Privacy app
Privacy policy app krinIA
Questa pagina descrive come Clanksy tratta i dati raccolti tramite l'app mobile krinIA e la dashboard web (krinIA per il titolare del salone, Clanksy Control per amministrazione interna). Ultima revisione: 14 luglio 2026.
Titolare del trattamento
Andrea Emanuele, empresario individual (autonomo), nome commerciale "Clanksy", NIF Z2547626J, Calle Marva 12, planta 7, puerta 14, 46007 Valencia, Spagna, provider del prodotto krinIA. Contatto: legal@clanksy.ai.
Dati raccolti tramite l'app
- Numero di telefono (E.164) e email dell'account
- Raccolti durante l'autenticazione con codice monouso (OTP) e per le comunicazioni operative. Usati per identificare il titolare del salone e collegarlo al suo business. Conservati finché l'account è attivo. Cancellabili su richiesta.
- Fotocamera e libreria foto (opzionale)
- L'app può chiedere accesso a fotocamera e libreria foto solo quando il titolare sceglie di caricare una foto (es. foto del salone o dei lavori per i contenuti marketing). Nessun accesso in background. Le foto caricate sono conservate come asset di marketing del salone; il permesso è revocabile in qualsiasi momento dalle impostazioni del dispositivo.
- Identificativo dispositivo + push token
- Generato automaticamente dal sistema operativo. Usato per inviare notifiche push alle approvazioni HITL (recensioni, post Instagram, offerte) e agli alert operativi. Cancellato automaticamente alla disinstallazione dell'app o al revoke push permissions.
- Contenuto dei messaggi WhatsApp clienti
- I messaggi inviati e ricevuti dai clienti finali del salone tramite il sistema krinIA vengono archiviati nel database interno per: (1) gestire la conversazione, (2) generare report al titolare, (3) adattare le risposte dell'assistente al contesto del salone (istruzioni e memoria interna: nessun addestramento di modelli AI esterni).
- Chiamate vocali (se receptionist vocale attivo)
- NON registriamo l'audio della chiamata. Il transcript viene processato runtime per estrarre informazioni utili al servizio (preferenze cliente, richieste di prenotazione), quindi il transcript completo viene cancellato entro 4 ore dalla chiamata. Conserviamo solo: summary AI condensato (50-200 caratteri), outcome (es. "prenotato", "escalato a manager", "info"), durata chiamata, numero chiamante. Niente audio, niente trascrizione testuale permanente.
- Prenotazioni, clienti, recensioni
- Dati operativi del salone (nome cliente, telefono, servizi prenotati, recensioni ricevute) sincronizzati via email forwarding Booksy/Treatwell/Fresha o inseriti tramite l'app. Conservati per la durata dell'abbonamento.
- Dati di utilizzo dell'app (analytics interno)
- Eventi di interazione (quali tab apri, quali approvazioni fai, costi LLM per turno). Usati per migliorare il prodotto. Niente terze parti analytics tipo Google Analytics o Mixpanel.
Collegamento Instagram (Meta)
Se il titolare collega l'account Instagram del salone (funzione opzionale, da Impostazioni dell'app), krinIA si connette tramite "Instagram API con Instagram Login": il titolare accede direttamente con il proprio account Instagram Business o Creator e autorizza krinIA a pubblicare i contenuti che approva. Non serve una Pagina Facebook.
- Permessi richiesti
-
instagram_business_basic(identificare l'account Instagram Business o Creator collegato),instagram_business_content_publish(pubblicare i post e i reel che il titolare approva nell'app). - Dati conservati
- Token di accesso (cifrati a riposo), ID e nome utente dell'account Instagram collegato, elenco dei permessi concessi e data di scadenza del token. Non raccogliamo né conserviamo i dati personali dei follower o di chi commenta i post.
- Per cosa li usiamo
- Pubblicare su Instagram solo i contenuti che il titolare approva esplicitamente nell'app (mai pubblicazione automatica in background).
