Aseyi - Privacy Policy

Last Updated: 9/29/2025

1. Introduction

Welcome to Aseyi, an AI-powered productivity and business coaching app. We are committed to protecting your privacy and ensuring the security of your personal data. This Privacy Policy explains how we collect, use, and safeguard your information when you use Aseyi. We comply with the UK General Data Protection Regulation (UK GDPR) and relevant data protection laws to protect your rights and data. We believe your data is yours, and you should control who has access to it. This means you can request deletion of your data at any time without unnecessary hurdles, and we only ask for the minimum information necessary to provide our services. Please read this policy carefully. By using Aseyi, you agree to the collection and use of information in accordance with this Privacy Policy.

2. Controller Identity

Aseyi (referred to as "Aseyi", "we", "us", or "our") is operated by X-MASTERY LIMITED, a company registered in the United Kingdom. For any questions or requests regarding your personal data, you can contact us at hi@aseyi.com.

3. Information We Collect

We collect several types of information to provide and improve the Aseyi app:

Account Information

When you register, we collect information such as your name, email address, and password. If you sign up using Google or Apple authentication, we receive basic profile information (like your name and email) from those providers with your consent. This information is used to create and secure your account.

Profile and Onboarding Data

The app may ask for information during onboarding or profile setup, including assessment scores, business goals, and other inputs about you or your business. For example, you might provide your industry, business size, or personal productivity preferences. We use this data to personalize your experience and tailor the coaching insights to your needs.

Task and Usage Data

We record data about your interactions with Aseyi, such as tasks you create or complete, goals you set, dashboard scores, and your usage of various features. This includes your inputs in the AI chat or coaching conversations and any feedback you give. We also log how frequently and when you use the app, and which features you use, to help us improve service reliability and design.

Technical and Device Information

Like many apps, we collect technical information when you use Aseyi. This can include your device type (e.g. phone, tablet), operating system version, app version, and unique device identifiers. We may also collect IP address, time stamps of logins or actions, and other system logs. This information helps us debug issues, secure the service (e.g. detecting suspicious login attempts), and ensure compatibility across devices.

Cookies and Tracking Technologies

If you use our website or web dashboard, we may use cookies or similar technologies to remember your preferences and understand how you navigate our site. For example, cookies might keep you logged in or track aggregate usage analytics. You will be informed of any cookies when using our web services, and where required, we will obtain your consent. You can disable cookies in your browser settings, though some features of the service may not function properly as a result.

4. How We Use Your Information

We use your information to provide our service and enhance your user experience. Here's how we use the information described above:

Providing and Personalizing the Service

We use your information to deliver the app's core functionality. This includes authenticating you (so you can securely log in), maintaining your account and settings, and using your inputs (onboarding data, tasks, goals, etc.) to generate personalized productivity insights and business coaching advice via our AI. For example, your task completion history and goals help shape the coaching tips you see on your dashboard. Personal data is processed by our algorithms and AI models to tailor suggestions to you, but we do not use your personal data to train our AI beyond your individual use without your permission.

Improving and Developing the App

We analyze usage data and feedback (e.g. which features are used most or where users encounter errors) to improve Aseyi's functionality and user experience. This helps us debug issues, optimize our AI models, and develop new features. We may use aggregated, anonymized data (which cannot identify you) to understand trends and improve our service broadly.

Communication

We use your email (and possibly your in-app notifications) to send service-related communications. This includes confirmations (such as welcoming you to Aseyi or confirming changes in your account), important app updates, security alerts (e.g. password change notices or new device login alerts), and information about new features or improvements. If you contact us with questions or support requests, we use your information to respond to you.

Subscriptions & Payments

If you purchase a subscription, we process the necessary information to manage your subscription. We might keep track of your plan selection, billing history, and payment status. However, payment details (like credit card numbers or bank information) are not stored by Aseyi directly; they are handled securely by our third-party payment processor (see Data Sharing below). We retain basic transaction records (e.g. that a payment was made, the amount, and when) for accounting and to manage your subscription (such as recognizing you as a premium user).

Security and Fraud Prevention

To protect your account and our services, we use data like IP addresses, device information, and activity logs to detect and prevent fraudulent or unauthorized activity. Unusual patterns (like repeated failed logins or access from a new location) might trigger protective actions such as multi-factor authentication prompts or alerts to you. We also use this data to enforce our Terms & Conditions and prevent misuse of the app (for example, detecting bots or abuse of the AI chat).

Legal Compliance

In certain cases, we may use your data to comply with legal obligations, such as responding to lawful requests by public authorities or law enforcement, or when required by law or regulation.

We will not use your personal information for any purpose that is incompatible with the purposes listed above. If we need to use your data for a new purpose, we will update this Privacy Policy and notify you when required or seek your consent if legally necessary.

