Privacy Policy
Last updated: March 15, 2026
At Resply, we take the protection of your data very seriously. This policy explains what data we collect, why we collect it, and how we protect it. We are committed to complying with the General Data Protection Regulation (GDPR).
EU hosting
Data hosted in Europe (AWS eu-west-1, Ireland)
No resale
Your data is never sold to third parties
No AI training
Your data is not used to train models
1.Data collected
We collect the following categories of data:
| Data type | Examples | Legal basis |
|---|---|---|
| Identity | Name, email, company | Contract |
| Conversations | Customer support messages | Contract |
| Knowledge base | FAQ, documentation | Contract |
| Browsing | Pages visited, clicks | Legitimate interest |
| Billing | Via Stripe (tokenized) | Legal obligation |
2.Purposes of processing
- Provide the automated customer-support service
- Improve the quality and relevance of AI answers
- Generate insights and statistics for your dashboard
- Manage your subscription and billing
- Send service-related communications
- Ensure security and prevent fraud
3.Subprocessors
We use the following subprocessors, all GDPR-compliant:
4.Retention period
5.Your rights (GDPR)
In accordance with the GDPR, you have the following rights:
To exercise your rights, contact our DPO: dpo@resply.io
Response time: 30 days maximum
6.Cookies
We use the following cookies:
| Cookie | Type | Duration | Consent |
|---|---|---|---|
| sb-auth-token | Essential | Session | Not required |
| rb_session | Essential | 24h | Not required |
| ph_* | Analytics | 1 year | Required |
7.Security
We implement the following security measures:
- TLS 1.3 encryption for all communications
- AES-256 encryption of data at rest
- Two-factor authentication available
- Regular security audits
- Strong password policy
- Data isolation per organization
Data Protection Officer
For any question about your personal data or to exercise your GDPR rights.
dpo@resply.io