Legal
Privacy policy
Last updated: July 16, 2026
What we collect
Website and reservation data may include your name, business name, email, phone number, business address, industry, selected product, project notes, requested meeting time, consent record, and technical request data.
When you use a phone or voice demo, providers may process your calling number, voice, audio, transcript, the information you choose to say, and call timing or routing data. Do not submit sensitive health, financial, or identity information. The website and demo are not a patient-intake channel.
Why we use it
We use information to answer enquiries, review reservations, arrange discovery, deliver an accepted scope, protect the service, keep operational records, and meet legal obligations. We may use limited aggregated service data to understand reliability and demand.
Booking contact and marketing
Permission to contact you about a reservation or requested booking is operational consent for that request. It is separate from optional marketing consent. Declining marketing does not prevent necessary communication about your request or an accepted service.
Service providers and integrations
Depending on the requested workflow, data may be processed through phone and voice infrastructure, Google Calendar and Google Meet for booking and discovery, Twenty CRM for contact and workflow records, and IONOS email for business correspondence. Hosting, analytics, security, and AI providers may also process the minimum data needed for their role.
Stripe is not used for the initial reservation. Stripe may process identity, billing, and payment data later, after an accepted proposal or order and a separate payment request.
Cross-border processing
Some providers may process or store data outside Manitoba or Canada, including in the United States or other jurisdictions. Information can therefore be subject to the laws of those places. Provider location and safeguards vary by the services selected for an accepted scope.
Retention and deletion
Reservation and correspondence records are kept only as long as reasonably needed for follow-up, security, legal, accounting, or dispute purposes. Service records follow the accepted scope and applicable obligations. We delete or de-identify information when it is no longer required, subject to backups and lawful retention duties.
Access, correction, and deletion requests
You may ask to access or correct personal information we control, withdraw optional consent, or request deletion where law permits. Email hello@aiagencywinnipeg.ca. We may need to verify identity before completing a request.
Security and secrets
We use reasonable administrative and technical safeguards. Integration credentials and server secrets are intended to remain server-side and are not requested through public forms. No system is completely secure, so submit only the information needed for your request.