Under the UK GDPR, we must have a valid legal basis to process your personal data. Depending on the specific processing activity, one or more of the following bases apply:

Contractual Necessity

In most cases, we process your data because it is necessary to provide the Aseyi service to you under our contract (the Terms & Conditions). For example, we need your account and profile information to create your account and deliver personalized coaching. When you use our app, you are requesting the service and we process your data to fulfill that request. If you subscribe to a paid plan, processing your payment information is necessary to provide the subscription.

Legitimate Interests

We process certain data for our legitimate business interests, in a way that does not override your rights and freedoms. This includes improving our app, securing our platform, and understanding how users engage with Aseyi. For instance, analyzing usage patterns helps us improve features and user satisfaction. When we rely on this basis, we ensure that our interests are balanced against your privacy rights. You have the right to object to processing based on legitimate interests (see Your Rights below).

Consent

We will rely on your consent in situations where a legal requirement demands it or when we want to give you a genuine choice. For example, we will obtain your consent before sending marketing emails not related to service updates, or before collecting any sensitive information (which we generally do not do). If we ever introduce optional features (like integrating with other apps or sharing testimonials) we will ask your permission. You have the right to withdraw your consent at any time, and we will stop the processing in question. Withdrawing consent will not affect the lawfulness of processing already carried out.

Legal Obligation

When laws or regulations require us to process personal data, we will do so on this basis. For example, keeping transaction records for financial regulations or providing information to law enforcement if we receive a valid legal order. We will only process the minimum amount of data necessary to meet our legal obligations.

We do not perform any processing based solely on automated decision-making, including profiling, that has legal or similarly significant effects on you. While our AI provides personalized suggestions (profiling in a broad sense), these do not solely determine any legal status or rights for you, and you always have the option to ignore or override AI recommendations. There is always a level of human involvement or choice in how you use the AI insights, so Article 22 of GDPR (automated decisions) is not triggered in a harmful way. Nonetheless, you have rights related to automated processing (see Your Rights).

6. Data Sharing and Disclosure

We value your privacy and do not sell or rent your personal data to third parties. We only share your information in a few specific situations, all of which are aligned with providing you the Aseyi service or complying with the law:

Service Providers (Processors)

We employ trusted third-party companies and individuals to support our services ("data processors"). These include cloud hosting and storage providers, authentication services, payment processors, analytics providers, and AI model providers. These service providers have access to your personal data only to perform specific tasks on our behalf and are contractually obligated to protect your data and not use it for any other purpose. We select providers that meet high data protection standards.

Team and Organizational Use

If you are using Aseyi as part of a team or enterprise account (for example, your company signed up and invited you to join their Aseyi workspace), some of your data may be shared with the administrator of your team or organization. This could include your name, email, and high-level usage or performance indicators relevant to the team (e.g., aggregated dashboard scores for the team). We will make it clear in the app if this is the case. The organization's account owner may act as a co-controller of data for their members. However, we still treat your data in accordance with this Privacy Policy and require the organization to do so as well. If you leave the team or the organization's subscription ends, your personal data will no longer be accessible to the team (though you may retain your individual account).

Legal Requirements and Protection

We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court order, subpoena, or law enforcement demand). We will always review such requests carefully and only provide the minimum data necessary. Additionally, we may share information when we believe in good faith that disclosure is necessary to protect our rights or property, enforce our Terms & Conditions, investigate fraud, or protect Aseyi users or the public from harm or illegal activities.

Business Transfers

If Aseyi or X-MASTERY LIMITED is involved in a merger, acquisition, investment, financing due diligence, reorganization, bankruptcy, receivership, sale of company assets, or transition of service to another provider, your data may be transferred as part of that transaction. We would ensure the new owner or successor honors the commitments we have made in this Privacy Policy or provide you notice and choices before your data is handled under any different terms.

With Your Consent

In situations where you explicitly consent to sharing, we may do so. For instance, if we ever introduce a feature where you can choose to share testimonials, results, or certain data with others (or on social media), we will only do that if you opt in. Likewise, if you integrate Aseyi with another service at your request (say, syncing with your calendar or task tool in the future), we will share data with that integration only with your permission and as needed to fulfill that integration.

Other than the cases above, we will not share your personal information with any third party. If in the future we need to share for a new reason (such as a new partner or integration), we will update this policy and notify you as required.

7. International Data Transfers

Aseyi is operated in the United Kingdom, but we utilize cloud infrastructure that may be located in other countries. In particular, our primary data hosting (e.g., Firebase by Google) may store and process data on servers located in the European Economic Area (EEA) or the United States. When you use Aseyi, your information might be transferred to and stored on servers outside of the UK (including in the EU or U.S.).

