Privacy Policy

Effective Date: December 13, 2025 | Last Updated: December 13, 2025

1. Introduction

Valileo.ai ("we," "us," "our," or "Company") is committed to protecting your privacy and ensuring you have a positive experience on our website and application. This Privacy Policy explains how we collect, use, disclose, and otherwise process personal information and financial data through our platform.

This policy applies to our website (www.valileo.ai), our web application and dashboard, our mobile applications (if applicable), and all related services and APIs we provide.

2. Information We Collect

2.1 Information You Provide Directly

Account Registration

Name, email address, phone number, company name, industry, business type, location, job title, professional certifications, industry specializations, and account customizations.

Financial & Valuation Data

Financial statements (income statements, balance sheets, cash flow statements), business information (revenue, employees, growth metrics), valuation inputs (assumptions, discount rates, growth projections), uploaded documents (PDFs, Excel, Word files), and transaction history.

Communication & Support

Support requests, feedback, feature requests, and email communications with our team.

2.2 Information Collected Automatically

Usage Information

Pages viewed, features used, valuation methods selected, reports generated, and workflow patterns.

Technical Information

Device type, operating system, browser type and version, IP address, internet service provider, and crash reports.

Analytics Data

Page performance, user behavior, referrer information, and approximate geographic location based on IP address.

2.3 Information from Third Parties

We may receive information from authentication providers (Firebase, Google Sign-In), payment processors (Stripe), and market data providers.

3. How We Use Your Information

We use your information to:

  • Provide and maintain our services
  • Process financial data and generate valuations
  • Enable real-time collaboration features
  • Process AI-powered analysis and recommendations (with your consent)
  • Send account notifications and service updates
  • Respond to support requests
  • Improve platform performance and user experience
  • Comply with legal obligations
  • Detect and prevent fraud

4. How We Share Your Information

4.1 We Do Not Sell Your Data

We never rent, sell, or trade your personal information to third parties for their marketing purposes.

4.2 Service Providers

We share information with trusted service providers who assist in operating our platform:

  • Infrastructure: Google Cloud Platform, Firebase, Vercel
  • AI & Analytics: OpenAI, Anthropic, Google Analytics, Pinecone
  • Security: Sentry, Datadog
  • Payments: Stripe

All service providers are bound by Data Processing Agreements requiring them to maintain data security and confidentiality.

4.3 Legal Requirements

We may disclose information when required by law, court order, or when necessary to protect the security or integrity of our platform or to protect the rights and safety of our users.

4.4 Business Transfers

If Valileo.ai is involved in a merger, acquisition, bankruptcy, or sale of assets, your information may be transferred as part of that transaction. We will notify you of such changes.

5. Data Security & Storage

5.1 Encryption & Protection

  • AES-256 encryption for data at rest
  • TLS 1.2+ encryption for data in transit
  • Multi-factor authentication available
  • Role-based access controls
  • Regular security audits and penetration testing
  • SOC 2 Type II certification

5.2 Data Storage Location

Primary data storage is on Google Cloud Platform and Firebase (US regions). Backups are maintained in secure, geographically distributed locations.

5.3 Data Retention

  • Active Accounts: Data retained for the duration of your subscription
  • Account Closure: Data deleted within 30 days of account closure request
  • Backups: Purged within 90 days
  • Legal Records: Retained per tax and regulatory requirements (up to 7 years)

6. AI & Automated Decision Making

Your data may be processed by OpenAI (GPT) and Anthropic (Claude) APIs for document analysis and insights generation. You can disable AI features in your account settings.

Valileo does not make automatic binding decisions. You always review and approve AI-generated recommendations before final decisions are made.

7. Your Privacy Rights

You have the following rights regarding your personal information:

Right of Access

Request a copy of your personal data in machine-readable format (JSON, CSV, PDF). Response within 30 days.

Right to Correction

Update your profile information and financial data anytime. Changes take effect immediately.

Right to Deletion

Delete your account and all associated data. Data is permanently deleted within 30 days.

Right to Data Portability

Export your data in portable format (CSV, JSON, PDF) at any time.

Opt-Out Options

Opt-out of AI features, marketing emails, analytics, and non-essential cookies in your Settings.

How to Submit Requests

Email: privacy@valileo.ai with "Data Subject Request" in the subject line.

8. GDPR & CCPA Compliance

8.1 GDPR (EU Residents)

Your data is processed under GDPR. We use Standard Contractual Clauses for international transfers. A Data Protection Officer is available at dpo@valileo.ai.

8.2 CCPA (California Residents)

You have the right to know what personal information is collected, delete your personal information, and opt-out of data sharing. Valileo does not "sell" personal information under CCPA definition.

9. Third-Party Services

Our platform uses the following third-party services. Each has its own privacy policy:

  • Google Cloud Platform & Firebase
  • Google Analytics
  • Sentry.io
  • Datadog
  • OpenAI
  • Anthropic
  • Stripe

10. Children's Privacy

Valileo.ai is not directed to individuals under 18 years of age. We do not knowingly collect information from children under 18. If we learn that we have collected data from a child, we will delete it immediately.

11. Changes to This Privacy Policy

We may update this privacy policy periodically. For material changes, we will notify you via email at least 30 days in advance. Continued use of our platform constitutes acceptance of updates.

12. Contact Us

For privacy inquiries and data subject requests:

  • Privacy Inquiries: privacy@valileo.ai
  • Data Protection Officer: dpo@valileo.ai
  • Security Issues: security@valileo.ai
  • Technical Support: support@valileo.ai

Response time: 30 days for formal requests, 5-10 business days for general inquiries.

This Privacy Policy is designed to comply with GDPR, CCPA, UK GDPR, PIPEDA, and other international privacy laws.

Last Updated: December 13, 2025