Privacy Policy
How We Protect Your Data
TriloAI values your privacy. This policy explains how we collect, use, and protect your personal data, and the rights you have. Last updated: May 24, 2025.
1. Data Collection Scope & Purpose
TriloAI ('we', 'us') collects, processes, and uses your personal data within what's necessary to provide AI automation consulting. Data types collected include:
- Basic contact info: name, phone, email, company, title
- Business needs: industry, current systems, automation requirements
- Usage logs: site browsing behavior, consultation bookings, support conversations
- Technical data: IP address, browser type, device info, cookie data
Purposes: providing consultation, responding to inquiries, improving service quality, marketing (with your consent), and legal compliance.
2. Data Use & Processing
We use your personal data only within the collection purpose and never sell or share data with unrelated third parties. Processing details:
- Internal use: only authorized consultants and engineers access client data for service delivery
- Third-party services: n8n (self-hostable) and Google Workspace for workflow automation; all transfers encrypted
- LINE Official Account: conversations are stored on LINE servers and synced to our CRM
- AI models: consultations may use OpenAI, Google Gemini, etc. for analysis — sensitive data is de-identified before transmission
You may request to view, correct, or delete your data, or withdraw consent at any time via the contact details below.
3. Data Security Measures
We apply industry-standard technical and management controls to protect your data from unauthorized access, disclosure, alteration, or destruction:
- Transit encryption: all connections use HTTPS/TLS 1.3
- At-rest encryption: database data encrypted with AES-256
- Access control: principle of least privilege — staff access only what their role requires
- Audits: quarterly security reviews and vulnerability scans
- Backups: daily automated backups stored off-site for recoverability
In the event of a data breach, we will notify regulators within 72 hours of discovery (per applicable data protection law) and inform affected parties.
5. Data Retention
Retention periods vary by data type and business need:
- Consultation records: 3 years from last interaction, for continuity and quality tracking
- Contract data: 10 years per accounting law
- Site analytics: 26 months in anonymized form
- Marketing data: until you withdraw consent or request deletion
After retention ends, data is securely destroyed or anonymized so individuals can no longer be identified.
6. Your Rights
Under data protection law, you have the following rights regarding your data:
- Right to access: request what data we hold and how it's used
- Right to rectification: request corrections or completion of your data
- Right to erasure: request deletion (except where retention is legally required)
- Right to restrict processing: limit how we process your data
- Right to data portability: receive your data in a structured format
- Right to withdraw consent: anytime, without affecting prior lawful processing
Exercising these rights is free. If you believe processing violates the law, you may file a complaint with the relevant regulator.
7. Contact Us
For questions about this policy or to exercise your data rights, contact us:
- Email: service@triloai.org
- Free consultation: Book a 20-min consultation
We will respond within 30 days of receiving your request. This policy may be updated to reflect legal or service changes — material updates will be posted and notified to affected users.
Want to learn more about our services?
Book a free 30-minute AI automation consultation to see how TriloAI helps your business adopt AI safely and compliantly.
Book Free Consultation