Effective Date: December 16, 2025
Contact: contact@zeitra.ai
1. Introduction
Zeitra ("we", "us", "our") respects your privacy and is committed to protecting information entrusted to us. This Policy explains what personal and business information we collect, how we use and store it, how we protect it, and what choices you have.
2. Scope
This Policy applies to all clients, prospects, partners, vendors, and website visitors who interact with Zeitra or whose data we otherwise process in the course of providing services.
3. What We Collect & Why
Intake / Contact Data
Name, business name, email, phone (optional), city/state, and high-level business details. Used to evaluate fit, scope projects, communicate, and manage billing.
Operational Data
Project notes, build logs (Origin Build Log), configuration decisions, and non-sensitive workflow metadata stored in Notion and Google Drive. Used to document work, reconcile final pricing, and support continuity.
Payment Data
Stripe processes client card and payment details. We do not retain card data; Stripe holds payment information per its policies.
Third-Party / Service Credentials
We do not store API keys or authentication credentials. Ever. See Section 4.
4. How We Handle Credentials
We never store client API keys, authentication credentials, or OAuth tokens in our systems. Clients retain ownership and control of all credentials. Once credentials are provided, they are entered directly into the client's own n8n instance and are not documented or stored elsewhere.
5. n8n Accounts & Access
Client automations live in the client's own n8n account. Clients create and retain the account and all underlying access control. Operators perform work only within the client's n8n environment as collaborators.
6. Where We Store Data
We store necessary project data in Notion (SOPs, build logs, CRM details), Google Drive (project artifacts), and Stripe (payment processing). We do not use other third-party data stores except as required for client work.
7. Security Practices
We use TLS for data in transit. Third-party processors provide encryption at rest. Access control follows principle of least privilege. Build logs, change records, and access events are documented for auditability.
8. Data Retention & Deletion
We retain project documentation as long as necessary to provide services or comply with legal obligations. We do not retain credentials. Clients may request deletion or export of their project data. Contact contact@zeitra.ai
9. International Transfers
Data may be processed or stored in the United States and by third-party processors whose facilities are outside your country. We implement appropriate safeguards when transfers occur.
10. Data Subject Rights
Where applicable law grants rights (access, correction, deletion, portability), we will respond in accordance with applicable legal requirements.
11. Third-Party Services
Our services rely on third parties (n8n, Notion, Google, Stripe). Those services have separate privacy practices. We remain responsible for how we handle data within our control.
12. Incident Response
If we discover a security incident affecting client data, we will contain and investigate the incident promptly, notify affected clients without undue delay, and cooperate with authorities as required by law.
13. Children's Data
Our services are business-facing and not intended for children. We do not knowingly collect personal information from minors.
14. Changes to This Policy
We may update this Policy to reflect changes in practices or legal requirements. The effective date will be updated and significant changes will be communicated.
Questions or requests: contact@zeitra.ai