear information about the incident and our response

12. Children's Privacy

Our platform is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13.

13. Updates to This Policy

  • We may update this policy periodically

  • Users will be notified of material changes

  • Continued use constitutes acceptance of updates

14. Contact Information

For privacy-related questions or requests:

Email: privacy@heyparker.ai

Address: [Your Business Address]

Data Protection Officer: [If applicable]

15. Jurisdiction and Compliance

This policy is governed by [Your Jurisdiction] law and complies with:

  • General Data Protection Regulation (GDPR)

  • California Consumer Privacy Act (CCPA)

  • Other applicable privacy laws