- Come revocare
- In qualsiasi momento dall'app (Impostazioni → Revoca connessione): krinIA revoca il token presso Meta e cancella le credenziali. Puoi anche rimuovere "Krinia" dalle impostazioni Instagram (Impostazioni → App e siti web autorizzati): Meta ci notifica e cancelliamo le credenziali collegate. Istruzioni complete su krinia.com/data-deletion.
Per cosa usiamo i dati
- Far funzionare il servizio (rispondere ai clienti, gestire prenotazioni)
- Inviare al titolare notifiche operative e report settimanali
- Migliorare la qualità delle risposte AI sui pattern specifici del salone
- Calcolare i costi LLM per fatturazione mensile e ottimizzazione cache
Cosa NON facciamo
- Non vendiamo i dati a terze parti
- Non condividiamo con piattaforme pubblicitarie
- Non usiamo i dati clienti del salone per training pubblico dei modelli AI (tutti i provider AI sono configurati in modalità no-training)
- Non tracciamo l'utente tra app diverse (no AppTrackingTransparency framework attivo)
- Non raccogliamo informazioni di pagamento nell'app (subscription esterna via web)
Personalizzazione dell'assistente per il titolare
Per offrirti un assistente che lavora come piace a te, Krinia memorizza le preferenze operative che le comunichi ("ricordati che...") e apprende dalle tue scelte nell'uso del servizio (per esempio come modifichi le bozze prima di approvarle), incluse le informazioni di contesto personale che scegli volontariamente di condividere in chat. Base giuridica: esecuzione del contratto (art. 6.1.b GDPR) e legittimo interesse al miglioramento del servizio (art. 6.1.f). Non memorizziamo mai dati relativi alla salute. Puoi vedere, correggere o cancellare in ogni momento tutto ciò che Krinia ricorda di te dalla sezione "Il tuo profilo con Krinia" nell'app, oppure disattivare del tutto la funzione. Conservazione: gli elementi non più attivi vengono cancellati dopo 24 mesi.
Provider tecnici
I dati sono processati tramite questi provider, con accesso limitato al necessario:
- Google Cloud Vertex AI (regione UE): elaborazione del linguaggio
naturale (LLM), embeddings semantici e trascrizione (speech-to-text) delle note
vocali WhatsApp dei clienti del salone. Endpoint europeo (regione
europe-west4e multi-regioneu), no training. È il provider che tratta i dati dei clienti. - WhatsApp Cloud API (Meta): routing messaggi. Meta vede solo i messaggi che transitano per il loro servizio (regole loro).
- Railway (region Amsterdam, Paesi Bassi, UE): hosting database
PostgreSQL + orchestrazione workflow n8n + Guardian service. Tutti i dati
applicativi sono in UE (region
europe-west4). Dati at-rest crittografati. Backup giornaliero. - Scaleway (Francia, UE): infrastruttura di riserva (disaster recovery) su territorio europeo, usata solo in caso di indisponibilità dell'infrastruttura primaria.
- Brevo (Francia, UE): invio email transazionali (codici di accesso, notifiche operative). Riceve solo indirizzo email e contenuto della notifica.
- Google Business Profile API: pubblicazione risposte recensioni (solo se attivo).
- Telnyx + Deepgram (endpoint UE): telefonia e trascrizione del receptionist vocale, su infrastruttura europea (solo se attivo).
- fal.ai: generazione immagini per i contenuti social del salone. Sede USA. Riceve solo: prompt testuale di marketing e foto/asset del salone scelti dal titolare. NON riceve dati di clienti finali del salone.
- Expo (push notifications): consegna delle notifiche push all'app del titolare. Sede USA. Riceve solo il push token del dispositivo e il testo della notifica.
- Cloudflare: rete di distribuzione, sicurezza, inoltro email e storage R2 per media generati e logo brand (asset di marketing, i dati applicativi restano sul database UE).
