EEA, UK & Global Compliance

GDPR & Data Protection

Your data belongs to you. AI CFO & CMO is designed with privacy and responsible data handling at its core.

If you're located in the European Economic Area (EEA), European Union, or United Kingdom, applicable data protection laws give you explicit rights over your personal information.

Our Approach to Data Rights

"Collect less. Protect it properly. Use it for a clear purpose."

We don't believe privacy should be hidden behind complicated language. We process information primarily to provide, secure, maintain, and improve AI CFO & CMO.

What We Collect

Account Information

Your name, work email address, and account credentials (managed via Supabase Auth).

Uploaded Files & Data

CSV/Excel files, invoices, and financial reports submitted to the platform for analysis.

Technical Telemetry

IP address, browser headers, and session diagnostics required to operate & secure the platform.

Payment Information

Processed through Razorpay PCI-DSS Level 1 gateway; card numbers are not stored on our servers.

Your GDPR Rights

Depending on the circumstances and applicable law, you have the following rights over your personal data:

Right to Access

Ask what personal information we hold about you and request a copy.

Right to Rectification

Ask us to correct inaccurate or incomplete information.

Right to Erasure (Right to be Forgotten)

Ask us to delete your personal information where applicable.

Right to Restrict Processing

Ask us to restrict certain processing of your information.

Right to Object

Object to certain types of processing where the law gives you that right.

Data Portability

Request your personal information in a structured, portable format.

Where processing is based on consent, you may withdraw that consent at any time without penalty.

AI & Your Data

AI CFO & CMO uses AI technology, including **Google Gemini**, to power certain analysis features. When you request an AI analysis, information necessary to perform that request is processed ephemerally. We aim to minimize unnecessary personal information in AI processing.

AI-generated results can contain mistakes. Always review important financial, business, accounting, or operational information before relying on it.

International Transfers & Data Retention

AI CFO & CMO is operated from India and uses global technology providers. Information may be processed outside your country of residence. Where applicable, we take appropriate steps to support lawful international data transfers.

Information is retained only for as long as reasonably necessary to provide the Service, maintain your account, meet operational requirements, and comply with legal obligations. Unneeded data is securely deleted or anonymized.

Technical Data Security Safeguards

AES-256 Encryption at Rest
HTTPS/TLS 1.3 in Transit
Row Level Security (RLS)
Protected Server Secrets

Want to Make a Privacy Request?

You don't need to navigate a complicated process. Simply email us:

AI CFO & CMO Privacy Office
Email: princesinghrana01@gmail.com
Subject Line: "GDPR Privacy Request — AI CFO & CMO"
Submit GDPR Request
For additional details about how we handle personal data, please also review our Privacy Policy.
Privacy, Without the Jargon
Your data. Your choices. Our responsibility.