Data & Privacy
Last updated: November 29, 2025
Understand how SimpleChat handles, stores, and protects your data and your customers' data.
Information you provide:
- Email address
- Full name
- Company name
- Password (hashed)
- Profile picture
Configuration and content:
- Bot names and settings
- Welcome messages
- AI training content
- Widget customizations
- Integration credentials (encrypted)
Chat interactions:
- User messages
- Bot responses
- Agent replies
- Timestamps
- User identifiers (IPs, device info)
Platform analytics:
- Login activity
- Feature usage
- Bot performance metrics
- Error logs
- Provide chat services
- Improve AI responses
- Generate analytics
- Send notifications
- Process payments
- Sell your data to third parties
- Use data for advertising
- Share without consent
- Access conversations unnecessarily
- Primary servers: EU (Germany)
- Backups: EU region
- CDN: Global (for widget delivery)
- Active data: While account active
- Conversation logs: 90 days default
- Deleted accounts: 30 days then purged
- Backups: 30 days rolling
- In transit: TLS 1.3
- At rest: AES-256
- Passwords: bcrypt hashed
- API keys: Encrypted storage
You can request:
- Copy of all your data
- List of data categories
- How data is used
- Who has access
Export your data:
- Conversation history
- Bot configurations
- Analytics data
- Account information
Delete your data:
- Full account deletion
- Specific conversation deletion
- Data anonymization option
- Email: privacy@simplechat.bot
- Include your account email
- Specify your request
- Verify identity
- Receive response within 30 days
From chat visitors:
- Messages sent
- IP address (optional)
- Device/browser info
- Session identifiers
As the bot owner, you must:
- Display privacy notice
- Get consent if required
- Honor deletion requests
- Not collect unnecessary data
SimpleChat helps you:
- Privacy badge in widget
- Consent collection option
- IP anonymization
- Data deletion tools
- AI Processing: OpenAI (for AI responses)
- Payments: Lemon Squeezy, NOWPayments
- Email: Brevo (notifications)
- Infrastructure: Railway (hosting)
Minimal data shared with services:
- OpenAI: Conversation text only
- Payments: Billing info only
- Email: Email address only
We comply with GDPR:
- Data minimization
- Purpose limitation
- Storage limitation
- Integrity and confidentiality
Available for enterprise customers:
- Standard contractual clauses
- Sub-processor list
- Security measures
- Go to Profile
- Navigate to Privacy
- Access options:
- Download data
- Delete data
- Adjust settings
Configure per bot:
- Open bot in Bot Studio
- Go to Privacy Settings
- Configure:
- Consent collection
- Data retention
- Privacy notice
- IP collection
- SSL/TLS encryption
- Regular security audits
- DDoS protection
- Intrusion detection
- Employee access controls
- Security training
- Incident response plan
- Regular reviews
Email: privacy@simplechat.bot
Email: dpo@simplechat.bot
Email: security@simplechat.bot