UK & EU Data Protection

We take steps to ensure that international transfers of personal data comply with applicable data protection laws. If your data is transferred outside of the UK (or EEA), we will ensure at least one of the following safeguards is in place:

  • The country has been deemed to provide an adequate level of protection for personal data by the UK authorities (adequacy decision).
  • We have executed Standard Contractual Clauses (SCCs) or an equivalent legal transfer mechanism with the receiving party, obligating them to give your data the same protection it has in the UK/EU.
  • For transfers to the U.S., where appropriate, the recipient is certified under frameworks like the EU-U.S. Data Privacy Framework and the UK Extension (if applicable), or otherwise provides adequate safeguards.

By using Aseyi, you understand that your personal data may be transferred to our servers and partners in other jurisdictions. However, this will always be done securely and in compliance with privacy laws. We will protect your data no matter where it is processed, using encryption and other measures as described in Data Security below.

If you have questions about international data transfers or want more information about the safeguards in place, please contact us at hi@aseyi.com.

8. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including any legal, accounting, or reporting requirements. In practice, this means:

Account Data

We keep the information you provided during sign-up (like your name and email) for as long as your account exists. If you delete your account or request deletion, we will remove this information from our live systems, typically within 30 days of your request, unless we are required to retain it longer for legal reasons.

Content and Usage Data

Your tasks, goals, coaching inputs, and other content are retained for as long as you maintain your account (since these are part of the core service you expect). If you delete your account, this data is typically deleted within 30 days, unless you specifically request earlier deletion. Some aggregated, anonymized insights derived from your usage may be retained longer to improve our service, but such data cannot be traced back to you personally.

Support and Communication Data

Records of your communications with our support team (like emails or in-app help requests) are retained for customer service follow-up, typically up to 2 years, unless a longer period is required for legal reasons (e.g., evidence in a dispute).

Legal Retention

Any data required to be kept by law will be kept for the period mandated by law. For example, if a law requires us to retain certain data for a minimum time (such as financial transaction data for audit purposes), we will keep that data for the required period, then delete it when no longer necessary.

After the retention period expires, or if the data is no longer required, we will either securely delete your personal data or anonymize it (so it can no longer be associated with you) for statistical purposes. If deletion is not immediately possible (for example, because the data is stored in backup archives), we will securely store and isolate it from further processing until deletion is possible.

9. Data Security

We take the security of your data seriously and implement industry-standard measures to protect it. These measures are designed to prevent loss, misuse, unauthorized access, disclosure, or alteration of your personal information. Key security practices include:

Encryption

All data transmitted between your device and our servers is encrypted using HTTPS/TLS protocols. This means that when you use Aseyi, your information is protected in transit. Additionally, we rely on Firebase and other cloud services that encrypt data at rest on their servers. Your passwords are stored in hashed form (not in plain text), and any sensitive tokens or credentials are also encrypted.

Access Controls

We restrict access to personal data to authorized personnel who need it to operate or improve the service. Our team is trained on data protection and bound by confidentiality. Administrative access to systems containing personal data is limited and protected with strong authentication (e.g., multi-factor authentication). Where we use third-party processors, they are also required to have strong security practices.

Monitoring and Testing

We monitor our systems for possible vulnerabilities and attacks. Security logs are maintained to detect and respond to suspicious activities. We periodically test and evaluate the effectiveness of our security measures (for example, through vulnerability scanning, penetration testing, and risk assessments). Our infrastructure providers like Google Firebase have robust security certifications and programs that we benefit from.

Data Isolation

Your data is logically separated from other customers' data. User-specific data is identified by unique IDs, ensuring that other users cannot access your information. Any production copies of data used for testing or development are anonymized to avoid using real personal data in those contexts.

Backup and Recovery

We perform regular backups of critical data to ensure it can be restored in case of any data loss event. Backups are encrypted and stored securely. In the event of an incident, we have a disaster recovery plan to restore functionality as quickly as possible while preserving data integrity.

Physical Security

Our data is stored on cloud servers that have strong physical security controls (such as guarded data centers, biometric access, surveillance, and redundancy for power and networking). We rely on reputable providers (e.g., Google Cloud) with state-of-the-art physical security measures.

While we strive to protect your information, no method of transmission over the internet or electronic storage is 100% secure. Therefore, we cannot guarantee absolute security. In the unlikely event of a data breach that affects your personal data, we will act promptly to contain and remediate the issue. If a breach is likely to result in a high risk to your rights and freedoms, we will notify you and the appropriate supervisory authority (such as the ICO in the UK) as required by law.

