Privacy Policy

Introduction

Welcome to Ockham AI s.r.o. (“Company”, “we”, “our”, “us”). Protecting your privacy is important to us. This Privacy Policy explains how we collect, use, and share your personal data in compliance with the General Data Protection Regulation (EU GDPR) and the laws of the Czech Republic.

By using our services, you agree to the terms of this Privacy Policy. If you do not agree, please refrain from using our services.

1. Data Controller Information

Company Name: Ockham AI s.r.o.
Registered Address: Vojtěšská 211/6, New Town, 110 00 Prague, Czech Republic
IČ: 19632380
Contact Email: ia.mahkco@olleh

We are responsible for your personal data as the “Data Controller” under GDPR.

2. Personal Data We Collect

We collect and process the following personal data:

Data You Provide Directly:

• Contact Information: Name, email address, phone number, company details.
• Account Data: Username, password (encrypted), preferences.
• Messages: Content of inquiries or support requests submitted via our contact forms or email.

Data We Collect Automatically:

• Usage Data: IP address, browser type, operating system, and interactions with our website (cookies and analytics).
• Device Data: Device model, language settings, and geographical location.

3. How We Use Your Data

We use your personal data for the following purposes:
• Providing Services: To manage your account and deliver requested services (e.g., tachograph integration).
• Customer Support: To respond to inquiries and offer technical assistance.
• Marketing: To send relevant updates, news, and promotional offers (with your consent).
• Legal Compliance: To comply with applicable laws, tax obligations, or legal claims.
• Website Optimization: To improve our website’s functionality and ensure user experience.

4. Legal Basis for Processing Data

We process your personal data based on:
1. Contractual Necessity: To provide services you have requested.
2. Legal Obligations: To comply with legal requirements under Czech law and GDPR.
3. Consent: For sending marketing materials or storing cookies (where applicable).
4. Legitimate Interests: To maintain and improve our services.

5. Sharing Your Data

We do not sell or rent your personal data. However, we may share your data with:
• Service Providers: For hosting, IT support, payment processing, and data analytics.
• Legal Authorities: If required by law or in response to legal requests.
• Affiliates: To ensure smooth service delivery (e.g., billing handled by bld.ai in the USA).

All data processors are GDPR-compliant and provide adequate data protection guarantees.

6. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:
• Account Data: Until the account is deleted or after 5 years of inactivity.
• Financial Data: As required by Czech tax law (10 years).
• Support Requests: Kept for 3 years after resolution.

After this period, data will be securely deleted or anonymized.

7. Your Rights

Under GDPR, you have the following rights:
• Access: Request a copy of your personal data.
• Rectification: Correct inaccurate or incomplete data.
• Erasure: Request data deletion (“Right to be Forgotten”).
• Restriction: Limit how we process your data in certain cases.
• Data Portability: Receive your data in a structured, machine-readable format.
• Objection: Object to processing based on legitimate interests or direct marketing.
• Withdraw Consent: Revoke your consent at any time.

To exercise your rights, contact us at ia.mahkco@olleh.

8. Security Measures

We implement robust technical and organizational measures to protect your personal data, including:
• Data encryption.
• Regular security audits.
• Access controls to restrict unauthorized data access.

While we strive for high security, no system can be 100% secure. You share data at your own risk.

9. Cookies and Tracking Technologies

Our website uses cookies to enhance user experience. By continuing to use our website, you consent to the use of cookies. Types of cookies we use include:
• Essential Cookies: Required for core functionality.
• Performance Cookies: For website analytics (Google Analytics).
• Marketing Cookies: To deliver tailored advertising (with your consent).

You can manage cookie preferences through your browser settings.

10. Cross-Border Data Transfers

Some data may be processed outside the EU (e.g., billing by bld.ai in the USA). We ensure all data transfers comply with GDPR via Standard Contractual Clauses (SCCs) or equivalent safeguards.

11. Use of Analytics and Tag Management Tools

To improve our services and understand user interactions, we utilize the following tools:

  • Google Analytics: This service tracks and reports website traffic. Google Analytics collects data such as IP addresses, browser types, and pages visited. To comply with GDPR, we have implemented IP anonymization, ensuring that the last octet of your IP address is masked before storage or processing. Additionally, we have configured Google Analytics to respect user consent preferences and have disabled data sharing with other Google products. For more information, please refer to Google's privacy policy.
  • Google Tag Manager (GTM): GTM facilitates the management of website tags without modifying the code directly. While GTM does not collect personal data, the tags it manages might. We ensure that any tags deployed through GTM comply with GDPR requirements. This includes obtaining user consent before activating tags that process personal data and configuring tags to respect user privacy choices. For more information, please refer to Google's privacy policy.
  • Microsoft Clarity: This tool provides insights into user behavior through session recordings and heatmaps. Microsoft Clarity collects data such as mouse movements, clicks, and scrolling behavior. All data collected is anonymized, and we ensure that its use aligns with GDPR standards. For more details, please review Microsoft's Privacy Statement.

12. Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in our practices or regulations. The latest version will always be available on our website. Please review it regularly.

13. Contact Information

If you have questions or complaints regarding this Privacy Policy, please contact us at:

Ockham AI s.r.o.

Address: Vojtěšská 211/6, New Town, 110 00 Prague, Czech Republic
Email: ia.mahkco@olleh

Phone: 467 112 337 024+

Alternatively, you may contact the Office for Personal Data Protection (ÚOOÚ) in the Czech Republic if you believe your data rights have been violated.

Last Updated: 28 February 2025