This Política de Privacidad describes how SalesSheet.ai, operated by SalesSheet Inc. ("we," "us," or "our"), collects, uses, stores, and protects your personal information when you use our con CRM con IA platform, website, and related services (collectively, the "Service"). By using the Service, you agree to the practices described in this policy.
1. Information We Collect
We collect several types of information to provide and improve our Service:
Account Information
When you register for an account, we collect the following:
- Name, email address, and password when you create an account
- Empresa name, job title, and business contact details
- Billing information including payment method details (processed securely by our payment provider)
- Profile photo, timezone, and language preferences
- Account configuration settings and notification preferences
CRM Data
As you use the Service, you create and manage business data within your CRM workspace. This includes:
- Contacto records, company records, and deal/opportunity information you create or import
- Notes, tasks, activities, and call logs associated with your contacts
- Custom fields, tags, and segments you configure within the platform
- Files and attachments uploaded to contact or deal records
- Pipeline stages, deal values, and forecasting data
- Team activity feeds and shared workspace content
Sincronización de Email Data
When you connect your email account to the Service, we access and process the following information:
- Email metadata including sender, recipient, subject lines, and timestamps
- Email body content when synced for display, IA summarization, and CRM association
- Email attachments when explicitly saved to CRM records
- Email tracking data such as open and click events when tracking is enabled
- Calendario events and meeting details when Google Calendario integration is enabled
Communication Data
When you use our built-in calling and messaging features, we collect:
- Llamar metadata including phone numbers, call duration, and timestamps
- Llamar recordings and voicemail messages when recording features are enabled
- Llamar notes and follow-up tasks created during or after calls
Usage and Technical Data
We automatically collect certain technical information when you use the Service:
- Log data including IP address, browser type, device information, and operating system
- Pages visited, features used, and actions taken within the Service
- Performance data, error logs, and crash reports
- Referral URLs and landing page information
- Session duration and interaction patterns
2. How We Use Your Information
We use the information we collect for the following purposes:
- Providing the Service: To operate, maintain, and deliver the features and functionality of the CRM platform, including contact management, pipeline tracking, and communication tools.
- IA-Powered Funcionalidades: To power our asistente de IA, including email summarization, smart suggestions, contact enrichment, and natural language queries. Your CRM data is processed by IA models to generate insights specific to your account.
- Email Integration: To sync, display, and associate email communications with the appropriate contact and deal records in your CRM.
- Analíticas and Reporting: To generate sales reports, activity dashboards, and forecasting data within your account.
- Communication: To send you service-related notices, security alerts, product updates, and support responses.
- Improvement: To analyze usage patterns in aggregate and improve the Service, fix bugs, and develop new features.
- Seguridad: To detect, prevent, and address fraud, abuse, and security incidents.
- Legal Compliance: To comply with applicable laws, regulations, and legal processes.
We process your data on the following legal bases under GDPR: performance of our contract with you, your consent (where applicable), our legitimate business interests (such as improving the Service and preventing fraud), and compliance with legal obligations.
3. Data Storage and Seguridad
We take the security of your data seriously and implement industry-standard measures to protect it:
- All data is encrypted in transit using TLS 1.2 or higher
- Data at rest is encrypted using AES-256 encryption
- Our infrastructure is hosted on SOC 2 Type II compliant cloud providers
- We perform regular security audits and vulnerability assessments
- Access to production systems is restricted, logged, and requires multi-factor authentication
- We maintain comprehensive backup and disaster recovery procedures
- Automated intrusion detection and monitoring systems are activo at all times
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is completely secure. We cannot guarantee absolute security but are committed to maintaining best practices. For more details about our security program, please visit our Seguridad page.
4. Third-Party Services
We may share your information with the following categories of third-party service providers:
- Cloud Infrastructure: For hosting, storage, and computing resources
- Payment Processors: To process subscription payments securely (we never store your full credit card number)
- IA Model Providers: To power funciones de IA when using our managed IA models; BYOK usuarios connect directly to their own provider
- Email Service Providers: To deliver transactional and service-related emails
- Analíticas Tools: To understand usage patterns and improve the Service
- Customer Support Tools: To provide timely support and assistance
- Communication Providers: To facilitate calling and voicemail features
We require all third-party service providers to maintain appropriate security measures and only process your data as instructed by us, under binding data processing agreements. We do not sell your personal information to third parties under any circumstances.
