Privacy Policy
Effective: May 24, 2026
This Privacy Policy describes how ZeusConnect (“we”, “us”) collects, uses, and shares information when you use our platform, dashboard, gateway applications, and related services (the “Service”).
1. Information We Collect
Account information
When you create an account we collect your email address, name, and mobile number. We use Supabase Auth to verify your email and to store hashed authentication credentials.
Customer Data
When you connect a phone (Android SIM, iMessage, WhatsApp), we process the SMS, MMS, and chat messages that flow through your gateway, along with the receiver phone numbers and timestamps required to deliver them. We do not read your message bodies for any purpose other than relaying them to the destination you have chosen.
Diagnostic data
Gateway applications send diagnostic logs (battery level, network type, app version, error traces) so we can keep your devices connected. No message bodies are included in these logs.
Push notifications
For Android devices we register Firebase Cloud Messaging (FCM) tokens so we can wake the gateway when new messages need to be sent. Firebase is used only for FCM — it is not used to store any application data.
2. How We Use Information
- To operate, maintain, and improve the Service.
- To authenticate users and protect against abuse.
- To deliver messages between your contacts and your gateway.
- To send service-related communications (billing, security alerts, policy updates). We do not send marketing email without your explicit opt-in.
3. How We Share Information
We share information only with:
- Subprocessors that help us run the Service (Supabase for database and authentication, AWS for compute and storage, Stripe for billing, Firebase for push notifications). Each subprocessor is bound by a data-processing agreement.
- Integrations you authorise, such as GoHighLevel, which receive message data only when you connect them.
- Authorities when legally required, after reviewing the request for validity.
We do not sell your personal information or your Customer Data.
4. Data Retention
Account data is retained for the life of your account and for up to 30 days after deletion for backup and audit purposes. Message metadata is retained for 12 months by default; you can shorten this from the dashboard settings.
5. Data Location
Primary data is stored in Supabase Postgres hosted in Australia (ap-southeast-2). Some processing happens in adjacent AWS regions. Push notifications are routed through Firebase in the United States. By using the Service you consent to these transfers.
6. Security
We protect your data with encryption in transit (TLS 1.2+) and at rest. OAuth and integration tokens are encrypted with AES-256-GCM before they touch the database. Access to production systems is restricted to a small number of named engineers, gated by SSO and hardware-backed MFA.
7. Your Rights
Depending on your jurisdiction (e.g. GDPR, CCPA, Australian Privacy Principles), you may have the right to access, correct, export, or delete your personal information. Email privacy@zeusconnect.ai to exercise any of these rights. We respond within 30 days.
8. Children
The Service is not intended for individuals under 16. We do not knowingly collect information from children.
9. Changes
We may update this Privacy Policy from time to time. Material changes will be communicated by email or in-app notice. Continued use after the effective date of the change constitutes acceptance.
10. Contact
Privacy questions or requests? Email privacy@zeusconnect.ai.