Effective Date: May 8, 2026
Last Updated: May 8, 2026
Welcome to DevStudio AI ("Company," "we," "our," or "us"). We are committed to protecting your privacy and ensuring that your personal data is handled in a safe and responsible manner. This Privacy Policy outlines how we collect, use, process, and disclose your information when you access our website (the "Site") and utilize our custom AI, workflow automation, and software development services (collectively, the "Services").
This Policy is designed to comply with stringent global data protection laws, including the General Data Protection Regulation (GDPR) in the European Economic Area (EEA), the UK GDPR, and the California Privacy Rights Act (CPRA) which amends the California Consumer Privacy Act (CCPA).
1. The Information We Collect
We collect information through various means, categorizable as follows:
A. Information You Provide to Us Voluntarily:
- Identity and Contact Data: First name, last name, business email address, phone number, company name, and job title when you fill out our "Contact Us" or project inquiry forms.
- Project Specifications: Budgets, timelines, technical requirements, and proprietary business context you share with us during the lead qualification and consultation process.
B. Information Collected Automatically:
- Technical Data: Internet Protocol (IP) address (anonymized where legally required), browser type and version, time zone setting and location, browser plug-in types and versions, operating system, and platform.
- Usage and Analytics Data: Information about how you use our Site, including referring domains, page views, clickstream data, length of visits to certain pages, and page interaction information such as scrolling and form submissions. We utilize Supabase and custom tracking hooks to aggregate this data.
2. Legal Basis for Processing (GDPR Compliance)
If you are an individual in the EEA or the UK, we collect and process information about you only where we have a legal basis for doing so under applicable EU laws. Our legal bases include:
- Contractual Necessity: To provide you with the Services, process your inquiries, and fulfill Statements of Work (SOWs).
- Legitimate Interests: To improve our Site, conduct marketing analytics including AEO/GEO tracking, and protect our legal rights, provided these interests are not overridden by your data protection rights.
- Consent: Where you have given specific consent to process your personal data for a specific purpose, such as subscribing to a newsletter or consenting to non-essential cookies.
3. How We Use Your Information
We use the collected data to:
- Facilitate business consultations and generate customized project proposals.
- Deliver tailored AI software and workflow automation development services.
- Analyze website traffic attribution to optimize our marketing and content strategies.
- Prevent fraudulent activities, secure our infrastructure, and enforce our Terms of Service.
- Comply with legal and regulatory obligations.
4. Data Sharing and Disclosure
We explicitly state that we do not sell your personal data to third parties for monetary consideration. We may share your data in the following circumstances:
- Service Providers and Sub-processors: We employ third-party companies to facilitate our Services, such as Supabase for database hosting and Vercel for web hosting. These entities have access to your Personal Data only to perform these tasks on our behalf and are obligated not to disclose or use it for any other purpose.
- Business Transfers: If Company is involved in a merger, acquisition, or asset sale, your Personal Data may be transferred.
- Legal Compliance: We may disclose your data if required to do so by law or in response to valid requests by public authorities, such as a court or a government agency.
5. International Data Transfers
Company is headquartered in the United States. Your information, including Personal Data, may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction.
For users in the EEA or UK, we ensure an adequate level of protection for your data by utilizing Standard Contractual Clauses (SCCs) approved by the European Commission or relying on the EU-U.S. Data Privacy Framework where applicable.
6. Data Retention
We will retain your Personal Data only for as long as is necessary for the purposes set out in this Privacy Policy. We will retain and use your Personal Data to the extent necessary to comply with our legal obligations, resolve disputes, and enforce our legal agreements and policies.
7. Your Data Protection Rights
Depending on your jurisdiction, you possess the following rights:
- Right to Access and Portability: The right to request copies of your personal data in a structured, machine-readable format.
- Right to Rectification: The right to request that we correct any information you believe is inaccurate.
- Right to Erasure: The right to request that we erase your personal data, under certain conditions.
- Right to Restrict or Object to Processing: The right to object to our processing of your personal data, particularly for direct marketing.
- CPRA/CCPA Specific Rights: California residents have the right to know what personal information is collected, the right to opt out of the sharing of personal information for cross-context behavioral advertising, and the right to limit the use of sensitive personal information.
To exercise any of these rights, please contact us using the information in Section 9. We will respond to your request within 30 days.
8. Cookie Policy
Our Site uses cookies and similar tracking technologies to track activity and hold certain information. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept strictly necessary cookies, you may not be able to use some portions of our Site.
9. Contact Us
For any privacy-related questions, to exercise your rights, or to contact our Data Protection Officer (DPO), please email us at:
Email: privacy@devstudio.ai
Address: [Insert Registered Business Address, e.g., Los Angeles, CA, USA]