Trasferimenti extra-UE
I dati dei clienti del salone (database, backup, elaborazioni AI su LLM, embeddings e
trascrizione vocale) restano su infrastruttura UE: Railway region europe-west4
Amsterdam per database e workflow, Google Cloud Vertex AI endpoint europeo per le
elaborazioni AI, Scaleway (Francia) per il disaster recovery e Brevo (Francia) per le
email transazionali. fal.ai, Expo e Cloudflare sono basati negli USA: ricevono solo
dati che non includono i clienti finali del salone (prompt e asset di marketing,
push token, traffico di rete cifrato). Per questi trasferimenti residui si applicano
le Standard Contractual Clauses (SCC) approvate dalla Commissione UE (Decisione 2021/914)
o l'EU-US Data Privacy Framework ove il provider è certificato.
Per dubbi specifici scrivi a legal@clanksy.ai.
Conservazione
Mantenamo i dati operativi del salone (clienti, prenotazioni, conversazioni) per l'intera durata dell'abbonamento. Dopo la cancellazione dell'account, manteniamo i dati in modalità "cold storage" per 30 giorni per consentire ripristino in caso di errore, poi cancellazione definitiva.
Per dati specifici dei clienti finali del salone (es. cliente che chiede "cancellatemi" via WhatsApp con keyword STOP): cancellazione immediata + opt-out permanente.
Diritti dell'utente
Hai diritto a: accesso, rettifica, cancellazione, limitazione, portabilità, opposizione. Puoi anche revocare il consenso quando il trattamento si basa su consenso.
Per esercitare i diritti scrivici a legal@clanksy.ai. Per reclami, puoi rivolgerti al Garante della Privacy italiano (garanteprivacy.it) o all'AEPD spagnola (aepd.es).
Sicurezza
- Comunicazione cifrata TLS 1.3 tra app e server
- HMAC verification su tutti i webhook inbound (Meta + email inbound)
- Token autenticazione hashati SHA-256 a riposo
- Postgres at-rest encryption Railway default (Amsterdam, UE)
- Backup giornalieri criptati, retention 30 giorni
- Accesso ai dati limitato al founder, ogni accesso loggato in audit log
Decisioni automatizzate
L'app usa intelligenza artificiale per: (1) classificare l'intent dei messaggi clienti, (2) generare bozze di risposta, (3) proporre azioni operative (recall, offerte). Tutte le decisioni con impatto sul cliente finale richiedono conferma esplicita del titolare del salone via app (modalita' HITL, Human In The Loop). Niente decisione automatica viene applicata senza supervisione umana per azioni visibili al cliente finale (recensioni, post IG, offerte WhatsApp marketing).
Età minima
L'app è destinata a titolari di saloni beauty maggiorenni. Non raccogliamo intenzionalmente dati da minori. Se ritieni che un minore abbia fornito dati per errore, scrivici e cancelleremo immediatamente.
Aggiornamenti
Se cambiamo materialmente come trattiamo i dati, aggiorneremo questa pagina e ti notificheremo via app o WhatsApp prima dell'entrata in vigore. Cambi minori (linguistici, refinements) sono pubblicati senza notifica.
Privacidad app
Politica de privacidad app krinIA
Esta pagina describe como Clanksy trata los datos recogidos a traves de la app movil krinIA y del panel web (krinIA para el propietario del salon, Clanksy Control para administracion interna). Ultima revision: 14 de julio de 2026.
Responsable del tratamiento
Andrea Emanuele, empresario individual (autonomo), nombre comercial "Clanksy", NIF Z2547626J, Calle Marva 12, planta 7, puerta 14, 46007 Valencia, España, proveedor del producto krinIA. Contacto: legal@clanksy.ai.
Datos recogidos a traves de la app
- Numero de telefono (E.164) y email de la cuenta
- Recogidos durante la autenticacion con codigo de un solo uso (OTP) y para las comunicaciones operativas. Usados para identificar al propietario del salon y conectarlo a su negocio. Conservados mientras la cuenta esta activa. Cancelables bajo solicitud.
- Camara y galeria de fotos (opcional)
- La app puede pedir acceso a la camara y a la galeria solo cuando el propietario decide subir una foto (por ejemplo fotos del salon o de los trabajos para el contenido de marketing). Sin acceso en segundo plano. Las fotos subidas se conservan como material de marketing del salon; el permiso puede revocarse en cualquier momento desde los ajustes del dispositivo.
