Effective Date: September 9, 2025
Last Updated: April 21, 2026
1. Welcome to Chatweb!
Welcome to Chatweb, a product of AIFusionLab Co., Ltd. We are committed to protecting your personal information and complying with data privacy regulations. This Privacy Policy describes how we collect, use, store, and protect your information when you use the Chatweb website and services.
By using Chatweb, you agree to the practices described in this Privacy Policy. If you do not agree, please do not use our services.
2. What Information We Collect
2.1 Information You Provide
- Account Information: Personal information when registering an account (name, email, phone number, address, etc.).
- Payment Information: Payment details if you use paid services. Note that we do not store your credit card information on our systems — all payment processing is handled by Stripe.
- Content You Upload: Documents, images, videos, and other files you upload to the service.
- Communication Data: Chat messages, emails, and other communications when you interact with our chatbot or contact support.
2.2 Information Collected Automatically
- Device Information: IP address, browser type, operating system, device type, and identifiers.
- Usage Data: Pages you visit, access times, actions on the site, and interaction patterns.
- Cookies & Tracking: We use cookies and similar technologies to improve your experience. See Section 7 for details.
2.3 Information from Third-Party Services
Google Sign-In: When you sign in with your Google account, we collect and store:
- Your name, email address, and profile picture as provided by Google.
- Your Google Account ID for authentication and account linking purposes.
By default, we only access the basic profile information listed above. We do not access additional Google data unless explicitly requested by you through the Chatweb AI Agent.
AI Agent & Google Services Integration: When you instruct Chatweb's AI Agent to interact with your Google resources (such as Gmail, Google Drive, Google Calendar, or other Google services), Chatweb will explicitly request the necessary additional permissions at that point in time, for each specific action or service involved. You will be clearly informed of the exact permissions being requested and asked to grant your consent before any such access occurs. You may revoke these permissions at any time via Google Account Permissions.
For more information about how Google handles your data, please visit Google's Privacy Policy.
Google Analytics: We use Google Analytics to collect anonymous usage data (pages visited, session duration, device type) to improve our services. Google Analytics uses cookies to track usage across our website. You can opt out by installing the Google Analytics Opt-out Browser Add-on.
Google API Services User Data Policy: Chatweb's use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Google OAuth Permissions (Scopes) Requested: When you sign in with Google, we request only the following minimum necessary permissions for authentication:
- openid: To verify your identity via Google's authentication system.
- email: To retrieve your email address for account creation and login.
- profile: To retrieve your name and profile picture for display in your account.
Additional Google API permissions (e.g., Gmail, Drive, Calendar) will only be requested on-demand, when you initiate a specific action through the Chatweb AI Agent that requires access to those services.
3. How We Use Information
We use your information to:
- Provide and maintain Chatweb services, including account management and user verification.
- Deliver chatbot services and support customer interactions.
- Process payments for paid features through Stripe.
- Analyze and improve website performance, chatbot efficiency, and user experience.
- Send notifications, updates, and service-related communications (you may opt out of non-essential communications at any time).
- Respond to your requests, inquiries, and support needs.
- Prevent fraud, abuse, and violations of our policies.
- Comply with legal obligations and regulatory requirements.
Legal Basis for Processing (GDPR): For users in the EU/EEA, we process your personal data under the following legal bases:
- Contractual Necessity: Processing required to deliver the services you have requested (account management, chatbot services).
- Consent: Where you have given explicit consent, including Google Sign-In authorization and marketing communications.
- Legitimate Interests: For fraud prevention, security improvements, and analytics, where our interests do not override your fundamental rights.
- Legal Obligation: Where processing is required to comply with applicable laws and regulations.
4. Information Sharing Policy
We do not sell, rent, or disclose your personal information to third parties for advertising purposes.
We may share your information with third parties only in the following circumstances:
- Service Providers: Trusted third parties that help us operate our services, including:
- Stripe: Payment processing.
- Google: Authentication (Google Sign-In) and analytics (Google Analytics).
- AI Service Providers (e.g., OpenAI, Anthropic, or similar providers): To power Chatweb's AI chatbot and AI Agent functionality. Content you submit to the chatbot or AI Agent may be processed by these providers solely to generate responses and execute requested actions. We do not share your personal account information (email, payment data) with AI providers beyond what is technically necessary to deliver the service.
- Legal Requirements: When required by law, regulation, legal process, or government request.
