Security

Deploy your AI receptionist with clear controls, even when your privacy requirements are strict

Trust begins with knowing what information is processed, where it is stored and who can access it.

That is why privacy, transparency and restricted access are built into Aye Matey from the start.

Designed for GDPR-compliant use

Aye Matey is designed to be used in accordance with the EU General Data Protection Regulation.

Data subjects can request access to, correction of or deletion of their personal data.

Your organisation determines the purposes for which the receptionist is used and is responsible for deploying it in accordance with your own privacy practices.

Clear agreements

A Data Processing Agreement, or DPA, is available for business customers.

The agreement defines the parties’ roles, responsibilities and the principles under which personal data is processed in Aye Matey.

Transparent AI

Visitors are clearly told that they are speaking with an AI assistant.

Aye Matey does not pretend to be a person. Transparency helps build trust and allows visitors to make an informed decision about continuing the conversation.

People remain in control

Aye Matey can answer general questions about your services, qualify a buyer’s needs and book a meeting.

It does not replace professional judgement and is not intended to provide diagnoses, treatment instructions, legal advice or personalised financial advice. Questions requiring professional assessment are directed to a qualified specialist.

Data processing in plain language

We store data such as conversations, leads and settings in our systems on a server located in the EU.

Contact details and conversation content are encrypted in the database, not only while being transferred. You can define a retention period, after which personal data is automatically anonymised.

Data can also be requested for access or deletion. Access is restricted to people who need it to provide the service, deliver customer support or maintain security.

If needed, AI processing of text conversations can also be carried out in the EU without the processing partner retaining any data. Ask us if your organisation has stricter data residency requirements.

You know how your receptionist handles information, and can explain it openly to your own customers.

In practice

You stay in control of the data

Privacy is not just a promise, it is a tool in the dashboard.

Retention periods, data export and deletion are handled directly in the dashboard without a support ticket. You decide how long personal data is kept, export conversation history as a PDF when needed and delete all data with a single action.

Why it matters You can see for yourself that the promises match how the service actually works.

Security and transparency You control the data: retention, export and deletion.

Visitors are told about AI openly, we store the data in the EU and a data processing agreement (DPA) is available for business customers.