- Identificador dispositivo + push token
- Generado automaticamente por el sistema operativo. Usado para enviar notificaciones push sobre aprobaciones HITL (resenas, posts Instagram, ofertas) y alertas operativas. Cancelado automaticamente al desinstalar la app o al revocar permisos push.
- Contenido mensajes WhatsApp clientes
- Los mensajes enviados y recibidos por los clientes finales del salon a traves del sistema krinIA se archivan en la base de datos interna para: (1) gestionar la conversacion, (2) generar informes al propietario, (3) adaptar las respuestas del asistente al contexto del salon (instrucciones y memoria interna: ningun entrenamiento de modelos de IA externos).
- Reservas, clientes, resenas
- Datos operativos del salon (nombre cliente, telefono, servicios reservados, resenas recibidas) sincronizados via email forwarding Booksy/Treatwell/Fresha o introducidos a traves de la app. Conservados durante la suscripcion.
- Datos de uso de la app (analytics interno)
- Eventos de interaccion (que pestanas abres, que aprobaciones haces, costes LLM por turno). Usados para mejorar el producto. Sin terceros analytics tipo Google Analytics o Mixpanel.
Conexion Instagram (Meta)
Si el propietario conecta la cuenta de Instagram del salon (funcion opcional, desde Ajustes de la app), krinIA se conecta mediante "Instagram API con Instagram Login": el propietario inicia sesion directamente con su cuenta de Instagram Business o Creator y autoriza a krinIA a publicar el contenido que aprueba. No hace falta una Pagina de Facebook.
- Permisos solicitados
-
instagram_business_basic(identificar la cuenta de Instagram Business o Creator conectada),instagram_business_content_publish(publicar los posts y reels que el propietario aprueba en la app). - Datos conservados
- Token de acceso (cifrado en reposo), ID y nombre de usuario de la cuenta de Instagram conectada, lista de permisos concedidos y fecha de caducidad del token. No recogemos ni conservamos los datos personales de los seguidores ni de quienes comentan las publicaciones.
- Para que los usamos
- Publicar en Instagram solo el contenido que el propietario aprueba explicitamente en la app (nunca publicacion automatica en segundo plano).
- Como revocar
- En cualquier momento desde la app (Ajustes → Revocar conexion): krinIA revoca el token en Meta y elimina las credenciales. Tambien puedes eliminar "Krinia" desde los ajustes de Instagram (Configuracion → Apps y sitios web autorizados): Meta nos avisa y eliminamos las credenciales vinculadas. Instrucciones completas en krinia.com/data-deletion.
Para que usamos los datos
- Hacer funcionar el servicio (responder a clientes, gestionar reservas)
- Enviar al propietario notificaciones operativas e informes semanales
- Mejorar la calidad de las respuestas AI sobre patrones del salon
- Calcular costes LLM para facturacion mensual y optimizacion cache
Lo que NO hacemos
- No vendemos los datos a terceros
- No compartimos con plataformas publicitarias
- No usamos los datos clientes del salon para training publico de los modelos AI
- No rastreamos al usuario entre apps (no AppTrackingTransparency activo)
- No recogemos informacion de pago en la app (suscripcion externa via web)
Personalizacion del asistente para el propietario
Para ofrecerte un asistente que trabaja como te gusta, Krinia memoriza las preferencias operativas que le comunicas ("recuerda que...") y aprende de tus decisiones en el uso del servicio (por ejemplo como modificas los borradores antes de aprobarlos), incluida la informacion de contexto personal que decides compartir voluntariamente en el chat. Base juridica: ejecucion del contrato (art. 6.1.b RGPD) e interes legitimo en la mejora del servicio (art. 6.1.f). Nunca memorizamos datos relativos a la salud. Puedes ver, corregir o eliminar en cualquier momento todo lo que Krinia recuerda de ti desde la seccion "Tu perfil con Krinia" en la app, o desactivar por completo la funcion. Conservacion: los elementos que ya no estan activos se eliminan tras 24 meses.
