Legal
Privacy Policy
Last updated: 8 April 2026
This Privacy Policy describes how Pocketz Ltd ("we", "us", or "our") processes personal data when you use Managai (the "Service"). We act as a data controller for personal data we collect about you in connection with the Service, unless we process data solely on your instructions as a processor (for example, data you upload about your end users), in which case our agreement with you governs that processing.
1. Data we collect
- Account data: email address, name if provided, password hash (we do not store your password in plain text), and workspace or organisation identifiers.
- Usage data: interactions with the Service, technical logs (such as IP address, browser type, device identifiers, and timestamps), and diagnostics to secure and improve the Service.
- Content you provide: configuration, agent metadata, alerts, and other information you choose to submit to the Service.
- Billing data: payment-related identifiers and billing address as processed by our payment provider (we do not store full card numbers on our servers).
2. How we use personal data
We use personal data to provide, operate, and improve the Service; authenticate users; communicate with you (including service and security notices); analyse usage in aggregate; comply with legal obligations; and enforce our terms. We process personal data where we have a lawful basis under the UK GDPR and EU GDPR, including performance of a contract, legitimate interests (such as security and product improvement, balanced against your rights), and consent where required.
3. Storage and transfers
We host the Service using Supabase. Data is stored on infrastructure located in the European Union, which helps us keep your personal data within the EEA/adequate jurisdictions for UK and EU users. Where we transfer personal data outside the UK/EEA, we rely on appropriate safeguards such as the UK International Data Transfer Agreement, EU Standard Contractual Clauses, or other mechanisms recognised under applicable law.
4. Third parties
We use Stripe to process payments. Stripe receives billing-related personal data as necessary to complete transactions and may process such data in accordance with its own privacy policy. We also use subprocessors for hosting, email delivery, and analytics as described in our subprocessors list or notices we may provide from time to time.
5. Your rights (GDPR / UK GDPR)
If you are in the UK or EEA, you have rights including: access to your personal data; rectification of inaccurate data; erasure in certain circumstances; restriction of processing; data portability where applicable; objection to processing based on legitimate interests; and withdrawal of consent where processing is based on consent. You may lodge a complaint with your local supervisory authority (in the UK, the ICO). To exercise your rights, contact us using the details below. We will respond within one month in most cases, or inform you if we need longer where permitted by law.
6. Retention and security
We retain personal data only as long as necessary for the purposes described above, including legal, accounting, and security requirements. We implement appropriate technical and organisational measures to protect personal data against unauthorised access, loss, or alteration.
7. Contact
For privacy-related requests or questions, contact Pocketz Ltd at support@managai.io. You may also use our contact page for general enquiries.
