convchat

Privacy Policy

Last updated: July 2026

ConvChat is operated by Appik Studio, Switzerland. This policy explains what personal data we handle, in which role, and what rights you have. It is governed by the Swiss Federal Act on Data Protection (nFADP) and, where applicable, the EU General Data Protection Regulation (GDPR).

Overview: our two roles

We process personal data in two distinct roles, and it matters which one applies to you:

  • As controller — for visitors of this website and for our customers’ own accounts (the businesses that sign up for ConvChat and their operators).
  • As processor — for the end users who chat through a ConvChat widget on a customer’s website. That data belongs to our customer (the controller); we process it on their behalf and on their instructions, under our Data Processing Agreement.

Visitors of this site & customer accounts (we are the controller)

When you browse convchat.app, we process only what the sections below describe — there are no advertising trackers and no cookies. When you create an account, we process your name, email address, password (hashed) and workspace details to provide the service. Billing data (plan, invoices, payment status) is processed through Stripe; we never see or store your card number. If you leave your email to request a demo or product updates, we use it only for that purpose.

Analytics (cookieless)

We use PostHog, hosted on PostHog’s EU Cloud in Frankfurt, Germany, to understand how our marketing site and dashboard are used. Our configuration is deliberately privacy-first:

  • No cookies. Analytics state is kept in memory only and is gone when you close the page — which is why this site has no cookie banner.
  • No session replay on marketing pages, and anonymous visitors are never turned into identified profiles.
  • Events are sent through a first-party proxy on our own domain to PostHog’s EU servers.
  • For first-party attribution (knowing which campaign or referrer brought you here), we store one key in your browser’s sessionStorage named convchat_attribution. It contains UTM parameters, the referrer and the landing page — nothing else — and is scoped to the current browser session.

Analytics opt-out

You can switch analytics off entirely for this browser. Because the opt-out has to survive page loads, your choice is persisted by PostHog in your browser’s localStorage — that entry exists only if you actively opt out (or back in) here.

Chat data we process for our customers (we are the processor)

When you chat through a ConvChat widget on someone else’s website, that business is the controller of your data and ConvChat processes it on their behalf. The data involved is: the name and email address you provide in the chat, your messages, technical context supplied by the host page, and a coarse location (country and city) derived from your IP address at our hosting provider’s network edge — the raw IP address itself is never stored.

Two processing steps are worth knowing about: on Growth and Scale, the AI assistant sends conversation excerpts together with the business’s FAQ content to Google’s Gemini API to generate answers. Email continuation sends chat replies to your email address via MailerSend, whose data storage centers are in the European Union, so the conversation can continue after you leave the site. Operators may also receive new-message notifications as end-to-end-encrypted browser push messages.

For questions or requests about chat data (access, deletion, correction), please contact the business whose website you chatted on — they control the data. We assist them with every such request.

Your rights

You have the right to access, correct, receive a copy of, restrict the processing of, object to the processing of, and delete your personal data, as provided by the nFADP and GDPR. For account and website data, contact us directly. For chat data on a customer’s website, contact that business — we will support them in fulfilling your request. You may also lodge a complaint with the Swiss FDPIC or your local supervisory authority.

Retention

Account data is kept for as long as your account exists. Chat data processed for customers is kept for the duration of their subscription and deleted when they delete it or when the contract ends (see the Data Processing Agreement). Trial workspaces that are not converted are deleted after a reasonable grace period. Billing records are kept for the 10 years Swiss accounting law requires.

Subprocessors

We use a small number of service providers to run ConvChat. Each one is bound by a data processing agreement with us:

ProviderPurposeLocation
Convex, Inc.Database and backend hosting — stores all chat conversations, visitor records and account dataEU West, Ireland (AWS eu-west-1)
Vercel Inc.Website, dashboard and widget hosting (CDN and functions). Derives coarse location (country/city) from the visitor's IP at the network edge; the raw IP is not storedFunctions: Frankfurt, Germany (fra1); CDN: global edge network
MailerSend, Inc.Transactional email — email continuation of chat conversations, password resets and account notificationsUnited States; data storage centers in the European Union
Google LLC (Gemini API)Growth and Scale AI assistant — conversation excerpts and the project's FAQ content are sent to generate suggested answersUnited States
PostHog (EU Cloud)Product analytics for our marketing site and dashboard — cookieless, no session replay on marketing pagesFrankfurt, Germany (EU)
StripePayment processing and subscription billing for customer accounts (no end-user chat data)United States / Ireland (EU entity)

International transfers

Some providers above process data in the United States. Where personal data leaves Switzerland or the EU/EEA, we rely on recognised transfer safeguards — the EU Standard Contractual Clauses adapted for Swiss law and, where the provider is certified, the Swiss–U.S. Data Privacy Framework. Analytics and transactional email are deliberately kept on EU infrastructure.

Security

Our core backend, database and chat data are hosted in EU West (Ireland). Data is encrypted in transit (TLS) and encrypted at rest by our infrastructure providers, and every read and write in our backend is scoped to a single customer workspace. Our US-based infrastructure provider is bound by a DPA and Standard Contractual Clauses for protected international transfers. The full picture is on our Security page.

Contact

Appik Studio, Switzerland — contact@appik-studio.com. We answer privacy requests within 30 days.