Proveedores tecnicos
Los datos se procesan a traves de estos proveedores, con acceso limitado a lo necesario:
- Google Cloud Vertex AI (region UE): procesamiento del lenguaje
natural (LLM), embeddings semanticos y transcripcion (speech-to-text) de las
notas de voz de WhatsApp de los clientes del salon. Endpoint europeo (region
europe-west4y multi-regioneu), sin entrenamiento. Es el proveedor que trata los datos de los clientes. - WhatsApp Cloud API (Meta): enrutamiento de mensajes.
- Railway (region Amsterdam, Paises Bajos, UE): hosting de la base de datos PostgreSQL + orquestacion de workflows. Datos cifrados en reposo, copia de seguridad diaria.
- Scaleway (Francia, UE): infraestructura de reserva (disaster recovery) en territorio europeo.
- Brevo (Francia, UE): envio de emails transaccionales (codigos de acceso, notificaciones operativas).
- Google Business Profile API: publicacion de respuestas a reseñas (solo si esta activo).
- Telnyx + Deepgram (endpoint UE): telefonia y transcripcion del recepcionista de voz, en infraestructura europea (solo si esta activo).
- fal.ai (EE. UU.): generacion de imagenes para el contenido social del salon. Recibe solo prompts de marketing y fotos/asset del salon elegidos por el propietario. NO recibe datos de clientes finales.
- Expo (EE. UU.): entrega de notificaciones push. Recibe solo el push token del dispositivo y el texto de la notificacion.
- Cloudflare: red de distribucion, seguridad, reenvio de email y almacenamiento R2 de los medios generados (material de marketing; los datos aplicativos permanecen en la base de datos UE).
Transferencias fuera de la UE
Los datos de los clientes del salon (base de datos, copias de seguridad, procesamiento de IA, embeddings y transcripcion de voz) permanecen en infraestructura de la UE. fal.ai, Expo y Cloudflare tienen sede en EE. UU. y reciben solo datos que no incluyen a los clientes finales del salon. Para estas transferencias residuales se aplican las Clausulas Contractuales Tipo (SCC) de la Comision Europea (Decision 2021/914) o el EU-US Data Privacy Framework cuando el proveedor esta certificado. Para dudas: legal@clanksy.ai.
Conservacion
Conservamos los datos operativos del salon (clientes, reservas, conversaciones) durante toda la vigencia de la suscripcion. Tras la cancelacion de la cuenta, mantenemos los datos en "cold storage" durante 30 dias para permitir una restauracion en caso de error, y despues se eliminan definitivamente. Si un cliente final del salon pide su eliminacion (por ejemplo con la palabra STOP por WhatsApp): eliminacion inmediata + opt-out permanente.
Seguridad
- Comunicacion cifrada TLS 1.3 entre app y servidor
- Verificacion HMAC en todos los webhooks entrantes
- Tokens de autenticacion con hash SHA-256 en reposo
- Cifrado en reposo de PostgreSQL (Amsterdam, UE)
- Copias de seguridad diarias cifradas, retencion 30 dias
- Acceso a los datos limitado al titular, cada acceso registrado en audit log
Derechos del usuario
Tienes derecho a: acceso, rectificacion, cancelacion, limitacion, portabilidad, oposicion. Para ejercerlos escribenos a legal@clanksy.ai. Para reclamaciones puedes dirigirte a la AEPD (Agencia Espanola de Proteccion de Datos).
Decisiones automatizadas
La app usa inteligencia artificial para clasificar mensajes, generar borradores de respuesta y proponer acciones. Toda decision con impacto sobre el cliente final requiere confirmacion explicita del propietario a traves de la app (modalidad HITL).
Edad minima
La app esta destinada a propietarios de salones mayores de edad. No recogemos intencionadamente datos de menores.
Actualizaciones
Si cambiamos materialmente como tratamos los datos, actualizaremos esta pagina y te avisaremos por la app o WhatsApp antes de la entrada en vigor. Los cambios menores se publican sin aviso.
App privacy
krinIA app privacy policy
This page describes how Clanksy processes the data collected through the krinIA mobile app and the web dashboard (krinIA for the centre's owner, Clanksy Control for internal administration). Last revised: 14 July 2026.
