Understanding Looti Company's Data Handling Practices
In today's digital age, trust in how companies handle our personal information is crucial. For anyone who uses online services, understanding what happens to your data is essential – especially when it comes to businesses operating under European Union regulations like GDPR. This article examines Looti Company's approach to customer data management, from how they collect and store information to their obligations when something goes wrong. Through careful analysis of their Terms of Service and Data Processing Agreement, we'll explore what rights you have as a customer and how Looti ensures your data stays protected.
Looti Company processes customer data based on documented instructions from the customer and maintains strict data authorization protocols. According to the Terms of Service, customers authorize Looti to access and store information provided by third-party services, including Personal Data obtained through third-party authentication services or connections to third-party services.
Data processing occurs under the guidelines of a Data Processing Agreement that complies with GDPR Article 28. This agreement serves as the basis for Personal Data processing instructions, ensuring that customer data is handled according to privacy policy standards. Looti employs both its own infrastructure and authorized third-party service providers for data processing, hosting services on Amazon Web Services servers located in the European Union.
The company maintains confidentiality through contractual agreements with its employees and contractors, ensuring that all personnel handle customer data responsibly. In accordance with GDPR requirements, Looti assists customers with technical and organizational measures to fulfill data subject rights, security protocols, data protection impact assessments, and prior consultations.
Upon contract termination, Looti is obligated to delete or return all customer data unless required by Union or Member State law. The company must notify customers of personal data breaches without undue delay and limit its liability to the extent of its subcontractor status, as detailed in the Privacy Policy. All data handling processes are conducted within the European Union, with occasional data transfers to other locations around the world as specified in the Terms of Service.
Looti's service development process emphasizes continuous improvement through regular updates and new version releases. While the company works to minimize service interruptions, temporary downtime may occur during deployment, though such disruptions don't entitle customers to compensation.
The company maintains an email support channel at tom@looti.io and offers in-app chat support for customer inquiries about its services. Technical support personnel receive training on data protection principles and must maintain confidentiality as per their employment terms.
Service development follows a modular approach, allowing the company to launch new features independently of existing service versions. Customers have the right to terminate their contracts if they disagree with any changes made to the service, including new features or functionality.
During service development cycles, Looti focuses on security enhancements and performance optimizations. The company conducts regular security audits and maintains a dedicated security team to address emerging threats. In case of malfunctions or service interruptions, Looti aims to notify customers promptly and make reasonable efforts to limit the impact on service availability.
The company employs agile development methodologies, enabling rapid response to customer feedback and market trends. New services undergo rigorous testing before deployment to ensure compatibility with existing systems and functionality. The development process also includes regular code reviews and security scans to identify potential vulnerabilities.
Looti provides technical support through email at tom@looti.io and in-app chat for questions related to its services. Technical support personnel must maintain confidentiality as per their employment terms and receive training on data protection principles.
Customers have a non-exclusive right to use the application for internal business purposes, subject to the terms and conditions of the Terms of Service. While the application undergoes continuous development through updates and new versions, temporary service unavailability may occur during deployment. However, these interruptions do not entitle customers to compensation.
In case of malfunctions or service interruptions, Looti aims to notify customers promptly and make reasonable efforts to limit any impact on service availability. The company follows an agile development methodology, allowing it to rapidly respond to customer feedback and market trends. New services undergo rigorous testing before deployment to ensure compatibility with existing systems and functionality.
The development process also includes regular code reviews and security scans to identify potential vulnerabilities. During service development cycles, the company focuses on security enhancements and performance optimizations to maintain the reliability and security of its services.
Looti Company charges customers based on credit usage or qualified leads, with a minimum monthly fee of 99 euros. The credit system enables customers to purchase additional usage beyond the basic plan, allowing flexible scaling based on business needs.
Looti maintains continuous development through regular updates, with a focus on improving service features and functionality. While the company aims to minimize service unavailability, temporary downtime may occur during deployment cycles. These disruptions do not entitle customers to compensation unless caused by Looti's faults, failures, or errors.
Customers have a professional obligation to use the application for business purposes, ensuring reliable and accurate CRM data. Under GDPR requirements, customers remain responsible for informing data subjects about data transfers and processing activities. In cases where a customer enters into the contract without proper authorization from their employer or management body, the associated entities are not held responsible for contract obligations.
Customers retain ownership of all Customer Data processed under the Terms of Service, while Looti retains property rights to Usage Data generated through service usage. Upon contract termination, Looti is obliged to delete or return all Customer Data unless required by Union or Member State law. The company must notify customers promptly of any personal data breaches and limit its liability through its subcontractor status, as detailed in the Privacy Policy.
Looti collects customer data through various means, including third-party services and direct authorization from the customer. When customers connect to third-party services or log in through third-party authentication, Looti accesses the necessary information to provide service functionality, as explicitly authorized by the customer.
The company processes this data according to its privacy policy and maintains a Data Processing Agreement compliant with GDPR Article 28. This agreement outlines the specific instructions for handling Personal Data and serves as the legal foundation for all data processing activities. All processing occurs within the European Union, either through direct management or authorized third-party service providers.
Looti employs a range of measures to ensure data security and privacy. The company maintains confidentiality through contractual agreements with employees and contractors and participates in regular security audits and data protection impact assessments. In the unlikely event of a data breach, Looti must notify customers without undue delay and can access sub-processors who agree to equivalent protection standards.
Regarding third-party sharing, Looti only provides access to data when absolutely necessary for service provision, security, or improvement. All third-party service providers receive access only on a need-to-know basis and are bound by confidentiality obligations consistent with Looti's standards. The company maintains strict protocols to prevent unauthorized data sharing or sale to third parties.
The company retains the right to process customer data both directly and through sub-processors, with specific permissions granted for research and development activities. These processes support continuous service improvement and AI model training while maintaining strict controls over data use and storage locations.