1. Introduction
Zipy ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our visitor tracking and live chat services. Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the service.
2. Information We Collect
We collect various types of information in connection with the services we provide, including:
2.1 Personal Data
While using our service, we may ask you to provide certain personally identifiable information that can be used to contact or identify you. This includes:
• Email address
• First name and last name
• Phone number
• Company name
• Billing information (processed securely by our payment partners)
2.2 Visitor Data
When visitors interact with websites using our widget, we automatically collect:
• IP address
• Browser type and version
• Device type (mobile, desktop, tablet)
• Operating system
• Pages visited and time spent
• Referring website
• Location information (city/country level)
• Online/offline status
2.3 Chat Communications
We collect and store the content of chat conversations between website visitors and your team. This includes:
• Chat transcripts
• Timestamps
• Agent responses
• Visitor messages
• File attachments (if enabled)
3. How We Use Your Information
We use the information we collect for various purposes, including:
3.1 To Provide and Maintain Our Service
• Operate and maintain the Zipy platform
• Display visitor information in real-time
• Enable live chat functionality
• Generate analytics and reports
• Process transactions
3.2 To Improve Our Service
• Understand how users interact with our platform
• Develop new features and functionality
• Analyze usage patterns
• Optimize performance
3.3 To Communicate With You
• Send service updates and announcements
• Respond to inquiries and support requests
• Provide billing information
• Share marketing communications (with opt-out option)
3.4 For Legal Compliance
• Comply with applicable laws and regulations
• Enforce our terms of service
• Protect our rights and property
• Prevent fraud and abuse
4. How We Share Your Information
We may share your information in the following situations:
4.1 Service Providers
We may employ third-party companies and individuals to facilitate our service, provide service-related services, or assist us in analyzing how our service is used. These third parties have access to your personal information only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose.
Examples include:
• Cloud hosting providers (AWS, Google Cloud)
• Payment processors (Stripe)
• Analytics services
• Customer support tools
4.2 Business Transfers
If Zipy is involved in a merger, acquisition, or asset sale, your personal information may be transferred. We will provide notice before your personal information is transferred and becomes subject to a different privacy policy.
4.3 Legal Requirements
We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court or government agency).
4.4 No Selling of Data
We do not sell your personal information or visitor data to third parties. Your data is yours, and we act as a custodian to provide our service.
5. Data Security
The security of your data is important to us. We implement appropriate technical and organizational security measures to protect your personal information from unauthorized access, disclosure, alteration, or destruction.
5.1 Security Measures
• Encryption in transit (TLS/SSL)
• Encryption at rest
• Access controls and authentication
• Regular security audits
• SOC2 compliance
• GDPR compliance
• 24/7 monitoring
5.2 Data Breach Notification
In the event of a data breach that affects your personal information, we will notify you and relevant authorities within 72 hours as required by applicable law.
6. Data Retention
We retain your information for as long as your account is active or as needed to provide you services.
6.1 Retention Periods
• Visitor data: 30 days (free plans), 1 year (paid plans)
• Chat transcripts: Duration of account + 90 days
• Account information: Until account deletion
• Billing information: As required by tax laws
6.2 Account Deletion
When you delete your account, we will delete your personal information within 30 days, unless we need to retain it for legal compliance.
7. Your Data Protection Rights
Depending on your location, you may have the following rights regarding your personal information:
7.1 GDPR Rights (for EEA residents)
• Right to access – You can request copies of your personal data.
• Right to rectification – You can request correction of inaccurate data.
• Right to erasure – You can request deletion of your data.
• Right to restrict processing – You can request limitation of processing.
• Right to data portability – You can request transfer of your data.
• Right to object – You can object to processing of your data.
7.2 CCPA Rights (for California residents)
• Right to know – You can request disclosure of collected data.
• Right to delete – You can request deletion of personal information.
• Right to opt-out – You can opt-out of data sales (we don't sell data).
• Right to non-discrimination – We won't discriminate for exercising rights.
7.3 Exercising Your Rights
To exercise any of these rights, please contact us at privacy@xolox.io. We will respond to your request within 30 days.
8. Children's Privacy
Our service is not intended for use by children under the age of 13 (or 16 in the EEA). We do not knowingly collect personally identifiable information from children. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us.
9. International Data Transfers
Your information may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ. We take appropriate safeguards to ensure your data is protected.
10. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "effective date" at the top. For material changes, we will provide additional notice (such as email notification).
11. Contact Us
If you have any questions about this Privacy Policy, please contact us:
• Email: privacy@xolox.io
• Address: [Your Business Address]
• Phone: [Your Phone Number]
• Data Protection Officer: dpo@xolox.io
This Privacy Policy was last updated on February 20, 2026 and is effective from March 1, 2026. For privacy-related questions, please contact privacy@xolox.io.