Version 1.0 — Last updated: 2026
Ask‑Innovation (“we”, “our”, “us”) is committed to protecting the privacy and security of your personal data.
This Privacy Policy explains how we collect, use, store, and protect personal data when you access our website, use our Platform, or subscribe to our CXaaS services.
By using the Platform, you agree to the practices described in this Privacy Policy.
- 1. Data Controller
Ask‑Innovation
SAS — France
Registered office: Gif‑sur‑Yvette, France
Email: privacy@ask‑innovation.com
For GDPR purposes, Ask‑Innovation acts as:
-
Data Controller for website visitors, prospects, and account administrators
-
Data Processor for Customer Data processed through the Platform (CXaaS, AI agents, workflows, omnichannel interactions)
A Data Processing Agreement (DPA) is available upon request.
- 2. Data We Collect
We collect the following categories of data:
1. 2.1 Data you provide directly
-
Account information (name, email, role, password)
-
Company information (legal entity, billing details, subscription plan)
-
Communication data (messages, emails, chat logs, tickets)
-
Content submitted to the Platform (documents, workflows, configurations)
2. 2.2 Data collected automatically
-
Log data (IP address, browser type, device information)
-
Usage data (features used, timestamps, performance metrics)
-
Cookies and tracking technologies (see Section 10)
3. 2.3 Data processed on behalf of Customers
As part of the CXaaS service, we may process:
-
Customer support interactions
-
Omnichannel messages (email, chat, social networks, WhatsApp, SMS, voice)
-
Operational data (workflows, tasks, SOPs)
-
CRM/ERP/POS data synchronized via integrations
-
AI‑generated content and metadata
This data remains the exclusive property of the Customer.
- 3. How We Use Personal Data
We process data for the following purposes:
-
3.1 Service delivery
-
Providing access to the Platform
-
Operating AI agents and workflows
-
Managing omnichannel communications
-
Ensuring service continuity and performance
-
3.2 Account & customer management
-
Authentication and security
-
Billing and subscription management
-
Customer support and onboarding
-
3.3 Platform improvement
-
Monitoring performance
-
Enhancing AI models (without using Customer Data for public training)
-
Developing new features
-
3.4 Legal compliance
-
Fraud prevention
-
Regulatory obligations
-
Responding to lawful requests
- 4. Legal Basis for Processing (GDPR)
We process personal data based on:
-
Contractual necessity (service delivery)
-
Legitimate interest (security, product improvement)
-
Legal obligations
-
Consent (cookies, marketing communications)
- 5. Customer Data & AI Processing
4. 5.1 Ownership
Customer Data remains the sole property of the Customer.
5. 5.2 AI Agents
AI agents process Customer Data exclusively to:
-
automate workflows
-
generate responses
-
analyze interactions
-
provide insights
6. 5.3 No public model training
Customer Data is never used to train public or shared AI models.
7. 5.4 Data isolation
Each Customer operates in a dedicated, isolated multi‑tenant environment.
- 6. Data Sharing
We do not sell personal data.
We may share data with:
-
Sub‑processors (hosting, email delivery, analytics, communication APIs)
-
Telecom or messaging providers (for omnichannel delivery)
-
CRM/ERP/POS systems connected by the Customer
-
Regulatory authorities when legally required
All sub‑processors are listed in our DPA and comply with GDPR.
- 7. International Data Transfers
Data may be transferred outside the EU only when:
-
the destination country is deemed adequate by the European Commission, or
-
Standard Contractual Clauses (SCCs) are in place
We ensure equivalent protection regardless of location.
- 8. Data Retention
We retain data for the duration necessary to:
-
provide the service
-
comply with legal obligations
-
resolve disputes
Customer Data is deleted or returned within 30 days after contract termination, unless otherwise required by law.
- 9. Security Measures
We implement industry‑standard security practices, including:
-
encryption at rest and in transit
-
strict access control
-
multi‑tenant isolation
-
audit logs
-
continuous monitoring
-
regular penetration testing
- 10. Cookies & Tracking Technologies
We use cookies for:
-
authentication
-
session management
-
analytics
-
performance monitoring
Users may manage cookie preferences through their browser settings.
- 11. Your Rights (GDPR)
You have the right to:
-
access your personal data
-
rectify inaccurate data
-
request deletion (“right to be forgotten”)
-
restrict processing
-
object to processing
-
data portability
-
withdraw consent at any time
Requests can be sent to privacy@ask‑innovation.com.
For Customer Data processed as a Data Processor, requests must be directed to the Customer (Data Controller).
- 12. Children’s Privacy
The Platform is not intended for individuals under 16.
We do not knowingly collect data from minors.
- 13. Changes to This Policy
We may update this Privacy Policy for legal, technical, or operational reasons.
Customers will be notified of significant changes.
- 14. Contact
For any privacy‑related questions:
Ask‑Innovation — Data Protection Officer (DPO)
Email: privacy@ask‑innovation.com