Last updated: December 23, 2025
GrowthPilot AI is committed to protecting the privacy and security of personal data in compliance with the General Data Protection Regulation (GDPR). This page outlines how we comply with GDPR requirements and your rights as a data subject.
🇪🇺 For EU/EEA Users: We process your data in accordance with GDPR. You have specific rights regarding your personal data that we respect and uphold.
GrowthPilot AI acts as the data controller for personal data collected through our Service. For inquiries regarding data protection:
We process personal data under the following legal bases:
| Processing Activity | Legal Basis |
|---|---|
| Store health monitoring | Contract performance |
| Alert notifications | Contract performance |
| AI diagnosis processing | Contract performance & Consent |
| Service improvement | Legitimate interest |
| Marketing communications | Consent |
| Legal obligations | Legal requirement |
Under GDPR, you have the following rights regarding your personal data:
Request a copy of the personal data we hold about you.
Request correction of inaccurate or incomplete data.
Request deletion of your personal data ("right to be forgotten").
Request restriction of processing in certain circumstances.
Receive your data in a structured, machine-readable format.
Object to processing based on legitimate interest or marketing.
To exercise any of your GDPR rights:
We may extend this period by up to 60 days for complex requests, with notification.
We collect and process the following categories of personal data:
Important: We do NOT access or store your store's customer personal data, payment information, order details, or any PII from your customers.
We retain personal data only as long as necessary:
Your data may be transferred to and processed in countries outside the EU/EEA. We ensure appropriate safeguards for such transfers:
We implement technical and organizational measures to protect your data:
We use the following categories of sub-processors:
All sub-processors are bound by data processing agreements that meet GDPR requirements.
For data protection inquiries, you may contact our designated privacy contact:
If you believe we have not addressed your data protection concerns adequately, you have the right to lodge a complaint with a supervisory authority in your EU member state.
Our AI diagnosis feature involves automated processing, but:
Our Service is not intended for individuals under 16 years of age. We do not knowingly collect data from children. If you believe we have collected such data, please contact us immediately.
We may update this GDPR compliance notice as regulations evolve. Material changes will be communicated via email to affected users.
For any GDPR-related inquiries:
🔒 We take your privacy seriously. Your trust is our priority.