最后更新:2026 年 7 月 18 日

隐私政策

在 ChatyFunnel,我们认真对待隐私。本政策说明我们收集哪些数据、出于何种目的处理这些数据以及你对这些数据的权利。使用我们的平台即表示你接受本文档中所述的做法。

1. 数据处理者

ChatyFunnel 是通过其平台和网站收集的个人数据的处理者。如需就数据保护事宜联系我们,请通过联系页面写信给我们。

2. 我们收集的数据

  • 账户数据:当你请求信息或创建账户时的姓名、电子邮件、电话和公司。
  • 使用数据:关于你如何与平台交互的技术信息(访问的页面、操作、设备和浏览器)。
  • 通信数据:通过连接渠道(WhatsApp 等)与客户交换的消息。

3. 处理目的

我们处理你的数据以提供所签订的服务、管理注册和支持、改进平台、发送与服务相关的通信并履行法律义务。

4. 法律依据

处理的法律依据是当你是客户时合同的履行、当你请求信息或订阅通信时的同意,以及我们确保服务安全和持续改进的合法利益。

5. 数据保留

只要你与 ChatyFunnel 保持活动关系,我们就会保留你的数据。当你不再是客户时,我们将在适用的法定期限内将其封存,之后将安全删除。

6. 收件人

除法律义务外,我们不会将你的数据转让给第三方。为提供服务,我们可能使用技术供应商(托管、分析、消息传递),他们作为合同下的数据处理者,具有适当的保障措施。

7. 你的权利

你可以随时通过联系页面行使访问、更正、删除、反对、限制和可携带性的权利。如你认为你的权利未得到处理,可以向有管辖权的监管机构提出投诉。

8. 政策变更

我们可能更新本政策以反映法律变化或服务改进。我们将在本页面上发布更新版本,并注明最后修订日期。

9. Data protection & security

We apply industry-standard technical and organizational measures to safeguard user data, including:

  • Encryption of data in transit using HTTPS/TLS on all endpoints.
  • Encryption of sensitive data at rest where applicable, using provider-managed keys.
  • Secure authentication and authorization based on hashed credentials and short-lived session tokens.
  • Access controls following least-privilege principles, enforced through role-based permissions and row-level security in our database.
  • Hosting on hardened cloud infrastructure with physical and network security controls.
  • Firewalls, continuous monitoring and audit logging to detect and respond to unauthorized access attempts.
  • Regular security updates, dependency patching and vulnerability reviews.
  • Automated backups and documented disaster recovery procedures.

10. Google user data protection

When you connect a Google account to ChatyFunnel, we handle Google user data with the following commitments:

  • We only request the Google OAuth scopes strictly necessary for the features you enable.
  • Google user data is used solely to provide the functionality you have requested.
  • We do not sell Google user data.
  • We do not use Google user data for advertising purposes.
  • We do not share Google user data with third parties, except with sub-processors strictly required to operate the service or when legally required to do so.
  • Our use and transfer of information received from Google APIs adhere to the Google API Services User Data Policy, including the Limited Use requirements.

11. Data retention & deletion

We retain user data only for as long as it is necessary to provide the service or to meet legal, accounting or reporting obligations. You may request the deletion of your account and associated personal data at any time from the contact page. Once deletion is confirmed, data is securely erased from our production systems and removed from backups within the standard rotation period, unless retention is required by applicable law.

12. Access controls

  • Only authorized ChatyFunnel personnel can access user data, and only when strictly required to operate, support or secure the service.
  • Access is restricted according to documented business need and role.
  • Administrative access is authenticated with strong credentials, logged and monitored for anomalous activity.

13. Third-party service providers

To deliver the service we rely on trusted providers that act as data processors under contractual guarantees, including cloud hosting, database, email delivery, analytics and payment processing (for example providers such as Google Cloud, AWS, Supabase, Stripe or Cloudflare, where applicable). These providers maintain their own security certifications and safeguards, and are only allowed to process data as necessary to perform the contracted services.

14. Incident response

We continuously monitor our systems for security incidents. If a data breach affecting personal information occurs, we will investigate promptly, contain the incident and notify affected users and the relevant supervisory authorities without undue delay, in accordance with applicable data protection laws.

15. Privacy commitment

Protecting user privacy and data security is a core priority for ChatyFunnel. We continuously review, test and improve our security practices, policies and infrastructure to keep user information safe and to remain aligned with the expectations of our users and with evolving regulatory requirements.