Data controller
Andrea Emanuele, empresario individual (autonomo), trading name "Clanksy", NIF Z2547626J, Calle Marva 12, planta 7, puerta 14, 46007 Valencia, Spain, provider of the krinIA product. Contact: legal@clanksy.ai.
Data collected through the app
- Account phone number (E.164) and email
- Collected during authentication with a one-time code (OTP) and for operational communications. Used to identify the centre's owner and link them to their business. Kept for as long as the account is active. Deletable on request.
- Camera and photo library (optional)
- The app may ask for access to the camera and photo library only when the owner chooses to upload a photo (e.g. photos of the centre or of the work done, for marketing content). No background access. The photos uploaded are kept as marketing assets of the centre; the permission can be revoked at any time from the device settings.
- Device identifier + push token
- Generated automatically by the operating system. Used to send push notifications for HITL approvals (reviews, Instagram posts, offers) and operational alerts. Deleted automatically when the app is uninstalled or push permissions are revoked.
- Content of customer WhatsApp messages
- The messages sent and received by the centre's end customers through the krinIA system are stored in the internal database in order to: (1) manage the conversation, (2) generate reports for the owner, (3) adapt the assistant's replies to the centre's context (instructions and internal memory: no training of external AI models).
- Voice calls (if the voice receptionist is active)
- We do NOT record the call audio. The transcript is processed at runtime to extract information useful to the service (customer preferences, booking requests), then the full transcript is deleted within 4 hours of the call. We keep only: a condensed AI summary (50-200 characters), the outcome (e.g. "booked", "escalated to manager", "info"), call duration, caller number. No audio, no permanent text transcription.
- Bookings, customers, reviews
- Operational data of the centre (customer name, phone, services booked, reviews received) synchronised via Booksy/Treatwell/Fresha email forwarding or entered through the app. Kept for the duration of the subscription.
- App usage data (internal analytics)
- Interaction events (which tabs you open, which approvals you make, LLM costs per turn). Used to improve the product. No third-party analytics such as Google Analytics or Mixpanel.
Instagram connection (Meta)
If the owner connects the centre's Instagram account (optional feature, from the app's Settings), krinIA connects through "Instagram API with Instagram Login": the owner logs in directly with their own Instagram Business or Creator account and authorises krinIA to publish the content they approve. A Facebook Page is not required.
- Permissions requested
-
instagram_business_basic(to identify the connected Instagram Business or Creator account),instagram_business_content_publish(to publish the posts and reels that the owner approves in the app). - Data kept
- Access token (encrypted at rest), ID and username of the connected Instagram account, list of the permissions granted and the token expiry date. We do not collect or keep the personal data of followers or of those who comment on the posts.
- What we use them for
- To publish on Instagram only the content that the owner explicitly approves in the app (never automatic publication in the background).
- How to revoke
- At any time from the app (Settings → Revoke connection): krinIA revokes the token with Meta and deletes the credentials. You can also remove "Krinia" from the Instagram settings (Settings → Authorised apps and websites): Meta notifies us and we delete the linked credentials. Full instructions at krinia.com/data-deletion.
What we use the data for
- Running the service (replying to customers, managing bookings)
- Sending the owner operational notifications and weekly reports
- Improving the quality of the AI replies on the centre's specific patterns
- Calculating LLM costs for monthly billing and cache optimisation
What we do NOT do
- We do not sell data to third parties
- We do not share it with advertising platforms
- We do not use the centre's customer data for public training of AI models (all AI providers are configured in no-training mode)
- We do not track the user across different apps (no active AppTrackingTransparency framework)
- We do not collect payment information in the app (subscription handled externally via the web)
Personalisation of the assistant for the owner
To give you an assistant that works the way you like, Krinia stores the operational preferences you tell it ("remember that...") and learns from your choices in using the service (for example how you edit the drafts before approving them), including the personal context information that you voluntarily choose to share in chat. Legal basis: performance of the contract (art. 6.1.b GDPR) and legitimate interest in improving the service (art. 6.1.f). We never store health-related data. You can see, correct or delete at any time everything Krinia remembers about you from the "Your profile with Krinia" section in the app, or disable the feature entirely. Retention: items that are no longer active are deleted after 24 months.