- Protection of Rights: To protect our rights, property, safety, or that of our users or the public.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of the transaction.
- With Your Consent: When you have explicitly agreed to the sharing.
5. Data Protection & Security
- We implement industry-standard security measures to protect your information from unauthorized access, loss, or alteration, including:
- Data in transit is protected using TLS (Transport Layer Security) encryption.
- Data at rest is encrypted using AES-256.
- Access to personal data is restricted to authorized personnel only, enforced through role-based access controls.
- However, no data transmission method over the internet or electronic storage is completely secure. We cannot guarantee absolute security for your information.
- In the event of a data breach, we will notify affected users as required by applicable law.
6. Data Retention & Deletion
- We retain your personal information for as long as your account is active or as needed to provide our services.
- If you wish to delete your account, you may request deletion by contacting us at support@chatweb.io.
- Upon receiving a valid deletion request, we will permanently remove your personal data within 30 days, except where retention is required by law (e.g., for tax or legal compliance purposes).
- Anonymized or aggregated data that cannot identify you personally may be retained indefinitely for analytics purposes.
7. Cookie Policy
When you first visit Chatweb, we request your consent before setting non-essential cookies (analytics and preference cookies). You may withdraw your consent at any time through your browser settings or by contacting us at support@chatweb.io. Please note that withdrawing consent for non-essential cookies will not affect the functionality of essential cookies required for the website to operate.
7.1 Types of Cookies We Use
7.2 Controlling Cookies
You can manage and disable cookies through your browser settings. Please note that disabling essential cookies may affect the functionality of our services.
8. Credit Card Information
- We do not store your credit card information on our systems. Payment processing is handled by trusted third parties such as Stripe.
9. Your Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of the personal information we hold about you.
- Correction: Request correction of inaccurate or incomplete information.
- Deletion: Request deletion of your personal information and account.
- Restriction: Request restriction of processing of your information.
- Objection: Object to the processing of your information for specific purposes.
- Data Portability: Request a copy of your data in a structured, machine-readable format.
- Withdraw Consent: Withdraw your consent at any time where processing is based on consent.
- Complaint: Lodge a complaint with a supervisory authority (e.g., your local data protection authority).
For EU/EEA Users: You have rights under the General Data Protection Regulation (GDPR). You may contact your local supervisory authority for further assistance.
For California Residents: You have rights under the California Consumer Privacy Act (CCPA), including the right to know, delete, and opt out of the sale of personal information.
To exercise any of these rights, please contact us at support@chatweb.io.
Revoking Google Account Access: If you signed in using Google, you can revoke Chatweb's access to your Google account at any time by visiting Google Account Permissions. If you have granted Chatweb's AI Agent access to additional Google services (Gmail, Drive, Calendar, etc.), you can revoke each permission individually from the same page. Revoking access will sign you out of Chatweb but will not delete your Chatweb account or data. To permanently delete your account, please contact us at support@chatweb.io.
10. Children's Privacy
- Chatweb is not intended for children under the age of 13 (in accordance with the Children's Online Privacy Protection Act / COPPA in the United States) or under the age of 16 (in accordance with GDPR in the EU/EEA). We do not knowingly collect personal information from children below these applicable age thresholds.
- If we become aware that we have collected data from a child under the applicable age threshold, we will take steps to delete it promptly.
- If you believe we have inadvertently collected information from a child, please contact us.
11. Changes to This Privacy Policy
- We may update this Privacy Policy from time to time. Any material changes will be posted on this page with an updated "Last Updated" date.
- Significant changes will be communicated to users via email or a prominent notice on our website.
- Your continued use of Chatweb after changes are posted constitutes acceptance of the updated policy.
12. International Data Transfer
- Chatweb is operated by AIFusionLab Co., Ltd., headquartered in Vietnam. Your personal information may be processed and stored on servers located in Vietnam or other countries where our service providers operate (including Google Cloud and Stripe).
- When we transfer your data internationally, we ensure appropriate safeguards are in place in accordance with applicable data protection laws, including Standard Contractual Clauses for transfers from the EU/EEA.
- By using Chatweb, you consent to the transfer of your information to countries outside your country of residence, which may have different data protection rules.
13. Contact Us
If you have any questions or concerns about this Privacy Policy, please contact us:
- Email: support@chatweb.io
- Company: AIFusionLab Co., Ltd.
- Address: No. 9 Duy Tân, Dịch Vọng Hậu, Cầu Giấy, Hà Nội 123186, Vietnam