Greenflash Logo

Greenflash Privacy Policy

Last Updated: May 2, 2025

Greenflash ("we," "us," or "our") values your privacy and is committed to protecting your data. This Privacy Policy explains how we collect, use, share, and protect information gathered through our website and services (collectively, "Services").

Information We Collect

We primarily provide Services to businesses ("Customers") who use Greenflash to analyze user interactions with their products. Customers may choose the data sent to us, which could include personally identifiable information ("PII") or anonymized data from their end users ("End Users").

Types of information we may collect:

  • End User Data: Conversations, interaction metadata, user identifiers, and other data provided by Customers.
  • Customer Data: Business contact information, account details, billing information, and usage data.
  • Technical Data: IP addresses, browser information, cookies, and session information used primarily for authentication and product analytics.

Use of Information

We use the collected information solely to provide and improve our Services, including:

  • Performing analytics on conversational data.
  • Offering proactive suggestions and automatic updates, subject to explicit Customer approval.
  • Improving the accuracy and performance of our models and services.
  • Customer support, troubleshooting, and system maintenance.

Data Sharing

We never sell or share Customer or End User data with third parties for marketing purposes.

We may share data with:

  • Third-party service providers essential to our operations (such as Vercel, Neon, Resend, Render, Clerk, PostHog, and third-party LLM APIs such as OpenAI).
  • Third-party LLM providers, optionally utilizing Customer-provided API keys, when explicitly authorized by the Customer.
  • Authorities if required by law or legal process.

AI and Model Training

  • End User data will never be used to train Greenflash's AI models without authorization from our Customers.
  • We may use aggregate, anonymized, non-identifiable data to improve and train our AI models, such as optimizing suggested prompts based on overall usage metrics.

Data Security

We employ rigorous security practices, including:

  • Row-level security (RLS) in our multi-tenant databases to strictly isolate Customer data.
  • Least-privilege access control, tightly restricting employee access to Customer and End User data.

Customers may also choose to host databases within their infrastructure for enhanced control.

Data Retention

We retain Customer data only as long as required by the Customer. Data deletion or specific retention requests are honored promptly upon request.

Cookies

We use cookies for authentication and analytics. We do not employ cookies for cross-site tracking or third-party marketing.

International Data Transfers

Greenflash does not intentionally transfer Customer data internationally. However, Customers are responsible for data sources and origins.

Children's Privacy

Our Services are not intended for minors under the age of 16, we do not knowingly collect data related to minors, and we hold no responsibility for data sent to us by our Customers if they collect data from minors.

Your Rights

Customers control their End User data and have options to restrict visibility within Greenflash's platform. Customers may request data access, corrections, or deletions at any time.

Updates to This Policy

We may update this Privacy Policy periodically and will notify Customers of material changes.

Contact

For questions or requests related to privacy practices, please contact us at support@greenflash.ai.

© 2025 Greenflash AI