PRIVACY POLICY
Last Updated: May 2, 2025
1. INTRODUCTION
At laxi.ai ("we," "us," or "our"), we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy outlines how we collect, use, disclose, transfer, and store your data when you use our AI-powered product suggestion and customer assistance platform (the "Platform").
This Privacy Policy applies to all users of laxi.ai, including website visitors, account holders, and end-users interacting with AI assistants powered by our technology.
2. KEY TERMS
- Personal Data: Any information relating to an identified or identifiable natural person.
- Data Controller: The entity that determines the purposes and means of processing personal data (typically you, our client).
- Data Processor: The entity that processes data on behalf of the Data Controller (typically us, laxi.ai).
- End-User: Customers or visitors who interact with the AI assistants implemented on your ecommerce platform.
- AI Model: Our machine learning algorithms that power the product suggestions and customer assistance features.
3. INFORMATION WE COLLECT
3.1. Information You Provide Directly
- Account Information: When you register for laxi.ai, we collect basic information such as your name, email address, password (encrypted), company details, billing information, and contact preferences.
- Integration Data: When you connect laxi.ai with your ecommerce platform (such as WooCommerce or Shopify), we collect necessary data from these integrations including product catalogs, inventory information, order data, and customer service histories.
- Communications: We store any feedback, support requests, or other communications you have with us.
3.2. Information We Collect Automatically
- Usage Data: We gather data on how you interact with our platform, including features used, frequency of use, performance metrics, and technical information about your device and internet connection.
- Customer Interaction Data: When your customers use our AI for assistance, we process the content of these interactions to provide accurate responses and improve our services.
- Product Data: To offer product suggestions, we collect and analyze data about your products, inventory, pricing, and sales patterns.
- Log Data: Our servers automatically record information including IP addresses, browser types, referring pages, system activity, and timestamps.
3.3. Cookies and Similar Technologies
We use cookies, pixels, and similar tracking technologies to enhance your experience and collect usage information. These technologies help us remember your preferences, understand how you use our services, and improve functionality.
You can manage cookie preferences through your browser settings. However, disabling certain cookies may limit your ability to use some features of our platform.
3.4. Customer Data Processing
As part of our services, we process end-user data on behalf of our clients. This includes:
- End-user queries and conversations with the AI assistant
- Purchase histories and preferences to enable product recommendations
- Technical information necessary for service functionality
Important: We remove sensitive client data before storage in our databases, as specified in our Data Processing Agreement.
4. HOW WE USE YOUR INFORMATION
4.1. Primary Purposes
- Service Provision: To provide, maintain, and improve our AI-powered product suggestion and customer assistance services.
- Personalization: To tailor our services to your specific needs and preferences.
- Integration Management: To facilitate connections with your ecommerce platform and ensure proper data synchronization.
- Customer Support: To address your inquiries, troubleshoot issues, and provide technical assistance.
4.2. Additional Uses
- AI System Improvement: We may use anonymized and aggregated data to improve the performance of our AI systems, enhancing the accuracy of our product suggestions and customer assistance. This process is designed to preserve privacy while improving service quality.
- Analytics and Business Intelligence: We analyze usage patterns to improve our platform's functionality, user experience, and business performance.
- Communication: We use your contact information to send you important updates, service notifications, and (with your consent) marketing communications.
- Legal Compliance: We process your information as required to comply with applicable laws, regulations, legal processes, or enforceable governmental requests.
- Fraud Prevention and Security: Your data helps us detect and prevent fraudulent activities, unauthorized access, and other security breaches.
5. LEGAL BASIS FOR PROCESSING (GDPR AND EQUIVALENT LAWS)
We process your personal data based on the following legal grounds:
- Performance of Contract: Processing necessary to provide our services as specified in our Terms of Service or other agreements with you.
- Legitimate Interests: Processing based on our legitimate business interests, such as developing and improving our services, marketing our products, ensuring network security, and preventing fraud.
- Consent: Processing based on your specific consent, such as for marketing communications or certain types of data processing activities.
- Legal Obligation: Processing necessary to comply with laws and regulations.
6. DATA SHARING AND DISCLOSURE
6.1. Service Providers
We may share your information with trusted third-party service providers who assist us in operating our platform, conducting our business, or servicing you. These providers have access to your information only to perform these tasks on our behalf and are contractually obligated to protect your data.
Examples include:
- Cloud hosting and storage providers
- Payment processors
- Analytics services
- Customer support tools
- Marketing and communication platforms
6.2. Business Transfers
If laxi.ai is involved in a merger, acquisition, or sale of all or a portion of its assets, your information may be transferred as part of that transaction. We will notify you via email and/or a prominent notice on our website of any change in ownership or uses of your personal information.
6.3. Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court or government agency).
6.4. Protection of Rights
We may disclose your information when we believe in good faith that disclosure is necessary to protect our rights, enforce our terms and policies, investigate fraud, or protect the safety of our users or the public.
6.5. With Your Consent
We may share your information with third parties when we have your explicit consent to do so.
