Privacy Policy
Last updated: January 15, 2026
1. Introduction
Loopency is a product of Jowgik ("we", "our", or "us"). Jowgik is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use Loopency.
By using Loopency, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Personal Information
When you register for an account, we collect:
- Name
- Email address
- Password (encrypted)
- Organization/workspace name
2.2 Payment Information
For paid subscriptions, we collect payment information through our payment processor (Dodo Payments). We do not store your complete credit card information on our servers.
2.3 User Content
We store the data you create, upload, and manage within the Service, including:
- Workspaces, collections, and records
- Files and attachments
- Comments and collaboration data
- Dashboards and reports
- Automation rules and workflows
2.4 Usage Information
We automatically collect certain information when you use the Service:
- IP address and device information
- Browser type and version
- Pages visited and features used
- Time and date of access
- Performance and error logs
2.5 Cookies and Tracking
We use cookies and similar tracking technologies to track activity on our Service. You can instruct your browser to refuse all cookies or indicate when a cookie is being sent. See our Cookie Policy for more details.
3. How We Use Your Information
We use collected information for the following purposes, along with the legal basis under GDPR for each:
- Providing and maintaining the Service (contractual necessity)
- Processing payments and subscriptions (contractual necessity)
- Sending administrative information and updates (contractual necessity)
- Responding to your requests and support inquiries (contractual necessity)
- Monitoring and analyzing usage patterns (consent)
- Improving and optimizing the Service (legitimate interest)
- Marketing communications (consent)
- Detecting and preventing fraud and abuse (legitimate interest)
- Complying with legal obligations (legal obligation)
4. Data Sharing and Disclosure
4.1 Service Providers
We may share your information with third-party service providers who perform services on our behalf:
- Dodo Payments (payment processing)
- Resend (email delivery)
- Google Analytics (website analytics)
- Sentry (error monitoring)
- Cloudflare (CDN and DNS)
- Google (OAuth authentication)
- Google Gemini (AI/ML processing) — used for AI-powered features including natural language queries, record summaries, and content generation
4.2 Legal Requirements
We may disclose your information if required by law or in response to valid requests by public authorities.
4.3 Business Transfers
If Jowgik or Loopency is involved in a merger, acquisition, or asset sale, your information may be transferred. We will provide notice before your information is transferred and becomes subject to a different Privacy Policy.
4.4 We Do Not Sell Your Data
We do not sell, rent, or trade your personal information to third parties for their marketing purposes.
4.5 AI-Generated Content
Some features use artificial intelligence (Google Gemini) to generate summaries, suggestions, and content. AI-generated outputs may not always be accurate and should be reviewed before use. We do not use your data to train AI models.
5. Data Security
We implement appropriate technical and organizational security measures to protect your data:
- Encryption in transit (TLS/SSL)
- Encryption at rest for sensitive data
- Regular security audits and updates
- Access controls and authentication
- Secure backup and disaster recovery
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
6. Data Retention
We retain your information for as long as your account is active or as needed to provide the Service. When you delete your account, we will delete or anonymize your personal information within 30 days, except as required by law or for legitimate business purposes.
Specific retention periods by data category:
- Account data: Duration of active account + 30 days post-deletion
- Payment and billing records: 7 years (tax and legal requirements)
- Usage analytics and logs: 12 months
- Support communications: 24 months
- Error and security logs: 6 months
- Marketing consent records: Duration of consent + 3 years
You can request deletion of your data at any time by contacting us at [email protected].
7. Your Rights (GDPR)
If you are in the European Economic Area (EEA), you have certain data protection rights:
- Access: Request a copy of your personal data
- Rectification: Request correction of inaccurate data
- Erasure: Request deletion of your data
- Restriction: Request restriction of processing
- Portability: Request transfer of your data
- Objection: Object to processing of your data
- Withdrawal: Withdraw consent at any time
- Lodge a complaint: Lodge a complaint with your local data protection supervisory authority if you believe your data has been processed unlawfully.
To exercise these rights, please contact us at [email protected].
8. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights:
- Right to know what personal information we collect
- Right to know if we sell or disclose your information
- Right to opt-out of the sale of your information (we do not sell)
- Right to request deletion of your information
- Right to non-discrimination for exercising your rights
9. International Data Transfers
Your information may be transferred to and maintained on servers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ.
Where personal data is transferred outside the European Economic Area, we ensure appropriate safeguards are in place:
- Standard Contractual Clauses (SCCs): We rely on EU-approved SCCs where applicable to provide adequate protection for international transfers.
- Google (Analytics, OAuth): Operates under their EU-US Data Privacy Framework certification.
- Cloudflare: Has Binding Corporate Rules (BCRs) approved by EU Data Protection Authorities.
We conduct Transfer Impact Assessments for international transfers and implement supplementary measures where necessary.
10. Children's Privacy
Our Service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you become aware that a child has provided us with personal information, please contact us.
11. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
You are advised to review this Privacy Policy periodically for any changes. Changes are effective when posted on this page.
12. Data Processing Agreement
Business customers who process personal data through Loopency may request a Data Processing Agreement (DPA) by contacting [email protected].
13. Data Controller
Data Controller: Loopency, [Address to be added], Germany. Contact: [email protected]
14. Contact Us
If you have any questions about this Privacy Policy, please contact us:
Email: [email protected]