Privacy Policy
Effective date: 1 January 2026
1. Introduction
This Privacy Policy explains how Zomate AI ("we", "us") collects, uses, and protects information when your organization uses our quotation automation platform. By using the service, you agree to the practices described here.
2. Information We Collect
We collect the following categories of information:
- Account information: name, email, phone number, and organization details you provide at signup.
- Business data you enter or connect: customer records, product catalogues, enquiries, and quotations created within the platform.
- Integration credentials: access tokens for WhatsApp Business API and email providers you connect, stored encrypted (AES-256) and never shared outside your organization.
- Usage data: pages visited, actions taken, and audit logs generated while using the platform.
3. How We Use Information
We use collected information to:
- Operate the platform — routing enquiries, generating quotations, and scheduling follow-ups.
- Maintain security, prevent abuse, and keep an audit trail of actions within your organization.
- Improve the product based on aggregated, non-identifying usage patterns.
- Communicate with you about your account, billing, and service updates.
4. How AI Is Used
We use a third-party AI provider (Anthropic) to read and structure incoming WhatsApp and email enquiries — for example, identifying requested products and quantities. The AI does not set prices, apply discounts, or invent products: all pricing and catalogue decisions are made by your organization's configured business rules. Enquiry text is sent to the AI provider solely to perform this extraction and is not used to train their models under our agreement with them.
5. Data Sharing
We share data only with the service providers necessary to run the platform, including:
- Meta / WhatsApp Business API and email providers, to send and receive messages on your behalf.
- Anthropic, to process enquiry text as described above.
- Our cloud hosting and database providers, to store your organization's data securely.
We do not sell your data or your customers' data to third parties.
6. Data Security
Data is isolated per organization, access is controlled by role-based permissions, and every significant action is recorded in an audit log. Integration credentials are encrypted at rest. No system is perfectly secure, and we encourage you to use strong passwords and limit account access to staff who need it.
7. Data Retention
We retain your organization's data for as long as your account is active. If you close your account, we delete or anonymize your data within a reasonable period, except where retention is required for legal or accounting purposes.
8. Your Rights
You may request access to, correction of, or deletion of your personal information by contacting us at hello@zomate.in. Requests relating to your customers' data should be directed to your organization, as the data controller for that information.
9. Cookies
We use essential cookies to keep you signed in and to remember your session. We do not use third-party advertising or tracking cookies.
10. Children's Privacy
Our service is intended for business use and is not directed at individuals under 18.
11. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated to account administrators by email.
12. Contact Us
Questions about this policy can be sent to hello@zomate.in.