Privacy Policy
Last updated: 16 June 2026
1. Introduction
Braio.ai (“Braio”, “we”, “us”, or “our”) operates the website at braio.ai and the Braio platform (collectively, the “Service”). This Privacy Policy describes how we collect, use, disclose, and safeguard your information when you use the Service. Our infrastructure and customer data are hosted in the European Union.
By accessing or using the Service, you agree to this Privacy Policy.
2. Information we collect
Information you provide. Contact details (name, work email, company, country) submitted through our forms, account registration information, and any communications you send us (support requests, feedback).
Information collected automatically. IP address, browser type and version, operating system, referring URLs, pages visited and time spent, and device identifiers.
Customer data processed through the platform. When you connect your tools to Braio, we process operational data from those tools to provide the Service — limited to the scopes you explicitly approve. We persist only the analytical results needed to deliver the Service, not raw logs or raw content.
3. How we use your information
- provide, operate, and maintain the Service;
- ground AI outputs in your company context and produce drafts for your approval;
- respond to your inquiries and support requests;
- improve and develop the Service using aggregated, anonymized usage data that does not contain your content;
- send administrative communications (service updates, security alerts);
- comply with legal obligations and protect the rights and safety of users.
4. How we share your information
We do not sell, rent, or trade your personal information. We share it only:
- Service providers / sub-processors — vetted vendors who help us operate the Service (e.g. hosting, the AI model providers you enable), under written agreements and confidentiality obligations;
- Analytics — if you accept analytics cookies, we use Google Analytics (provided by Google) to understand how visitors use our website. Google processes this data as described in its own policies, and your data may be transferred outside the European Economic Area under appropriate safeguards. You can decline analytics cookies in our cookie banner (see our Cookie Policy);
- Live chat — we use Crisp (Crisp IM SAS) to provide the chat widget on our website. When you use the chat, Crisp processes the information you send and basic technical data (such as your IP address) on our behalf to deliver the conversation, under its own privacy terms;
- Scheduling — when you book a call, our booking widget is provided by Cal.com and loads in an embedded frame from Cal.com. The details you enter to book (such as your name and email) and basic technical data are processed by Cal.com to schedule the meeting, under its own privacy terms;
- Legal requirements — where required by law, regulation, legal process, or governmental request;
- Business transfers — in connection with a merger, acquisition, or sale of assets, your information may transfer as part of that transaction;
- With your consent — where you have given explicit consent.
We do not transfer your data to advertising platforms or data brokers, do not use it for advertising, and do not use your content to train generalized third-party AI models.
5. AI processing and your content
Braio drafts actions for you to approve; it does not act autonomously. Your content is used to ground model outputs for your organization. Where we route content to third-party model providers to generate analysis, we work with providers under no-training and limited-retention terms, and processing stays within EU-hosted infrastructure. You can connect any model or tool you trust.
6. Data security
We apply technical and organizational measures appropriate to the risk, including:
- encryption in transit (HTTPS/TLS) and at rest;
- secure storage of credentials and access tokens, separated from application data;
- per-user isolation of connected data, with access limited to the user who connected the account;
- audit logging, role-based access controls, and least-privilege access.
No method of transmission or storage is completely secure, but we work to protect your data.
7. Data retention
We retain personal information only as long as necessary to provide the Service or as required by law, then delete or anonymize it. You can request deletion of your data at any time by contacting team@braio.ai; upon request we will delete your stored data and connected content within 30 days.
8. Your rights and choices
Subject to applicable law, you may:
- access a copy of the personal information we hold about you;
- request correction of inaccurate or incomplete information;
- request deletion of your personal information;
- request a portable copy in a structured, commonly used format;
- disconnect any integration at any time to stop further processing;
- withdraw consent and opt out of marketing communications.
To exercise these rights, contact team@braio.ai; we will respond within 30 days. You also have the right to lodge a complaint with your supervisory authority.
9. International data transfers
Data is hosted in the EU. Where any transfer outside the European Economic Area is necessary, we rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses and, where applicable, additional measures.
10. Children's privacy
The Service is not directed to individuals under 18, and we do not knowingly collect personal information from children. If we learn we have, we will delete it promptly.
11. Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated version here with a new “last updated” date; continued use of the Service after changes constitutes acceptance.
12. Contact us
Questions about this policy? Contact team@braio.ai. See also our Cookie Policy and GDPR statement.