We may also disclose your information if required by law, court order, or governmental regulation, or if we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others.
5. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your experience:
- Essential Cookies: Required for the Service to function properly, including authentication, session management, and security features. These cookies cannot be disabled without affecting core functionality.
- Analíticas Cookies: Help us understand how usuarios interact with the Service so we can improve it. These cookies collect aggregated, anonymous data about feature usage and navigation patterns.
- Preference Cookies: Remember your settings and preferences across sessions, such as language, timezone, and display options.
You can control cookie preferences through your browser settings or through our cookie consent banner. Disabling essential cookies may affect the functionality of the Service. We do not use advertising or third-party tracking cookies.
6. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
Under GDPR (European Economic Area)
- Access: Request a copy of the personal data we hold about you
- Rectification: Request correction of inaccurate or incomplete data
- Erasure: Request deletion of your personal data under certain circumstances
- Portability: Receive your data in a structured, machine-readable format
- Restriction: Request limitation of processing in certain situations
- Objection: Object to processing based on legitimate interests
- Withdraw Consent: Where processing is based on consent, withdraw it at any time
Under CCPA (California Residents)
- Right to Know: Request disclosure of the categories and specific pieces of personal information collected
- Right to Delete: Request deletion of personal information collected
- Right to Opt-Out: Opt out of the sale of personal information (we do not sell personal information)
- Right to Correct: Request correction of inaccurate personal information
- Non-Discrimination: Exercise your rights without receiving discriminatory treatment
How to Exercise Your Rights
To exercise any of these rights, contact us at andres@salessheets.ai. We will verify your identity before processing your request and respond within 30 days. If we need additional time, we will notify you of the extension and the reason. You may also use the data export and deletion tools available in your account settings.
7. Data Retention
We retain your personal information for as long as your account is activo or as needed to provide the Service. Specific retention periods include:
- Account Data: Retained for the duration of your account plus 30 days after deletion request to allow for recovery
- CRM Data: Retained while your account is activo; deleted within 30 days of account termination
- Sincronización de Email Data: Retained while the email integration is connected; removed within 7 days when disconnected
- Llamar Grabandos: Retained according to your account settings; you may delete recordings at any time
- Usage Logs: Retained for up to 12 months for analytics and security purposes
- Billing Records: Retained for up to 7 years as required by tax and accounting regulations
- Support Communications: Retained for up to 3 years to maintain service history
You may request data export or deletion at any time by contacting our support team or using your account settings. Upon account termination, we will delete or anonymize your data within the timeframes specified above, unless retention is required by law.
8. IA Data Processing
Our funciones de IA process your CRM and email data to provide intelligent assistance. We are committed to transparency about how IA interacts with your data:
- IA processing is performed solely to deliver features within your account
- Your data is not used to train general-purpose IA models or shared across customer accounts
- BYOK (Bring Your Own Key) usuarios send data directly to their chosen IA provider under that provider's terms
- generados por IA summaries and suggestions are stored within your account and subject to the same security controls as other CRM data
- IA processing logs are not retained beyond the time needed to deliver the result
- You can disable funciones de IA at any time from your account settings
- You control which data the asistente de IA can access through your account permissions
9. Children's Privacidad
The Service is designed for business use and is not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If we become aware that a child under 16 has provided us with personal information, we will take steps to delete that information promptly. If you believe a child has provided us with personal data, please contact us at andres@salessheets.ai.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence, including the United States. We ensure that appropriate safeguards are in place for international data transfers, including:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Adequacy decisions where applicable
- Supplementary technical and organizational measures to ensure data protection
For more details on our international data transfer practices, please refer to our Acuerdo de Procesamiento de Datos.
11. Changes to This Policy
We may update this Política de Privacidad from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons. We will notify you of material changes by posting the updated policy on our website and updating the "Última actualización" date. For significant changes, we will provide additional notice via email or an in-app notification at least 30 days before the changes take effect. Your continued use of the Service after any changes constitutes your acceptance of the updated policy.
12. Contacto Us
If you have any questions, concerns, or requests regarding this Política de Privacidad or our data practices, please contact us:
- Email: andres@salessheets.ai
- Empresa: SalesSheet Inc.
For GDPR-related inquiries, you also have the right to lodge a complaint with your local data protection authority. We encourage you to reach out to us first so we can address your concern directly.