Privacy Policy
At Conturalis BV, transparency and data protection are foundational to our Smart Web Platform. This Privacy Policy explains how we collect, process, and protect your information, with a specific focus on how your data interacts with our AI Web Agents, Google Cloud infrastructure, and LLM providers.
1. Identity & Data Roles
Conturalis BV acts as the Data Controller for the administrative and billing information associated with your Horizon Tier subscriptions (e.g., company details, email addresses). However, for the proprietary content and documents you synchronize into our system via the WordPress plugin, we act strictly as the Data Processor on your behalf.
2. AI Processing & Gemini Integration
To transform your website into an autonomous Web Agent, we must process the data you provide. When you synchronize content into our Smart Data engine, we save and convert this information into mathematical vector embeddings. This Retrieval-Augmented Generation (RAG) architecture allows enterprise LLMs, such as Google Gemini and Vertex AI, to accurately answer end-user queries based exclusively on your proprietary data context.
3. AI Training & Zero-Retention Policy
While your data is actively used to ground and train the specific responses of your local Web Agents, we enforce a strict Zero-Retention policy with our AI partners. Your synchronized data, chat transcripts, and company knowledge bases are contractually prohibited from being used by Conturalis, Google, or OpenAI to train public foundational language models. Your data remains yours.
4. Data Protection & Security
We take the security of your Smart Data seriously. Our CTS Cloud operates on enterprise-grade Google Cloud infrastructure. We protect your information using encryption in transit and at rest, secure JWT (JSON Web Token) authentication for all API endpoints, and our proprietary Conturalis Shield runtime layer to block unauthorized access and payload injections.
5. Data Erasure (Getting Rid of Your Data)
You have absolute control over your data lifecycle. If you delete a document, remove a user profile, or disconnect your WordPress environment from our cloud, your data enters an automated 30-day Time-To-Live (TTL) phase. Upon expiration of this cooling-off period, our backend infrastructure permanently and irreversibly purges all associated vector embeddings, chat logs, and files from our Firestore and PostgreSQL databases.
6. Your GDPR Rights
Under the GDPR, you retain the right to access, rectify, restrict, or request the immediate portability and erasure of your personal data. To exercise these rights, or if you have questions regarding how our AI agents process your information, please contact our administrative team via your Control Panel.