Privacy Policy
Effective date: 25/10/2024
1. Introduction
Welcome to Hyko.ai, operated by BIGmama Technology Ltd. (“we,” “us,” or “our”). This Privacy Policy governs your use of our platform, https://hyko.ai and any of its sub-domains such as https://beta.hyko.ai or https://docs.hyko.ai, (the “Service”), and explains how we collect, use, and disclose information from users of the Service.
By using Hyko.ai, you agree to the collection and use of information in accordance with this policy. Unless otherwise defined, terms in this Privacy Policy follow the definitions outlined in our Terms of Service.
2. Definitions
- Service: The website https://hyko.ai operated by BIGmama Technology Ltd.
- Personal Data: Data that can identify a living individual, either by itself or in conjunction with other information we may possess.
- Usage Data: Data collected automatically by our Service, such as the duration of a page visit.
- Cookies: Small files stored on your device (computer or mobile).
- Data Controller: The party that determines the purposes and manner of processing personal data. We are the Data Controller of your data.
- Data Processor (or Service Provider): Any person or entity that processes data on behalf of the Data Controller. We may use various Service Providers to process data more effectively.
- Data Subject: Any individual who is the subject of Personal Data.
- User: The individual using our Service. The User is also the Data Subject under this policy.
3. Information Collection and Use
We collect information to provide and improve our Service. By using Hyko.ai, you consent to this data collection, which aligns with applicable laws, including the EU General Data Protection Regulation (GDPR) and relevant French privacy laws.
4. Types of Data Collected
4.1 Personal Data
We may request personally identifiable information for account setup, authentication, and communication purposes. This information may include, but is not limited to:
- Email address: Used for account identification, communication, and support.
- Cookies and Usage Data: Collected to enhance user experience, manage session authentication (including access and refresh tokens), and gather insights into how our Service is used. This includes information on pages visited, duration of visits, and preferences.
- Account Information: Such as username or profile details, to customize and secure your experience on our platform.
We may use your Personal Data to contact you with newsletters, marketing content, and other materials. You can opt out of receiving these communications at any time.
4.2 Usage Data
We collect information that your browser sends whenever you visit our Service to help us understand and improve user experience, ensure platform security, and diagnose issues. This Usage Data may include, but is not limited to:
- IP address
- Browser type and version
- Pages visited on our Service
- Date and time of visit
- Time spent on each page
- Device identifiers and diagnostic data
- Session replay and heatmaps: Used to analyze user interactions with our platform.
- Clickstream data: Tracks clicks, scrolls, and other interactions within pages to improve usability.
For these purposes, we use PostHog to collect, monitor, and analyze this data. PostHog operates in compliance with applicable data protection laws, and you can review their privacy practices here. Usage Data collected is stored securely and used exclusively to enhance service quality, diagnose performance issues, and improve overall user experience on Hyko.ai.
5. Use of Data
We use the collected data for:
- Service maintenance and provision
- Notifications about changes to our Service
- Access to interactive features
- Customer support
- Gathering analytical data to improve Service
- Monitoring Service usage
- Detection and prevention of technical issues
- Processing payments through third-party processors
- Enhancing security protocols and system reliability
We do not use any user-uploaded data for AI training, nor do we share any collected data with AI or ML model providers.
6. Retention of Data
We retain your Personal Data only as long as needed to fulfill the purposes outlined in this Privacy Policy. Usage Data is typically kept for a shorter period unless required for ongoing improvements to Service security or functionality. Legal requirements may also affect retention times.
7. Transfer of Data
Your information, including Personal Data, may be transferred to locations outside of your jurisdiction, where data protection laws may differ. For users outside France, we may transfer and process data within France or other relevant jurisdictions. By providing your information, you consent to such transfers under this Privacy Policy.
8. Disclosure of Data
We may disclose your Personal Data:
- For Legal Requirements: In compliance with applicable laws or in response to valid public authority requests.
- Business Transactions: In cases of mergers, acquisitions, or asset sales, your Personal Data may be transferred.
- With Third Parties: Service Providers and contractors supporting our business, always following data protection laws.
We reserve the right to remove access tokens or any data associated with your account if necessary for security or operational purposes.
9. Security of Data
We prioritize data security but cannot guarantee absolute security. We employ industry-standard protocols, including:
- Daily Backups: Nightly backups of our database.
- Access Control: Only authorized personnel may access user data, which includes access tokens to third-party platforms. Access tokens are used solely as authorized by the user and only for user-requested purposes.
10. Third-Party Service Providers
We use third-party Service Providers for payment processing, analytics, and monitoring, including but not limited to:
- Posthog: For analyzing website traffic. See Posthog Privacy Policy.
- Stripe: For secure payment processing. See Stripe Privacy Policy.
These providers may collect Usage Data under their policies, and we encourage you to review them. We do not control and are not responsible for third-party privacy practices.
11. User Rights Under GDPR
If you are an EU resident, you have the right to:
- Access, update, or delete your data
- Rectify inaccurate information
- Object to or restrict processing
- Data portability
- Withdraw consent (where applicable)
To exercise these rights, email us at contact@big-mama.io. We may request identity verification before processing your request.
12. California Consumer Privacy Rights (CCPA)
California residents have specific rights, including:
- Access to data collected within the past 12 months
- Data deletion upon request
- Opt-out of data sharing
To request your rights under CCPA, email contact@big-mama.io.
13. Children’s Privacy
Hyko.ai is not intended for children under 18. If we inadvertently collect data from children under 18 without parental consent, we will delete it upon becoming aware.
14. Cookies and Token Storage
For security and convenience, Hyko.ai uses cookies to store access tokens and refresh tokens for user authentication. These cookies enable us to securely maintain user sessions and provide seamless access to services, while limiting the need to re-enter login credentials repeatedly. Here’s how we handle tokens with cookies:
- Access Tokens: Stored in short-lived cookies to allow authenticated access to our platform during a session. These cookies automatically expire after a specified period or upon logout to maintain security.
- Refresh Tokens: Stored in more persistent cookies to securely refresh access tokens without requiring repeated logins. Refresh token cookies also expire within a limited timeframe or can be cleared on logout to minimize security risks.
You can control or delete cookies through your browser settings; however, blocking these essential cookies may limit access to secure areas of our platform or disrupt session continuity.
15. Changes to this Privacy Policy
We may update this Privacy Policy periodically. We will notify you by updating the “Effective Date” at the top of this policy, and we recommend reviewing it regularly. Continued use of our Service indicates your acceptance of any changes.
16. Contact Us
For questions or requests, contact us: contact@big-mama.io