Important: We do not sell your personal information to third parties for their marketing purposes.
7. DATA RETENTION
We retain your information for as long as your account is active or as needed to provide you services. We will retain and use your information as necessary to comply with our legal obligations, resolve disputes, and enforce our agreements.
Specifically:
- Account information: Retained for the duration of your active account and for a reasonable period thereafter for legal and business purposes.
- Integration data: Retained while the integration is active and for a reasonable period thereafter for backup and analytical purposes.
- Customer interaction data: Retained for a limited period necessary for service improvement and legal compliance.
- Anonymized data: May be retained for analytical purposes after removing all personal identifiers.
8. DATA SECURITY
We implement appropriate technical and organizational measures to protect your information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of sensitive data in transit and at rest
- Regular security assessments and penetration testing
- Access controls and authentication mechanisms
- Employee training on data protection and security
- Incident response procedures
- Regular backups to prevent data loss
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
9. YOUR PRIVACY RIGHTS
Depending on your location, you may have certain rights regarding your personal information. These may include:
9.1. For All Users
- Access: You can request information about the personal data we hold about you.
- Correction: You can request that we correct inaccurate or incomplete information.
- Deletion: You can request that we delete your personal information in certain circumstances.
- Marketing Choices: You can opt out of marketing communications at any time.
9.2. For Users in the European Economic Area (EEA), UK, or Similar Jurisdictions
Under the General Data Protection Regulation (GDPR) and equivalent laws, you have additional rights:
- Data Portability: You can request a copy of your data in a structured, machine-readable format.
- Restriction of Processing: You can request that we restrict processing of your data under certain conditions.
- Objection: You can object to our processing of your data based on legitimate interests.
- Withdrawal of Consent: You can withdraw consent where processing is based on consent.
- Complaint: You have the right to lodge a complaint with a supervisory authority.
9.3. For California Residents
Under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA), you have specific rights:
- Right to Know: You can request categories and specific pieces of personal information collected, sources of information, purposes for collection, and categories of third parties with whom we share information.
- Right to Delete: You can request deletion of personal information.
- Right to Opt-Out: You can opt out of the sale or sharing of personal information.
- Right to Non-Discrimination: We will not discriminate against you for exercising your rights.
- Right to Limit Use of Sensitive Personal Information: You can limit the use of certain sensitive personal information.
9.4. For Users in Other Jurisdictions
We respect privacy rights under various laws including Brazil's LGPD, Canada's PIPEDA, Australia's Privacy Act, and other applicable regulations. Please contact us to exercise your rights under these laws.
To exercise your rights, please contact us at team@laxi.ai. We will respond to your request within the timeframe required by applicable law.
10. INTERNATIONAL DATA TRANSFERS
laxi.ai operates globally, which means your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws.
When we transfer personal data outside the EEA, UK, Switzerland, or other jurisdictions with data localization requirements, we implement appropriate safeguards, which may include:
- Standard Contractual Clauses approved by the European Commission
- Binding Corporate Rules
- Adequacy decisions where applicable
- Other legally approved mechanisms
11. CHILDREN'S PRIVACY
Our services are not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If you become aware that a child has provided us with personal information without parental consent, please contact us at team@laxi.ai. If we become aware that we have collected personal information from children without verification of parental consent, we will take steps to remove that information from our servers.
12. CHANGES TO THIS PRIVACY POLICY
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.
We encourage you to review this Privacy Policy periodically. Your continued use of laxi.ai after any changes to this policy constitutes your acceptance of the new terms.
13. DATA PROCESSING AGREEMENTS
For clients who are subject to the GDPR or similar regulations, we offer a Data Processing Agreement (DPA) that outlines our role as a data processor and our commitments to data protection. Please contact team@laxi.ai to request our standard DPA.
14. AI TRANSPARENCY AND GOVERNANCE
14.1. AI Implementation
Our AI systems utilize:
- Pre-trained AI models
- Product catalogs and descriptions
- General ecommerce knowledge bases
We employ techniques such as data minimization and anonymization to protect privacy. We do not use identifiable customer data for any purposes beyond providing the Service.
14.2. Human Review
In limited circumstances, authorized personnel may review AI interactions to:
- Improve system performance
- Address reported issues
- Ensure compliance with our policies
All human reviewers are bound by strict confidentiality obligations.
15. CONTACT US
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
Privacy Team laxi.ai Email: privacy@laxi.ai
For legal inquiries: legal@laxi.ai For data protection inquiries: alessandro.voltan@laxi.ai
Physical Address: Ahtri tn 12 Tallinn, Harju 10151, Estonia
16. CONSENT
By using laxi.ai, you consent to the collection and use of your information as described in this Privacy Policy. If you do not agree with this policy, please do not use our services.
We understand the importance of your personal data, especially when it comes to AI-powered services. Rest assured that we implement strict measures to protect your information and use it responsibly to provide and improve our services.
© 2025 laxi.ai. All rights reserved.