Privacy Policy
Zyron Intelligence ("Zyron," "we," "us") builds and operates AI systems for mid-market companies. This Privacy Policy explains what personal information we collect through this website, how we use it, and the rights you have under LGPD (Brazil), applicable US state privacy laws, and other frameworks that may apply.
This policy covers this marketing site only. Data processed by Zyron on behalf of enterprise customers (as operator/processor) is governed by the Data Processing Addendum executed with that customer, not by this policy.
1. What we collect
- Information you provide. Name, work email, company, phone, message content — through the discovery-call booking form or via direct email.
- Technical logs. IP address, user-agent, referrer, timestamps — for security, abuse prevention, and site analytics.
- Preferences. The language you choose (EN or PT-BR) is stored in your browser's local storage. This is not shared with us.
2. Why we process it
Under LGPD Art. 7 and equivalent US frameworks, we process personal information under the following legal bases:
- Execution of a contract. To respond to your inquiry, schedule a call, and (if applicable) negotiate an engagement.
- Legitimate interest. To secure the site, prevent abuse, and improve the product on which we run this site.
- Compliance with legal obligations. To respond to law-enforcement or regulatory requests where legally required.
3. AI disclosure
Zyron builds and operates AI systems as a service to enterprise customers. This marketing site itself does not run AI on the personal data collected via this site.
4. Who we share it with
- Service providers. Our calendar / booking tool (Cal.com), transactional email provider, and analytics — each under contract with data-protection terms consistent with LGPD and applicable US law.
- No sale, no ad-network sharing. Zyron does not sell personal information and does not share it with advertising networks.
5. Where it lives
Marketing-site inquiries route to a US-based inbox and a US-based calendar. For enterprise customers with a Data Processing Addendum, data residency is enforced per that Addendum — see FIG.03 on the Technology page for the shape of the residency boundary.
6. Your rights
Under LGPD Art. 18, you have the right to access, correct, delete, port, or restrict the processing of your personal data, and to withdraw consent where consent is the legal basis. Equivalent rights are available under applicable US state privacy laws.
To exercise any of these rights, contact us via the Contact page. We respond within 15 calendar days under LGPD SLA.
7. Retention
Marketing-site inquiries are retained for 24 months from the last interaction unless we are engaged in an active contract negotiation with you, in which case we retain the record for the duration of that negotiation plus 24 months. Audit logs required by LGPD, SOX, or contract are retained for 7 years.
8. Security
We apply the same encryption-in-transit, encryption-at-rest, and audit-log posture on this site's collected data as we do on customer workloads. See the Security & Trust page for the shape and controls.
9. Children
This site is not directed at children under 13 (or the equivalent age of digital consent under LGPD or applicable law).
10. Changes
We may update this policy. When we do, we update the "Last updated" date at the top. Material changes are also notified via the site header for at least 30 days.
11. Contact
For privacy questions, DPA requests, or subject-rights exercise: Contact page. Data Protection Officer (Encarregado) named in the DPA.