LEGAL

Privacy Policy

DERAI is designed around responsible handling of business and customer information. This Privacy Policy explains how DERAI (“DERAI”, “we”, “us” or “our”) handles information when you visit our website, contact us, request a demonstration, or use services we may provide.

1. Information we may collect

We may collect information you choose to provide, such as your name, business email address, company, role, contact details, enquiry content and information supplied during a demo or business relationship. We may also receive limited technical information necessary to operate and secure our website and services, such as IP address, browser/device information, request logs and security events.

2. Customer and lead data

Where a customer provides CRM, lead, interaction or related business data to DERAI, that data remains the customer’s data. We process it only to provide, maintain, secure and improve the contracted service, subject to the applicable agreement and documented instructions. We do not sell customer or lead data, and we do not use customer data for unrelated advertising.

3. AI and automated processing

DERAI may use AI to analyse permitted business data and generate prioritisation, context or recommended actions. DERAI is designed to support human decision-making rather than indiscriminately contact leads. Recommendations should remain subject to customer review and control. Where third-party AI or infrastructure providers are used, access should be limited to what is necessary to deliver the relevant service and governed by appropriate contractual and security controls.

4. How we use information

We may use information to respond to enquiries and demo requests; provide and support DERAI services; authenticate users and operate accounts; diagnose problems; maintain service reliability and security; prevent abuse and fraud; meet contractual and legal obligations; and improve our product using information we are permitted to use.

5. Data security

We take reasonable technical and organisational measures appropriate to the nature of the information and the risks involved. These may include access controls and least-privilege practices, encryption in transit, secure infrastructure, authentication controls, logging and monitoring, vulnerability and dependency management, backups where appropriate, and procedures for responding to suspected security incidents. No internet service can guarantee absolute security.

6. Access and confidentiality

Access to customer information should be limited to authorised personnel and service providers who require it for legitimate operational purposes. Personnel and providers with such access are expected to be subject to confidentiality and appropriate data-protection obligations.

7. Data retention and deletion

We retain personal and customer information only for as long as reasonably necessary for the purposes for which it was collected, to provide the service, resolve disputes, maintain security, and meet legal or contractual obligations. Where applicable, customers may request deletion or return of their data, subject to legal, security, backup and contractual requirements.

8. Service providers and international processing

We may use reputable service providers for hosting, infrastructure, email, security, analytics, AI or other operational functions. Information may therefore be processed in jurisdictions other than your own. Where required, we seek to use appropriate contractual or legal safeguards for such transfers.

9. Cookies and website technologies

Our website may use technologies that are necessary for operation, security and performance. If we introduce non-essential analytics, advertising or similar tracking technologies that require consent, we will provide appropriate notice and controls where required.

10. Your rights and choices

Depending on applicable law, you may have rights relating to your personal information, including rights to access, correct, delete, restrict or object to certain processing, or request a copy of your information. We may need to verify your identity before fulfilling a request.

11. Legal basis and compliance

Where applicable law requires a legal basis for processing, we process information as necessary to perform a contract, pursue legitimate business and security interests, comply with legal obligations, or based on consent where consent is required. Customers remain responsible for ensuring that data they provide to DERAI has been collected and may be processed lawfully.

12. Changes to this policy

We may update this policy as DERAI evolves. Material changes will be reflected on this page with an updated effective date.

13. Contact

For privacy, data-protection or security enquiries, contact [email protected].