10. Your Rights

As a user of Aseyi and as a data subject under the UK GDPR (or EU GDPR if you are in the EU), you have several important rights regarding your personal data. We are committed to honoring these rights. You may exercise these rights at any time by contacting us at hi@aseyi.com. These rights include:

Right to be Informed: You have the right to be informed about the collection and use of your personal data. This Privacy Policy is intended to provide you with that information. We aim to be transparent in what data we collect and why.
Right of Access: You can request a copy of the personal data we hold about you, as well as information on how we process it. This is often called a "Data Subject Access Request." We will provide you a copy of your data in a common format (electronically, unless otherwise requested) free of charge, within one month (unless an extension is permitted by law due to complexity).
Right to Rectification: If any personal data we have about you is incorrect or incomplete, you have the right to have it corrected or updated. For example, if you change your email or realize we have an incorrect goal entry, you can update some of this in your account settings or ask us to correct it.
Right to Erasure: You have the right to request deletion of your personal data ("right to be forgotten"). You can delete your account via the app settings (which removes your personal data from active use) or request full deletion by contacting us. We will erase your data, provided we don't have a legal obligation to keep it. Note that deleting your data means we may no longer be able to provide you services.
Right to Restrict Processing: You can ask us to suspend or limit the processing of your data in certain circumstances. For instance, if you contest the accuracy of your data or have objected to processing (see below), you can request restriction until the issue is resolved. This means we will store your data but not actively use it.
Right to Data Portability: For data you have provided to us and that we process by automated means on the basis of your consent or for fulfilling a contract, you have the right to obtain that data in a structured, commonly used, machine-readable format. You also have the right to request that we transmit such data directly to another service provider (where technically feasible). In practical terms, if you ask, we can provide your profile information, tasks, goals, and other content that you have input into Aseyi in a CSV or similar format.
Right to Object: You have the right to object to certain processing of your data. Specifically, you can object to processing based on our legitimate interests. If you object, we will stop processing your data for that purpose unless we have compelling legitimate grounds that override your rights or if we need to continue for legal claims. You also have an absolute right to object to direct marketing – if we ever send promotional material, you can opt out anytime and we will stop.
Rights Related to Automated Decision-Making: As noted, Aseyi does not make any legally significant decisions about you purely by algorithms without human involvement. Nonetheless, the law gives you rights not to be subject to a decision based solely on automated processing (including profiling) that significantly affects you. You also have the right to human intervention, to express your point of view, and to contest automated decisions. Our AI insights are not such decisions, but if you ever feel that an aspect of our service is making a conclusion about you that you wish to challenge or have reviewed by a human, please let us know.
Right to Withdraw Consent: If we are processing any of your data based on consent, you have the right to withdraw that consent at any time. For example, if you consented to receive newsletters, you can unsubscribe. If you consented to a feature and change your mind, contact us to have that data removed. Withdrawal of consent will not affect the lawfulness of processing before you withdrew.
Right to Complain: If you have concerns about how we are handling your data, we would appreciate the chance to address them directly. However, you also have the right to lodge a complaint with the supervisory authority in your country. In the UK, this is the Information Commissioner's Office (ICO). You can contact the ICO via their website or phone (see ico.org.uk for details). If you are in the EU, you can contact your local Data Protection Authority.

We will not usually charge a fee for fulfilling any of these rights (unless a request is unfounded or excessive, in which case we may charge a reasonable fee or refuse). We will respond to all legitimate requests as soon as possible, and at the latest within one month, as required by law. If we need to extend the time or if we decide not to comply (due to a legal exemption), we will explain the reason.

11. Children's Privacy

Aseyi is not intended for individuals under the age of 18. We do not knowingly collect personal data from anyone under 18 years old. If you are under 18, you must not use the Aseyi app or provide any personal information to us. We require all users to confirm that they are at least 18 during the registration process (or that they are of legal majority in their jurisdiction if higher).

If we become aware that we have inadvertently collected personal data from a child under 18, we will take steps to delete that information promptly. If you are a parent or guardian and you believe your child (under 18) has provided personal information to us, please contact us at hi@aseyi.com so that we can investigate and delete the data if necessary.

12. Changes to this Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or for other operational reasons. When we make significant changes, we will notify you through appropriate channels – for example, by posting the updated policy on our website (with a new "Last Updated" date) and, if the changes are material, by providing a notice within the app or via email.

Any changes will become effective when posted, unless otherwise required by law. We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information. If you do not agree with any updates to the Privacy Policy, you should stop using the Aseyi service and you may request that we delete your data. By continuing to use Aseyi after those changes become effective, you acknowledge and agree to the updated policy.

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:

Email: hi@aseyi.com

We will be happy to assist you and address any issues to the best of our ability. Your privacy is extremely important to us, and we welcome feedback that helps us uphold your privacy rights.