Privacy Policy
Last updated: February 2025
The data controller is DomixNet Europe LLC. dotAIbot is the product and brand name. For privacy requests, contact us at the details provided on the dotAIbot website or at [email protected].
1. What we collect
We collect: (a) account data (email, name, password hash); (b) billing-related data, which is processed by Stripe—see Stripe's privacy notice for how they handle payment data; (c) usage and product data (e.g. plan, feature usage). We do not collect chatbot messages because they are securely encrypted on our servers; our staff cannot access the chat logs.
2. How we use it
We use this data to provide and improve the service, for support, billing, security, and legal compliance.
3. Legal basis (GDPR)
We process your data on the basis of: performance of our contract with you (necessary to provide the service); your consent where applicable; our legitimate interests (e.g. security, analytics); and legal obligation. You may withdraw consent or object where the law provides. We will not use your data for purposes incompatible with these without notice.
4. Chatbot data and encryption
Conversation data (messages and logs generated by your chatbots) is encrypted with AES-256 before storage.
- Only the account owner (and users they authorize) can decrypt and view their chatbot data.
- DomixNet Europe LLC and dotAIbot staff do not have the ability to read or decrypt chatbot conversation content. There are no backdoors; encryption keys are held so that only the customer can access their data.
This design supports full GDPR compliance and ensures that your chatbot conversations remain private to you.
5. Data retention
We retain account and usage data for as long as your account is active and as needed for legal or operational purposes. Chatbot logs may be subject to configurable retention settings per bot. After account deletion, we delete or anonymize your data in accordance with our retention policy, except where we must retain it for law or legitimate purposes.
6. Your rights (GDPR)
You have the right to: access your data; rectification of inaccurate data; erasure ("right to be forgotten"); restriction of processing; data portability; object to processing; and to lodge a complaint with a supervisory authority in your country (e.g. in the EU/EEA). To exercise these rights, use your account settings or contact us at the details above.
7. International transfers
If we use services or store data outside the European Economic Area, we ensure appropriate safeguards (such as adequacy decisions or Standard Contractual Clauses) are in place as required by applicable law.
8. Cookies and similar technologies
We use cookies and similar technologies for authentication, session management, and preferences. You can control cookies through your browser settings. Essential cookies are necessary for the service to function.
9. Updates to this policy
We may update this Privacy Policy from time to time. Material changes will be communicated (e.g. by email or notice in the product). The "Last updated" date at the top of this page indicates when the policy was last revised.
10. Contact
For privacy-specific requests (access, deletion, complaints), contact DomixNet Europe LLC at the contact details provided on the dotAIbot website or at [email protected].

