1. Scope
This Privacy Policy applies to:
- Visitors to Regurai websites
- Customers and prospective customers
- Users of Regurai products and services
- Event attendees and webinar participants
- Individuals communicating with Regurai
- Business partners and suppliers
This policy does not apply where Regurai acts solely as a processor or service provider on behalf of customers under separate contractual terms.
2. Who We Are
Regurai provides AI governance, trust, risk, compliance, and operational oversight capabilities to organisations.
For purposes described in this policy, Regurai may act as:
- Data Controller — where we determine how and why personal data is processed.
- Data Processor — where we process information under customer instructions.
Contact: privacy@regurai.com
3. Data We Collect
We collect information necessary to operate, secure, improve, and provide our services.
Information You Provide
- Name, email address, organisation details, job title
- Account credentials
- Support requests and communication preferences
- Event registrations
Information Generated Through Service Use
- Account activity and login events
- Device and browser information
- Usage metrics and system configuration information
- Audit logs and service interaction records
Information Collected Automatically
- IP address and session identifiers
- Diagnostic information
- Cookies and similar technologies
- Security and fraud-prevention signals
Customer Content
Customers may submit information into Regurai services. Customers remain responsible for ensuring they have lawful authority to provide information they upload or process.
4. How We Use Information
We process information for legitimate business and operational purposes, including:
- Delivering and maintaining services
- Creating and managing accounts; authenticating users
- Providing support and improving product performance
- Monitoring reliability and security
- Detecting misuse and fraud
- Communicating operational updates
- Meeting contractual and regulatory obligations
- Conducting analytics and service improvement
Regurai does not sell personal information.
5. Legal Bases
Where applicable under relevant laws, we process personal information under one or more of the following legal bases:
- Contract performance
- Legitimate interests
- Legal obligations
- Consent
- Protection of rights and security
Where consent is used, individuals may withdraw consent where applicable.
6. AI Processing
Regurai may use automation and analytical technologies to support product functionality, monitoring, and operational efficiency. Our principles include:
- Human accountability
- Governance controls
- Explainability where reasonably practicable
- Risk-based deployment
- Monitoring and oversight
Regurai does not intentionally use fully automated decision-making where prohibited by applicable law.
9. International Transfers
Where information is transferred internationally, Regurai aims to apply appropriate safeguards, including:
- Contractual transfer mechanisms
- Technical protections
- Organisational controls
- Vendor due diligence
Transfer mechanisms remain under ongoing assessment as regulatory requirements evolve.
10. Security
Regurai applies reasonable technical and organisational measures designed to protect information, including:
- Encryption in transit and at rest
- Access and authentication controls
- Monitoring, logging, and audit mechanisms
- Secure engineering practices
- Incident response processes
No system can guarantee absolute security.
11. Retention
We retain information only for as long as necessary to:
- Deliver services
- Meet contractual commitments
- Resolve disputes
- Support security operations
- Meet legal obligations
Where appropriate, information may be deleted, anonymised, or aggregated.
12. Privacy Rights
Subject to applicable law, individuals may have rights to:
- Access information
- Correct inaccurate information
- Request deletion
- Restrict or object to processing
- Request portability
- Withdraw consent
- Lodge complaints
Requests may be submitted to privacy@regurai.com. Identity verification may be required.
13. Incident Response
Regurai maintains operational processes intended to identify, assess, and respond to security and privacy incidents. Where required by law or contractual obligations, notifications may be provided.
Report suspected incidents to security@regurai.com.
14. Contact
Privacy Team, Regurai
- General enquiries: privacy@regurai.com
- Security reports: security@regurai.com
This Privacy Policy is intended to support transparency and does not create contractual rights beyond applicable agreements or law. Where conflicts exist between contractual terms and this policy, contractual terms govern.
