01Who we are
Notti is a product of Zeep Labs, a brand of JULIO AUGUSTO MORAIS DE SOUSA DESENVOLVIMENTO DE SOFTWARE LTDA, registered under CNPJ No. 37.818.214/0001-80, headquartered in São Paulo, SP, Brazil. For the purposes of this policy, we are the controller of the data of the customers who use the platform.
02Controller and processor
We handle two types of data, with different roles:
03Data we collect
Depending on how you interact with Notti, we may collect:
04How we use the data
We use the data to provide and improve the service, deliver the notifications configured by customers, process payments, prevent fraud and abuse, comply with legal obligations, and communicate with you about your account and product updates.
Data sent through the "Talk to sales" form is used only to reply to your request and carry on the sales conversation.
05Legal bases
We process personal data based on the legal bases set out in art. 7 of the LGPD, mainly: performance of a contract, compliance with a legal obligation, legitimate interest and, where applicable, consent.
Data from the "Talk to sales" form is processed based on your consent, given when you submit the form. You can withdraw it at any time by emailing our data protection officer.
06Sharing
We do not sell personal data. We share data only with:
07International transfer
Some vendors may process data outside Brazil. In these cases, we adopt the safeguards provided for under the LGPD, such as standard contractual clauses and vendors with adequate levels of protection.
08Retention
We keep data for as long as necessary to fulfill the purposes of this policy or legal obligations. After an account is closed, data is deleted or anonymized within 90 days, unless the law requires it to be kept for longer.
Data sent through the "Talk to sales" form remains available to the sales team for 30 days from submission. After that, it is deleted and permanently removed from our database within 30 additional days.
09Security
We adopt technical and administrative measures to protect data, including encryption in transit and at rest, role-based access control, per-app API keys and audit logging. No system is fully immune to incidents; should one occur that creates a relevant risk, we will notify those affected and the ANPD.
10Self-hosted version
In the self-hosted version, data stays on the customer's own infrastructure and is not accessed by Zeep Labs. The customer is fully responsible for processing and securing that data. We may receive only minimal technical licensing information, where applicable.
11Your rights
As a data subject, you may request at any time:
13Data protection officer (DPO)
To exercise your rights or ask questions about this policy, contact our data protection officer at legal@zeeptecnologia.com.br. We will respond within 15 days.
14Changes to this policy
We may update this policy periodically. Material changes will be communicated by email or through the dashboard, and the update date at the top of the page will be revised.