LEGAL
Privacy Policy
Last updated: 16 September 2026
DERAI is designed around responsible handling of business and customer information. This Privacy Policy explains how DERAI (“DERAI”, “we”, “us” or “our”) handles information when you visit our website, contact us, request a demonstration, or use services we may provide.
1. Information we may collect
We may collect information you choose to provide, such as your name, business email address, company, role, contact details, enquiry content and information supplied during a demo or business relationship. We may also receive limited technical information necessary to operate and secure our website and services, such as IP address, browser/device information, request logs and security events.
2. Customer and lead data
Where a customer provides CRM, lead, interaction or related business data to DERAI, that data remains the customer’s data. We process it only to provide, maintain, secure and improve the contracted service, subject to the applicable agreement and documented instructions. We do not sell customer or lead data, and we do not use customer data for unrelated advertising.
3. AI and automated processing
DERAI may use AI to analyse permitted business data and generate prioritisation, context or recommended actions. DERAI is designed to support human decision-making rather than indiscriminately contact leads. Recommendations should remain subject to customer review and control. Where third-party AI or infrastructure providers are used, access should be limited to what is necessary to deliver the relevant service and governed by appropriate contractual and security controls.
4. How we use information
We may use information to respond to enquiries and demo requests; provide and support DERAI services; authenticate users and operate accounts; diagnose problems; maintain service reliability and security; prevent abuse and fraud; meet contractual and legal obligations; and improve our product using information we are permitted to use.
5. Data security
We take reasonable technical and organisational measures appropriate to the nature of the information and the risks involved. These may include access controls and least-privilege practices, encryption in transit, secure infrastructure, authentication controls, logging and monitoring, vulnerability and dependency management, backups where appropriate, and procedures for responding to suspected security incidents. No internet service can guarantee absolute security.
6. Access and confidentiality
Access to customer information should be limited to authorised personnel and service providers who require it for legitimate operational purposes. Personnel and providers with such access are expected to be subject to confidentiality and appropriate data-protection obligations.
7. Data retention and deletion
We retain personal and customer information only for as long as reasonably necessary for the purposes for which it was collected, to provide the service, resolve disputes, maintain security, and meet legal or contractual obligations. Where applicable, customers may request deletion or return of their data, subject to legal, security, backup and contractual requirements.
8. Service providers and international processing
We may use reputable service providers for hosting, infrastructure, email, security, analytics, AI or other operational functions. Information may therefore be processed in jurisdictions other than your own. Where required, we seek to use appropriate contractual or legal safeguards for such transfers.
9. Cookies and website technologies
Our website may use technologies that are necessary for operation, security and performance. If we introduce non-essential analytics, advertising or similar tracking technologies that require consent, we will provide appropriate notice and controls where required.
10. Your rights and choices
Depending on applicable law, you may have rights relating to your personal information, including rights to access, correct, delete, restrict or object to certain processing, or request a copy of your information. We may need to verify your identity before fulfilling a request.
11. Legal basis and compliance
Where applicable law requires a legal basis for processing, we process information as necessary to perform a contract, pursue legitimate business and security interests, comply with legal obligations, or based on consent where consent is required. Customers remain responsible for ensuring that data they provide to DERAI has been collected and may be processed lawfully.
12. Changes to this policy
We may update this policy as DERAI evolves. Material changes will be reflected on this page with an updated effective date.
13. Contact
For privacy, data-protection or security enquiries, contact [email protected].