Privacy Policy
Last updated: March 14, 2026
1. Introduction
SideKyk ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI assistant service via WhatsApp and our website (collectively, the "Service").
By using the Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Information You Provide
- Account Information: When you sign up, we collect your name, email address, phone number, and organization details.
- Messages: The content of messages you send to SideKyk via WhatsApp, including text, images, documents, and audio files.
- Preferences: Communication style preferences and personality settings you configure for your AI assistant.
- Payment Information: If you subscribe to a paid plan, we collect billing information through our payment processor. We do not store full credit card numbers on our servers.
2.2 Information Collected Automatically
- Usage Data: Message timestamps, frequency of use, feature usage, and service interaction patterns.
- Device Information: Information provided by WhatsApp about your device type and operating system.
- Log Data: Server logs including IP addresses, request timestamps, and error reports.
2.3 Information from Third Parties
- WhatsApp: Your WhatsApp profile name and phone number, as provided through the WhatsApp Business API.
- Meta Platform: Basic profile information necessary for WhatsApp integration.
3. How We Use Your Information
We use collected information to:
- Provide, maintain, and improve the Service
- Process and respond to your messages via the AI assistant
- Generate requested files (presentations, documents, spreadsheets, PDFs)
- Maintain conversation history and AI memory for personalized interactions
- Manage your account and process subscriptions
- Send service-related communications (account updates, security alerts)
- Monitor and analyze usage trends to improve the Service
- Detect, prevent, and address technical issues and abuse
4. Data Isolation and Security
SideKyk employs enterprise-grade tenant isolation:
- Per-User Isolation: Each user receives a fully isolated AI instance with separate conversation history, memory, and file storage.
- No Cross-Tenant Access: Your data is never accessible to other users, teams, or organizations.
- Team Privacy: Within team plans, each member's conversations are private and isolated from other team members.
- Encryption: Data is encrypted in transit (TLS 1.2+) and at rest.
- Access Controls: Strict access controls limit who within our organization can access user data, and access is logged.
5. Data Sharing and Disclosure
We do not sell your personal information. We may share data with:
- AI Model Providers: Message content is sent to third-party AI model providers (e.g., OpenAI) for processing. These providers are contractually bound to not retain or use your data beyond processing your requests.
- WhatsApp/Meta: Messages are transmitted through the WhatsApp Business API infrastructure.
- Service Providers: We use cloud hosting (Microsoft Azure), payment processing, and analytics providers who process data on our behalf under strict data processing agreements.
- Legal Requirements: We may disclose information if required by law, regulation, legal process, or governmental request.
6. Data Retention
- Active Accounts: We retain your data for as long as your account is active and as needed to provide the Service.
- Conversation History: AI conversation history and memory are retained while your account is active to provide continuity of service.
- Generated Files: Files generated by the Service are temporarily stored and delivered via WhatsApp. Temporary copies may be retained for up to 30 days.
- Deleted Accounts: When you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required by law to retain it.
7. Your Rights
Depending on your location, you may have the right to:
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your personal data
- Portability: Request your data in a portable format
- Objection: Object to certain processing of your data
- Restriction: Request restriction of processing
To exercise any of these rights, contact us at privacy@sidekyk.ai.
8. Data Deletion
You can request deletion of your data at any time by:
- Sending an email to privacy@sidekyk.ai with the subject "Data Deletion Request"
- Visiting our Data Deletion page
We will process deletion requests within 30 days and confirm completion via email.
9. Children's Privacy
The Service is not intended for use by anyone under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have collected data from a child under 16, we will take steps to delete that information.
10. International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence, including the United States. We ensure appropriate safeguards are in place for such transfers in compliance with applicable data protection laws.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. Continued use of the Service after changes constitutes acceptance of the updated policy.
12. Contact Us
If you have questions about this Privacy Policy, please contact us:
- Email: privacy@sidekyk.ai
- General inquiries: hello@sidekyk.ai