Technical providers
Data is processed through these providers, with access limited to what is necessary:
- Google Cloud Vertex AI (EU region): natural language
processing (LLM), semantic embeddings and transcription (speech-to-text) of the
WhatsApp voice notes of the centre's customers. European endpoint (region
europe-west4and multi-regioneu), no training. It is the provider that processes customer data. - WhatsApp Cloud API (Meta): message routing. Meta only sees the messages that pass through their service (their rules).
- Railway (Amsterdam region, Netherlands, EU): hosting of the
PostgreSQL database + n8n workflow orchestration + Guardian service. All application
data is in the EU (region
europe-west4). Data at rest encrypted. Daily backup. - Scaleway (France, EU): standby infrastructure (disaster recovery) on European territory, used only in case of unavailability of the primary infrastructure.
- Brevo (France, EU): sending of transactional emails (access codes, operational notifications). Receives only the email address and the content of the notification.
- Google Business Profile API: publication of review replies (only if active).
- Telnyx + Deepgram (EU endpoint): telephony and transcription for the voice receptionist, on European infrastructure (only if active).
- fal.ai: image generation for the centre's social content. Based in the USA. Receives only: the marketing text prompt and the centre's photos/assets chosen by the owner. It does NOT receive data of the centre's end customers.
- Expo (push notifications): delivery of the push notifications to the owner's app. Based in the USA. Receives only the device push token and the text of the notification.
- Cloudflare: distribution network, security, email forwarding and R2 storage for generated media and brand logos (marketing assets; application data stays on the EU database).
Transfers outside the EU
The data of the centre's customers (database, backups, AI processing on LLMs, embeddings and
voice transcription) stays on EU infrastructure: Railway region europe-west4
Amsterdam for database and workflows, Google Cloud Vertex AI European endpoint for the AI
processing, Scaleway (France) for disaster recovery and Brevo (France) for the
transactional emails. fal.ai, Expo and Cloudflare are based in the USA: they receive only
data that does not include the centre's end customers (marketing prompts and assets,
push token, encrypted network traffic). For these residual transfers, the
Standard Contractual Clauses (SCC) approved by the EU Commission (Decision 2021/914)
apply, or the EU-US Data Privacy Framework where the provider is certified.
For specific questions write to legal@clanksy.ai.
Retention
We keep the centre's operational data (customers, bookings, conversations) for the entire duration of the subscription. After the account is deleted, we keep the data in "cold storage" mode for 30 days to allow recovery in case of error, then permanent deletion.
For specific data of the centre's end customers (e.g. a customer who asks to be deleted via WhatsApp with the STOP keyword): immediate deletion + permanent opt-out.
User rights
You have the right to: access, rectification, erasure, restriction, portability, objection. You can also withdraw your consent where the processing is based on consent.
To exercise your rights write to us at legal@clanksy.ai. For complaints, you can contact the Italian Garante della Privacy (garanteprivacy.it) or the Spanish AEPD (aepd.es).
Security
- TLS 1.3 encrypted communication between app and server
- HMAC verification on all inbound webhooks (Meta + inbound email)
- Authentication tokens hashed with SHA-256 at rest
- Postgres at-rest encryption, Railway default (Amsterdam, EU)
- Encrypted daily backups, 30-day retention
- Data access limited to the founder, every access recorded in an audit log
Automated decisions
The app uses artificial intelligence to: (1) classify the intent of customer messages, (2) generate draft replies, (3) propose operational actions (recall, offers). All decisions with an impact on the end customer require explicit confirmation from the centre's owner via the app (HITL mode, Human In The Loop). No automatic decision is applied without human supervision for actions visible to the end customer (reviews, IG posts, WhatsApp marketing offers).
Minimum age
The app is intended for owners of beauty centres who are of legal age. We do not intentionally collect data from minors. If you believe that a minor has provided data by mistake, write to us and we will delete it immediately.
Updates
If we materially change how we process data, we will update this page and will notify you via the app or WhatsApp before it takes effect. Minor changes (wording, refinements) are published without notice.