Information We Collect
When you register for early access, interact with Butler, or integrate external channels, we collect the following categories of information:
- Identity & Account Data: Name, work email address, company name, billing information, and contact credentials submitted via our waitlist or registration forms.
- Business Context & Memory Profile: Brand guidelines, target audience profiles, campaign goals, commercial context, past outputs, and feedback loops that you upload or confirm. This data forms Butler's unified memory engine to prevent repetitive prompting.
- Integration Tokens & Channel Credentials: Encrypted API tokens, OAuth tokens, and webhook secrets provided by you to authorize Butler to connect with third-party channels (e.g., WhatsApp Business API, LinkedIn, X, Meta Pages, Google Analytics).
- Execution Telemetry & Usage Logs: System interaction logs, command timestamps, IP addresses, browser type, referral URLs, latency metrics, and error traces necessary to maintain uptime and diagnose failures.
How We Use Your Data
Sevorse processes your information strictly for legitimate commercial and operational purposes, including:
- Operating, maintaining, and executing Butler's modular capabilities according to your instructions;
- Preserving your organization's context memory so Butler recalls business facts across multi-day workflows;
- Executing scheduled publications, marketing campaigns, and external API requests on your behalf;
- Authenticating user sessions and safeguarding account security;
- Sending critical transactional notifications, early access status updates, and security alerts;
- Detecting, preventing, and mitigating fraudulent, abusive, or unauthorized activities that violate our Terms of Service.
AI Model Processing & Third-Party LLM Infrastructure
Butler leverages enterprise-grade foundation models and large language model (LLM) APIs (such as Anthropic Claude, Google Cloud Vertex AI, and OpenAI) to analyze context, synthesize research, and orchestrate execution.
User Caution: You agree not to submit sensitive personally identifiable information (PII), unauthorized third-party personal data, classified state secrets, or critical financial credentials into general prompt text. You represent that you possess all legal rights and consents for any data you introduce into Butler.
Third-Party Platforms & Data Processing Roles (Controller vs. Processor)
When Butler publishes content or executes messaging on third-party channels (e.g. WhatsApp, social networks):
- Role Designation: Regarding end-customer data (e.g., recipients of your WhatsApp messages or social followers), you act as the primary Data Controller / Data Fiduciary. Sevorse acts strictly as a technical Data Processor executing software workflows under your direction.
- Compliance Responsibility: You are solely responsible for obtaining all necessary prior consents, opt-ins, and clearances required under applicable privacy and anti-spam laws before communicating with third parties through Butler.
- Platform Privacy Policies: Data transmitted to third-party platforms is subject to their respective privacy policies (e.g., Meta Privacy Policy, WhatsApp Privacy Policy). Sevorse exercises no control over third-party platform data handling.
Authorized Sub-processors
To provide high-availability autonomous execution, Sevorse partners with vetted, enterprise-grade third-party sub-processors who adhere to strict data security standards:
- Cloud Infrastructure & Hosting: AWS / Google Cloud Platform (Encrypted server hosting, relational databases, and isolated compute environments).
- AI Inference APIs: Anthropic, OpenAI, and Google Cloud Vertex AI (Ephemeral enterprise inference with zero training on customer data).
- Messaging & Delivery: WhatsApp Business API / Meta Graph API (Direct API transmission for commercial messaging).
- Transactional Email: Enterprise SMTP delivery infrastructure for service notifications and waitlist verification.
Data Storage, Encryption & Security Safeguards
We implement industry-standard technical, operational, and organizational security measures to protect your information against unauthorized access, loss, alteration, or disclosure:
- Encryption in Transit: All communications between your browser, our servers, and external APIs are secured using Transport Layer Security (TLS 1.3 / HTTPS).
- Encryption at Rest: Sensitive access tokens, API credentials, and database records are stored using AES-256 encryption.
- Access Governance: Internal access to user databases is restricted to authorized personnel under strict non-disclosure obligations on a need-to-know basis.
Your Data Rights (DPDP Act 2023, GDPR, CCPA)
Depending on your jurisdiction, you possess clear statutory rights regarding the personal and commercial data processed by Butler:
- Right to Access & Review: You can inspect and verify the memory profiles and account data stored for your organization.
- Right to Rectification: You can update, correct, or refine outdated context memory facts at any time.
- Right to Data Portability: You can request an export of your stored memory profiles and operational assets in standard structured format (JSON/CSV).
- Right to Erasure ("Right to be Forgotten"): You have the right to request the permanent deletion and erasure of your account, context profiles, and associated API tokens by emailing privacy@sevorse.com. Upon verification, data will be purged from our active systems within 30 days.
- Right to Withdraw Consent: Where processing is based on consent, you may withdraw your consent at any time without affecting the lawfulness of prior processing.
Data Deletion Instructions
If you wish to delete your account, contextual memory data, and associated personal information from Butler AI, you can execute the deletion directly from your account dashboard by following these steps:
Profile > Settings > Account > Delete Account
Upon confirming account deletion through this path:
- Data Purge: Your user profile, contextual memory, uploaded guidelines, API integration keys, and historical interaction logs will be permanently deleted and purged from our active databases.
- Connected Channels: All active sessions and authorization tokens connected to third-party services will be immediately invalidated and disconnected.
- Assisted Request: If you are unable to access your account or wish to request manual data erasure, you may submit a request by contacting our data governance team at privacy@sevorse.com. Upon identity verification, your data will be permanently purged within 30 days.
Cookies & Tracking Technologies
Butler uses strictly necessary session cookies and security tokens (e.g. CSRF verification tokens) required to authenticate sessions and protect form submissions. We do not sell tracking profiles to advertising brokers or deploy intrusive third-party behavioral profiling cookies across unrelated websites.
International Data Transfers & Legal Compliance
Sevorse is headquartered in Bengaluru, Karnataka, India. Our servers and service providers may operate in India, the United States, and other cloud regions. By accessing Butler, you consent to the transfer, storage, and processing of your data across international jurisdictions in accordance with this Privacy Policy, the Digital Personal Data Protection Act, 2023 (India), and international data protection norms.
Privacy Officer & Contact Information
For privacy inquiries, data deletion requests, or regulatory questions regarding Butler AI, please reach our data governance team: