Privacy Policy
Last updated: July 19, 2026
This Privacy Policy explains how Evereply ("we", "us") collects, uses, and protects information when businesses ("Customers", "you") use our platform, and when those businesses' own end-users chat with an Evereply-powered assistant.
1. Controller and processor roles
For your account data (e.g. billing and login information), Evereply is the data controller. For conversations between your assistant and your end-users, and for the knowledge you upload, Evereply acts as a data processor on your behalf — you are the controller of your end-users' conversation data and decide what knowledge to publish and how long to retain it. If you need a Data Processing Addendum for your own compliance obligations, contact us.
2. What we collect
- Account data: name, email, workspace and billing details.
- Knowledge sources: FAQs, text, PDF documents, and content crawled from websites you specify, used to ground your assistant's answers.
- Conversation data: messages exchanged between your assistant (or your human teammates, during takeover) and your end-users, on the website widget and connected WhatsApp number.
- Usage data: message counts, quota consumption, and basic technical logs (e.g. IP address for rate limiting and abuse prevention).
3. How we use it
To operate the assistant (retrieve relevant knowledge, generate grounded answers, deliver messages over the widget and WhatsApp), enforce plan quotas and prevent abuse, provide support, send account and billing notices, and improve the reliability and security of the platform.
We do not use your knowledge base or conversation data to train or fine-tune any AI model, ours or any third-party model provider's. Data sent to LLM providers is used only to generate the response for that request.
4. Subprocessors
We rely on the following subprocessors to run the service:
| Subprocessor | Purpose |
|---|---|
| Supabase | Database, authentication, and file storage |
| Vercel | Application hosting and edge network |
| Cloudflare | Email routing and network security |
| OpenAI | Language model / embedding provider |
| Anthropic | Language model provider (premium routing) |
| Language model provider (default routing) | |
| Upstash | Rate limiting and caching infrastructure |
| Paddle | Payment processing (merchant of record) |
| Resend | Transactional and account email delivery |
5. Retention and deletion
We retain account, knowledge, and conversation data for as long as your account is active. On request, we delete your account data, knowledge base, and conversation history — email support@evereply.com and we'll confirm deletion within a reasonable timeframe. Some records may be retained longer where required for legal, tax, or fraud-prevention purposes.
6. Security
Every tenant-owned table in our database enforces row-level security keyed to your workspace, so one Customer's data is never visible to another through the normal application path. Data is encrypted in transit (HTTPS/TLS) between your browser, our servers, and our subprocessors. Access to production data is limited to what is operationally necessary.
7. Your rights
Depending on where you or your end-users are located (including under the EU/UK GDPR), you may have the right to access, correct, export, or delete personal data, and to object to or restrict certain processing. Account holders can exercise these rights directly from their dashboard for their own data; requests relating to end-user conversation data should go through the Customer that operates the relevant assistant, or to us at support@evereply.com if that is not possible.
8. Cookies
We use only essential cookies required for authentication and session security — no advertising or third-party tracking cookies. The embeddable chat widget stores a local session identifier in the end-user's browser so their conversation can continue across page loads.
9. Changes to this policy
We may update this policy as the product evolves and will update the "Last updated" date above. Material changes will be communicated to active customers by email.
10. Contact
Questions about this policy or a data request? Email support@evereply.com. See also our Terms of Service.