PRIVACY POLICY

Privacy Policy

Effective Date: January 2026 | Last Updated: January 2026

1. Introduction

Levqor Ltd ("Levqor," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, share, and protect your information when you use our SaaS platform, DFY Lite, and DFY Sprint services.

We comply with the UK General Data Protection Regulation (UK GDPR), the EU General Data Protection Regulation (EU GDPR), and other applicable data protection laws.

2. Data Controller

Levqor Ltd is the data controller for personal data processed under this policy.
Contact: privacy@levqor.ai
Location: United Kingdom

3. Information We Collect

3.1 Account Information

  • Email address (required for authentication)
  • Name (if provided)
  • Company or organisation name (if provided)

3.2 DFY Client Information

For DFY Lite and DFY Sprint clients, we also collect:

  • Business requirements and workflow specifications
  • System access credentials (stored securely, used only for delivery)
  • Communications related to your project

3.3 Payment Information

Payments are processed securely by our payment processor. We do not store your credit card details. We receive only transaction metadata (amount, date, status) for our records.

3.4 Usage Data

  • Pages visited and features used
  • Workflow configurations and execution logs
  • Device type, browser, and operating system
  • IP address and general location (country level)
  • Timestamps of activity

4. How We Use Your Information

  • To provide services: Operating your account, executing workflows, delivering DFY projects.
  • To improve our platform: Understanding usage patterns to make improvements.
  • To communicate with you: Service updates, security notices, support responses.
  • To ensure security: Detecting and preventing fraud, abuse, and security incidents.
  • To comply with law: Meeting legal obligations and responding to lawful requests.

5. Legal Basis for Processing

Under UK GDPR, we process your data based on:

  • Contract: Processing necessary to provide services you have purchased.
  • Legitimate interests: Improving our platform, ensuring security, preventing fraud.
  • Consent: Where you have given specific consent (e.g., marketing emails).
  • Legal obligation: Where we must comply with applicable law.

6. Data Retention

  • Active accounts: Data retained while your account is active.
  • After deletion: Most data deleted within 30 days of account closure.
  • DFY project data: Retained for 12 months after project completion for support purposes.
  • Legal requirements: Some data may be retained longer for legal, tax, or compliance purposes.
  • Backups: Data may persist in encrypted backups for up to 90 days.

7. Your Rights

Under UK GDPR, you have the following rights:

  • Access: Request a copy of the personal data we hold about you.
  • Rectification: Request correction of inaccurate data.
  • Erasure: Request deletion of your data ("right to be forgotten").
  • Portability: Request your data in a portable format.
  • Restriction: Request we limit processing in certain circumstances.
  • Objection: Object to processing based on legitimate interests.
  • Withdraw consent: Where processing is based on consent, withdraw it at any time.

To exercise your rights, contact privacy@levqor.ai. We will respond within 30 days.

8. Data Sharing

We share your data only in these circumstances:

  • Service providers: Third parties who help us operate (hosting, payment processing, email).
  • Legal requirements: When required by law or to protect our rights.
  • Business transfers: In connection with a merger, acquisition, or sale of assets.

We do not sell your personal data.

9. International Transfers

Your data may be processed outside the UK. Where this occurs, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the UK ICO.

10. Security

We implement appropriate technical and organisational measures to protect your data, including:

  • Encryption in transit and at rest
  • Access controls and authentication
  • Regular security assessments
  • Incident response procedures

11. Confidentiality for DFY Clients

DFY Confidentiality Commitment

For DFY Lite and DFY Sprint clients, we provide additional confidentiality protections:

  • Your business processes, workflows, and system designs are treated as confidential.
  • We do not disclose your project details to third parties.
  • Access credentials are stored securely and deleted after project completion.
  • Our team operates under strict confidentiality agreements.
  • We will not use your project as a case study without explicit written consent.

This commitment applies to all information shared during the DFY engagement.

12. Cookies

We use cookies for authentication, preferences, and analytics. See our Cookie Policy for details.

13. Complaints

If you are unhappy with how we handle your data, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) at ico.org.uk.

14. Changes to This Policy

We may update this policy from time to time. Significant changes will be communicated via email or through our platform. Continued use of our services constitutes acceptance of the updated policy.

15. Contact

Levqor Ltd
Email: privacy@levqor.ai
United Kingdom

Last updated: January 2026