Privacy Policy

How Dissei Data collects, uses, shares, and protects personal data on this website, and the rights you have under the EU General Data Protection Regulation (GDPR).

1Who we are

This website, dissei.ai ("the Site"), is operated by Dissei Data ("Dissei", "we", "us"), a company incorporated in the United States. We are the data controller for the personal data described in this policy, including under the EU/UK GDPR for visitors in the EEA and the UK.

  • Legal entity: Dissei Data (incorporated in the United States)
  • Privacy contact: tech@dissei.ai

2What we collect, why, and our legal basis

We keep data collection to a minimum. We process the following:

Contact form (name, email, message)

When you submit the contact form, we collect the name, email address, and message you provide, plus technical metadata of the request (approximate location, network/ISP, and IP address supplied by our infrastructure). We use this to respond to and handle your enquiry. Legal basis: our legitimate interest in responding to enquiries (Art. 6(1)(f)) and, where your enquiry concerns a possible engagement, steps taken at your request prior to entering a contract (Art. 6(1)(b)).

Server logs & security

Our hosting and network providers process request data (IP address, user-agent, timestamps, pages requested) to deliver the Site, ensure availability, and prevent abuse and fraud. Legal basis: legitimate interest in the security and operation of the Site (Art. 6(1)(f)).

Aggregate analytics

We use a privacy-first, cookieless analytics service. It measures aggregate traffic (page views, referrers, country, device/browser, performance metrics) without setting cookies, without cross-site tracking, and without building a profile of you. Legal basis: legitimate interest in understanding and improving the Site (Art. 6(1)(f)).

Product analytics

We use a product-analytics service to understand how visitors use the Site and what they are interested in, for example pages and sections viewed, links and calls-to-action clicked, scroll depth, and contact-form engagement. The service sets first-party cookies and may build a profile keyed to a randomly-generated identifier. After an accepted inquiry or research subscription, we link that browsing profile to your contact record using a stable reference, so we can follow up in context. These inquiry and subscription events do not contain your name, email address, organisation or message; those details remain in our contact records. The service runs automatically on the Site and respects the browser Do-Not-Track signal, which switches it off. Legal basis: our legitimate interest in understanding and improving the Site (Art. 6(1)(f)); you can object at any time (see "Your rights" below).

B2B visitor identification

We use business-identification services to identify the organisation (company) associated with a visit, based on the visiting network's IP address, so that we can understand which businesses are interested in our services. For visitors in the United States, one of these services (Apollo.io) may also identify you as an individual and associate your visit with a business-contact profile; this involves setting cookies and sharing your IP address and a cookie identifier with the provider and its data partners. These services run automatically on the Site. Legal basis: our legitimate interest in understanding which businesses are interested in our services (Art. 6(1)(f)); you can object at any time (see "Your rights" below), or clear or block cookies through your browser settings.

3Cookies and similar technologies

  • Strictly necessary: none beyond what is technically required to serve the Site.
  • Site storage: a tab-scoped entry that keeps campaign labels from the page address until the tab closes, and, if you unlock the environments detail layer, a local entry that remembers the unlock and the email address you used so the page stays unlocked on your next visit.
  • Aggregate analytics: cookieless, no consent required.
  • Product analytics: first-party cookies set by our product-analytics service to measure how the Site is used and to recognise returning visitors. Runs automatically. Honours Do-Not-Track.
  • Visitor identification: cookies set by our business-identification services to recognise returning visitors for company-level identification and, for US visitors, person-level identification. Runs automatically.

No banner is shown and no choice is stored: these tools start automatically when you visit the Site. To limit them, enable Do-Not-Track in your browser (product analytics honours it), clear or block cookies and site data through your browser settings, or object by contacting us (see "Your rights" below).

4Who we share data with (processors)

We do not sell your personal data. We share it only with a small number of service providers ("processors") who act on our instructions under data-processing agreements, in the following categories: website hosting and content delivery, network security and edge infrastructure, analytics, business-contact identification, and email delivery and handling. A current list of our processors is available on request via the privacy contact below.

We may also disclose data where required by law or to protect our legal rights.

5International transfers

Some of our providers are located outside the EU/EEA (notably the United States). Where personal data is transferred outside the EU/EEA, we rely on appropriate safeguards, the European Commission's Standard Contractual Clauses and/or the provider's certification under the EU–US Data Privacy Framework. A copy of the relevant safeguards is available on request.

6How long we keep it

  • Contact-form submissions: retained for up to 24 months after our last contact with you, then deleted.
  • Server logs: retained for a short period (typically up to 30 days) for security and abuse prevention.
  • Aggregate analytics: retained only in aggregate, non-identifying form.
  • Product analytics and visitor-identification data: retained for a limited period according to our account retention settings, then deleted or aggregated.

7Your rights

Depending on where you live, you may have some or all of the following rights (for example, under the EU/UK GDPR):

  • access the personal data we hold about you;
  • have inaccurate data corrected (rectification);
  • have your data erased ("right to be forgotten");
  • restrict or object to our processing;
  • data portability;
  • withdraw consent at any time, where processing is based on consent.

To exercise any of these, email tech@dissei.ai. EEA/UK visitors may also lodge a complaint with their local data protection authority. California residents have rights under the CCPA/CPRA, to know, access, delete, and correct their personal information, and to opt out of its "sale" or "sharing"; we do not sell your personal information. To exercise CCPA/CPRA rights, email the same address.

8How we protect your data

We use providers that encrypt data in transit (HTTPS/TLS) and apply access controls and security headers. No method of transmission or storage is completely secure, but we take reasonable measures appropriate to the sensitivity of the data.

9Children

The Site is a business service not directed to children, and we do not knowingly collect data from anyone under 16.

10Changes to this policy

We may update this policy from time to time. The "Last updated" date above reflects the latest version; material changes will be highlighted on this page.

11Contact

Questions about this policy or your data? Email tech@dissei.ai.

12How we measure enquiries

If the page address you arrive on carries campaign labels (for example a source or campaign name), we keep those labels in this browser tab until it closes, so that an enquiry can be attributed to the campaign that brought you here.

When a contact form is accepted, we count the outcome on our server using a random event reference, the page path, those campaign labels, your IP address and browser type. The browser reports the same outcome with the same event reference, so a duplicate delivery counts once. We do not add your name, email address, organisation, or message to any measurement event.

For model-builder enquiries only, the accepted outcome is also reported as a conversion to the advertising platform whose link brought you to the Site, using the opaque click references that platform stored in your browser, the page path, your IP address and browser type, never your contact details. Legal basis: our legitimate interest in measuring the effectiveness of our advertising (Art. 6(1)(f)); you can object at any time (see "Your rights" above).