Privacy Policy

Last updated September 8, 2026

This policy explains what Svellyo ("we", "us") collects, why, and how you can control it. It covers our website, dashboard, mobile app and the chat widget our customers install on their sites.

Who is who

Our customers are the businesses that create a Svellyo account and install the widget. Visitors are people who chat through a widget on a customer's site. For visitor data, the customer is the controller and we are the processor acting on their instructions.

What we collect from customers

  • Account details: name, email, password hash or Google sign-in identifier, timezone.
  • Workspace content: knowledge base articles, uploaded files, crawled pages, settings and team membership.
  • Billing details handled by our payment processor, Dodo Payments. We never store card numbers.
  • Usage and diagnostic data: pages visited in the dashboard, error reports, IP address and browser type.

What the widget collects from visitors

  • Messages and attachments sent in the chat.
  • The page URL, referrer, browser language, timezone and a random visitor identifier stored in the browser's local storage. The widget does not set tracking cookies.
  • Identity attributes a customer chooses to pass (for example an email or user id) when the visitor is signed in to the customer's product.

How we use data

  • To provide the service: routing chats, generating AI replies, showing conversation history to the customer's team.
  • To generate AI answers we send the conversation and relevant knowledge base excerpts to OpenAI. OpenAI does not use this data to train models under our agreement.
  • To send transactional email (verification, invitations, notifications) through Resend.
  • To deliver realtime updates through Pusher and store attachments on Vercel Blob.
  • To keep the service secure, prevent abuse and meter plan usage.

Retention and deletion

Customers choose a retention period for conversations (forever, 90 or 365 days) and can delete individual contacts, workspaces or their whole account from the dashboard. Deleted workspaces are purged within 30 days. Backups roll off within 30 days after that.

Your rights

You can access, export, correct or delete your data at any time from your account, or by emailing support@svellyo.com. Visitors should contact the business whose site they chatted on; we will help that business fulfil the request.

Sub-processors

Vercel (hosting, storage), Neon (database), OpenAI (AI replies), Resend (email), Pusher (realtime), Dodo Payments (billing), Sentry (error monitoring). We will update this list before adding a new sub-processor.

Contact

Questions? Email support@svellyo.com.