Privacy Policy
Effective: August 27, 2025•Last Updated: August 27, 2025
Scope
This Privacy Policy describes how Wisplet (“Wisplet”, “we”, “us”, or “our”) collects, uses, discloses, and safeguards personal information when you access our websites, applications, products, and services (collectively, the “Services”). By using the Services, you acknowledge this Policy. If you do not agree, please discontinue use.
Information We Collect
- Account & Authentication: email, name (if provided), identifiers, authentication tokens, session data.
- Billing: subscription and transaction details processed by our payment processors. We do not store full payment card numbers.
- Content You Provide: prompts, messages, uploads, and other materials you submit or generate via the Services.
- Usage & Device: log data (e.g., timestamps, pages viewed), device and browser type, IP address, coarse location derived from IP, and event telemetry necessary to operate and protect the Services.
- Support: information you share when contacting us, including attachments and diagnostics.
We may aggregate or de-identify information so it cannot reasonably identify you. Aggregated or de-identified data is not considered personal data under this Policy.
How We Use Information
- Provide, operate, and improve the Services and underlying infrastructure.
- Authenticate users, secure accounts, and prevent fraud, abuse, and misuse.
- Process payments and manage subscriptions, trials, and entitlements.
- Personalize features and content you request (e.g., settings, preferences).
- Provide support, communicate service updates, and respond to inquiries.
- Comply with legal obligations, enforce our Terms, and protect rights and safety.
- Perform analytics to understand service performance and reliability.
Legal Bases (GDPR/UK GDPR)
Where applicable, we rely on the following legal bases:
- Contract — to provide the Services you request.
- Legitimate Interests — to secure, maintain, and improve the Services.
- Consent — where required (e.g., certain cookies or communications).
- Legal Obligation — to comply with laws and regulations.
International Data Transfers
We may transfer and process personal data in countries other than your own. Where required, we implement appropriate safeguards for cross-border transfers (e.g., Standard Contractual Clauses, UK Addendum, comparable mechanisms) to protect your data in accordance with applicable law.
Data Retention
We retain personal data only for as long as necessary to fulfill the purposes described in this Policy, to comply with legal obligations, resolve disputes, and enforce agreements. We may retain aggregated or de-identified data for analytics and service improvement.
Security
We employ administrative, technical, and physical safeguards designed to protect personal data, including encryption in transit, access controls, and monitoring. No method of transmission or storage is 100% secure; we continuously work to enhance our protections.
Children’s Privacy
The Services are not directed to children under 13 (or the age of digital consent in your jurisdiction). We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, contact us and we will take appropriate steps to delete it.
Your Rights
Depending on your location, you may have rights to access, correct, delete, or port your personal data, and to object to or restrict certain processing. Where processing is based on consent, you may withdraw that consent at any time. To exercise rights, contact us at privacy@wisplet.com. We will respond as required by applicable law.
- Right of access, rectification, erasure, restriction, and portability.
- Right to object to processing based on legitimate interests.
- Right to lodge a complaint with a supervisory authority.
- Right to know, delete, correct, and to non-discrimination.
- Right to opt out of “sharing” for cross-context behavioral advertising.
- We do not sell personal information.
- Rights to confirm processing, access, correction, anonymization, portability, and deletion.
- Right to information about shared use of data and revocation of consent.
- Rights to access and challenge the accuracy of personal information.
- We maintain safeguards appropriate to the sensitivity of data.
- Rights to access, correction, erasure, grievance redressal, and consent management.
- We process personal data in accordance with lawful purposes and reasonable security practices.
AI Models & Training
We do not use your private conversations or files to train shared foundation models. We may use aggregated or de-identified telemetry (e.g., performance statistics) to improve reliability, safety, and user experience. Where you choose to make content public, you understand it may be visible to others per your settings.
Subprocessors
We engage third-party subprocessors to deliver the Services (e.g., cloud infrastructure, authentication, payments, analytics, and support tooling). We require appropriate data-processing terms and security measures. Our current subprocessor categories are listed above; we will publish a detailed list and material updates at /legal/subprocessors.
Changes to This Policy
We may update this Policy from time to time. If we make material changes, we will provide notice (e.g., via the Services or email) prior to the effective date. Your continued use of the Services after the updated Policy becomes effective constitutes acceptance.
Contact Us
For questions, requests, or complaints regarding this Policy or our data practices, contact: