EN

Privacy Policy

Last Updated: 2025-08-07

This Privacy Policy describes how we collect, use, and disclose information when you use our SaaS platform.

1. Introduction

Wisdomate ("We", "The Provider") provides a SaaS platform based on three integrated modules:

  • Business Intelligence (BI): Collection and analysis of data from e-commerce, advertising, and analytics platforms.
  • Conversational Marketing: Management of marketing campaigns on WhatsApp, Messenger, and Instagram.
  • Customer Care: Customer support through AI Agents for pre and post-sales requests.

This policy explains how we process the data of end users ("Customers") of our clients ("SaaS Clients").

2. Roles in Data Processing

  • SaaS Clients (users of the platform): Act as Data Controllers for their Customers' data.
  • We (SaaS Provider): Act as Data Processors under the GDPR (Art. 28).

3. Data Collection and Purposes by Module

Business Intelligence Module

Data SourceData TypesPurpose
Shopify, MagentoOrders, products, customer dataSales analysis, KPI dashboards
GLS, Bartolini, Poste ItalianeShipping PerformanceDelivery performance
Google Ads, Bing Ads, Meta AdsCampaign performance, clicks, costsAdvertising optimization
Google AnalyticsUser behavior, trafficStrategic reporting
7Pixel, AwinPrices, affiliate performanceCompetitive benchmarking

Conversational Marketing Module

PlatformData TypesPurpose
WhatsApp, Messenger, InstagramUser ID, messages, interactionsTargeted campaigns, conversation management

Care Customer Care Module (AI)

Data TypesPurpose
Pre/post-sales requestsAutomated responses, issue resolution
Interaction historyAI Agent training, service improvement

4. Legal Basis for Processing

  • Consent: Obtained by SaaS Clients on behalf of their Customers.
  • Legitimate Interest: Data analysis to optimize services (BI module).
  • Contractual Performance: Delivery of SaaS services.

5. Data Sharing with Third Parties

  • Subprocessors: We use third-party services for:
    • Cloud hosting (e.g., AWS, Google Cloud)
    • Analytics tools (e.g., BigQuery)
    • Messaging platforms (official APIs of Meta, WhatsApp, etc.)
  • Legal obligations: Disclosure when required by applicable laws.

All subprocessors comply with GDPR/CCPA and are covered by specific agreements (DPA).

6. Data Security

  • Technical measures:
    • End-to-end encryption (data in transit and at rest)
    • Two-factor authentication (2FA)
    • Regular audits and penetration testing
  • Organizational measures:
    • Data access limited to authorized personnel
    • Mandatory privacy training

7. Data Retention

  • SaaS Client Data: Retained for the duration of the active account, then deleted within 30 days.
  • End User Data: Deleted upon request from the SaaS Client or after 24 months of inactivity.

8. End User Rights (GDPR/CCPA)

End users have the right to:

  • Access, rectify, or delete their personal data.
  • Object to processing for marketing purposes.
  • Request data portability.

Requests should be directed to the SaaS Client (Data Controller), who will manage them through our platform.

9. International Transfers

Data may be transferred outside the European Economic Area (EEA) only to:

  • Countries with adequacy decisions recognized by the EU.
  • Entities covered by Standard Contractual Clauses (SCCs).

10. Changes to this Policy

We will notify substantial changes via email or through the SaaS dashboard 30 days before they take effect.

11. Contact Information

For privacy questions:

DPO (Data Protection Officer): dpo@wisdomate.ai

Registered Office: Piazza Lorenzo Viani 11/A, 55049, Viareggio (LU)

Supervisory Authority: Italian Data Protection Authority (EU) or local authorities

© Wisdomate. All rights reserved. Terms of Service