Privacy Policy
Last updated
Introduction
Your privacy is important to Talio, and maintaining your trust is paramount to us. We are fully committed to keeping your personal information safe. This privacy policy is intended to provide you with information about the personal information we collect and how that information is used and shared. We collect personal information about you when you access our website (www.talio.ai) or when you use any of our products, applications, or services (collectively our "Services").
This document outlines our approach to compliance with the General Data Protection Regulation (GDPR) and all other relevant data protection legislation. It also sets forth your privacy rights. Please take a moment to familiarise yourself with our privacy practices.
It is important that you read this privacy policy together with any other privacy policy we may provide on specific occasions so that you are fully aware of how and why we are using your data. This privacy policy supplements the other notices and is not intended to override them.
We value your opinions. Should you have any questions or comments related to this privacy policy, please contact us at [email protected].
Changes to this Privacy Policy
We may update this privacy policy from time to time. If we make any material changes, we will notify you prior to the changes taking effect by posting a notice on our website and, where appropriate, sending you a notification.
Who We Are and How to Contact Us
Throughout this privacy policy, "we," "us," and "ours" refer to Talio Technologies Limited ("Talio"). Talio Technologies Limited is a registered company located at:
Talio Technologies Limited,
5 Harcourt Road,
Dublin 2,
Ireland.
We can be contacted by email at [email protected].
Data Protection Officer
We have appointed an internal data protection officer (DPO) for you to contact if you have any questions regarding this privacy policy, our privacy practices, or if you wish to exercise your data rights. Our DPO can be reached by email at [email protected].
1. Information We Collect and How We Use It
We collect and use your personal information for a variety of reasons, including:
If You Register, Purchase, or Subscribe to One of Our Services:
To create an account with us.
To fulfil our contractual obligations, including sending important notices.
To send welcome emails and other essential communications regarding your subscription.
To Pay for the Services You Have Requested:
We collect your payment information to process payments. This is handled by PCI-compliant payment providers.
To Deliver Marketing and Promotions:
We send promotional emails about features, events, and exclusive offers with your consent.
To Understand How You Use Our Services:
We collect information relating to your use of our services to improve our offerings and deliver relevant content.
Account and profile data. When you sign up we collect your email address, name, company name, role and team size.
Usage data. Pages visited, features used, search queries, exports performed, and time spent on key workflows.
Session recordings. We use PostHog to record session replays of how you navigate the application. All form inputs (passwords, card numbers, email fields) are masked and never recorded; text on billing and account-settings pages is masked; recordings capture no payment card data; and recording is switched off automatically if your browser sends a Do Not Track signal.
Cookies and local storage. Used for keeping you signed in, remembering your preferences such as theme and layout, and analytics. Analytics cookies are set by PostHog. You can opt out by turning on Do Not Track in your browser.
2. International Transfers
International transfers. Our application databases, analytics warehouse and core infrastructure run in the EU. Some AI model inference takes place in the United States with Anthropic, Google and AWS. Where personal data is transferred outside the EEA, the transfer is covered by our providers' Standard Contractual Clauses.
3. Anonymous Information We Process
We process data in a form that does not permit direct association with any specific individual. This includes aggregated and anonymous data.
4. The Legal Basis for Processing Your Information
We rely on the following legal bases to use your personal information:
Contract: To perform our obligations and provide you with requested services.
Consent: With your explicit consent, which can be withdrawn at any time.
Legal Obligations: To comply with legal requirements.
Legitimate Interests: For purposes that are in our legitimate interests and benefit our customers.
5. When and How Your Information Is Shared
We do not sell your personal information. We share your data with third parties for the delivery or fulfilment of our services and ensure that they protect such information from unauthorised access, use, and disclosure.
Subprocessors We Use:
We share personal data with service providers who help us operate Talio, including cloud hosting and infrastructure, database and authentication, product analytics, error monitoring, payment processing, AI model inference, and business email and productivity. Our current list of subprocessors, including the purpose and location of each, is published at trust.talio.ai and is updated whenever it changes. You can subscribe there to be notified of changes.
6. Data Storage and Retention
We retain your personal information as needed to fulfil the purposes for which it was collected and in accordance with legal obligations.
Data retention. We retain your account data for as long as your account is active. When you delete your account we delete or anonymise your personal data within 30 days, except where retention is required by law. Session recording data held in PostHog is retained for 1 year and then deleted automatically.
7. Your Data Rights
You have several rights under data protection law, including the right to access, rectify, erase, restrict, and object to the processing of your personal information. To exercise these rights, please contact us at [email protected].
8. Consequences of Not Providing Information
If you do not provide certain personal data, we may not be able to perform the contract we have with you or provide certain services.
9. Data Protection and Security
AI and model training. We use AI models from Anthropic, Google and AWS Bedrock to power product features. We access all of them under paid commercial API terms, which do not permit the provider to train models on our inputs or outputs. Your data is not used to train AI models.
Data retention. We retain your account data for as long as your account is active. When you delete your account we delete or anonymise your personal data within 30 days, except where retention is required by law. Session recording data held in PostHog is retained for 1 year and then deleted automatically.
Trust Center: Details of our security controls, certifications and current subprocessors are published at trust.talio.ai.
Contact Information:
Data Protection Officer: Ciaran O'Connor
Email: [email protected]