Legal

Privacy Policy

Effective: 3 September 2026
SentinelOS is a B2B service. When we process customer messaging data on behalf of a business using SentinelOS, that business generally acts as the controller and Mintify sp. z o.o. / SentinelOS acts as a processor or service provider under the business's instructions.

1. Who we are

SentinelOS is a software product operated by MINTIFY sp. z o.o., ul. Głęboka 26, 21-025 Niemce, Poland, KRS 0000998897, NIP 7133121611, REGON 523469545. Privacy enquiries can be sent to privacy@sentinelos.pro.

2. Scope

This Privacy Policy explains how we process personal data in connection with the SentinelOS website, product, integrations and business communications. It also explains the distinction between data we process for our own business purposes and data we process on behalf of SentinelOS customers.

3. Data we may process

Depending on how the service is used, we may process:

4. Why we process data

We process personal data to provide and secure the SentinelOS service, connect authorized integrations, identify operational states such as unanswered conversations and pending follow-ups, generate summaries and alerts for the relevant business, provide support, prevent abuse, comply with law and improve the reliability of our software.

5. Customer messaging data

Messaging data received through a customer's connected business account is processed for that customer and according to that customer's instructions and configuration. We do not sell customer message content for advertising. We do not use customer message content to train or improve general-purpose AI models shared across customers.

6. Legal bases

Where Mintify sp. z o.o. acts as controller, processing may be based on performance of a contract, steps requested before entering a contract, compliance with legal obligations, legitimate interests such as security and service administration, or consent where applicable. Where we act as processor, the relevant SentinelOS customer determines the legal basis for the underlying processing.

7. Service providers and subprocessors

We may use infrastructure, hosting, security, communications and AI technology providers to deliver SentinelOS. They may process data only as required to provide contracted services and are subject to appropriate contractual and security obligations. Where required, SentinelOS customers will be informed about relevant subprocessors under the applicable service agreement or data processing agreement.

8. International transfers

Data may be processed in the European Economic Area and, where necessary to provide the service, in other jurisdictions. Where required by applicable law, we use appropriate transfer safeguards such as contractual protections.

9. Retention

We retain data only for as long as necessary for the purposes described above, to comply with contractual instructions and legal obligations, and to maintain security and auditability. Product retention periods may depend on customer configuration and service plan. Data may be deleted or anonymized when no longer required.

10. Security

We use technical and organizational measures appropriate to the nature of the data and the service, including access controls, encrypted network transport, tenant separation, logging and restricted administrative access. No system can guarantee absolute security.

11. Human access to customer conversations

SentinelOS is designed to minimize routine human access by our personnel to customer conversation content. Where access is necessary for support, security, legal compliance or incident response, it should be limited to authorized personnel and the minimum data reasonably required for the task.

12. Your rights

Depending on applicable law, individuals may have rights to access, correct, erase, restrict or object to processing of their personal data, or to receive a portable copy. If your data appears in a conversation with a business that uses SentinelOS, the fastest route is normally to contact that business directly because it controls the customer relationship. You may also contact us at privacy@sentinelos.pro.

13. Data deletion

Instructions for requesting deletion are available at sentinelos.pro/data-deletion/.

14. Website cookies and logs

The public SentinelOS website does not intentionally use advertising or behavioral-profiling cookies. Our hosting and security providers may process standard technical logs necessary to deliver and protect the website.

15. Meta and WhatsApp

Where a business connects WhatsApp Business services to SentinelOS, relevant data may also be processed by Meta under Meta's own terms and policies. WhatsApp is a trademark of Meta Platforms, Inc. SentinelOS is an independent third-party product and is not affiliated with or endorsed by Meta Platforms, Inc. or WhatsApp.

16. Changes

We may update this Privacy Policy as the service develops or legal requirements change. The effective date at the top of this page identifies the current version.

17. Contact

MINTIFY sp. z o.o.
ul. Głęboka 26, 21-025 Niemce, Poland
Email: privacy@sentinelos.pro