CometAI privacy

Data handled with purpose and protection.

This policy explains what data we use, why we use it, who may receive it, and how customers and data subjects exercise control.

Updated July 19, 2026Brazil ยท LGPD

1. Data we process

We may process sign-up, verification, and support data, business information, agent preferences, security records, payment data received from providers, and messages needed for contracted features. Sign-up identity data uses encryption, lookup hashes, and controlled retention.

2. Purposes

  • Create and protect accounts, verify email/phone, and prevent fraud.
  • Deliver customer service, automation, integrations, and support.
  • Correlate payments and provision only after valid confirmation.
  • Maintain security, audits, availability, and legal compliance.
  • Send marketing only with separate optional consent.

3. Official API

Business identifiers, webhooks, connection data, and messages may pass through Meta infrastructure under its applicable terms and policies.

4. Alternative API

Session, pairing, message, and metadata may pass through the alternative provider and assisted operation. The channel is not operated or guaranteed by Meta and may be disconnected or changed without notice.

5. Sharing

We share only what is necessary with enabled infrastructure, Meta/Evolution, payment, email, observability, AI, and support providers. We do not sell personal data.

6. Retention and security

Data is retained as needed for stated purposes, legal obligations, security, audits, and legal claims. Abandoned sign-ups have limited retention. We use access controls, applicable encryption, hashing, isolation, and audits.

7. Rights and contact

Requests for confirmation, access, correction, information, objection, consent withdrawal, or deletion may be sent to our privacy contact. We verify identity and observe lawful retention requirements before responding.