Privacy Policy

Your privacy and data security are our top priorities. This policy explains how we collect, use, and protect your information.

Last Updated: November 19, 2025

ZeroTask, Inc. ("ZeroTask," "we," "us," or "our") is committed to protecting your privacy and ensuring the security of your data. This Privacy Policy describes how we collect, use, disclose, and safeguard information when you use our automation-as-a-service platform and related services (collectively, the "Services").

By accessing or using our Services, you agree to this Privacy Policy. If you do not agree with the terms of this policy, please do not access or use our Services.

1. Information We Collect

Account Information

When you create an account, we collect your name, email address, company name, and billing information. This information is necessary to provide our services and communicate with you about your account.

Portal Credentials

To automate workflows on your behalf, we securely store portal login credentials that you provide. These credentials are encrypted and stored exclusively in AWS Secrets Manager with enterprise-grade security. We never access or view your credentials outside of automated workflow execution.

Usage Data

We automatically collect information about how you use our services, including workflow execution logs, API calls, feature usage, and performance metrics. This helps us improve our services and provide better support.

Technical Information

We collect IP addresses, browser type, device information, and operating system data to ensure security, prevent fraud, and optimize our services for your devices.

2. How We Use Your Information

Service Delivery

We use your information to execute automated workflows, process data through portals, generate reports, and deliver the core functionality of ZeroTask as described in your service agreement.

Communication

We may contact you regarding service updates, security alerts, billing matters, technical support, and important changes to our terms or policies. You can opt out of marketing communications at any time.

Security and Compliance

We monitor and analyze usage patterns to detect fraudulent activity, prevent security breaches, ensure compliance with our terms of service, and maintain the integrity of our platform.

Service Improvement

We analyze aggregated, anonymized data to improve our automation algorithms, develop new features, optimize performance, and enhance user experience.

3. Data Security

Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption. Portal credentials are stored exclusively in AWS Secrets Manager with additional encryption layers and access controls.

Isolation

All workflow executions run in ephemeral, isolated sandbox environments. These environments are completely destroyed after each execution, ensuring no persistent data storage or cross-contamination between workflows.

Access Controls

We implement strict role-based access controls (RBAC), multi-factor authentication for internal systems, regular security audits, and principle of least privilege access across our infrastructure.

Compliance

ZeroTask maintains SOC 2 Type II, HIPAA, FedRAMP, PCI DSS, and ISO 27001 compliance certifications. We undergo regular third-party security assessments and maintain comprehensive audit logs.

4. Data Sharing and Disclosure

Service Providers

We work with trusted third-party service providers for infrastructure hosting (AWS), payment processing (Stripe), analytics, and customer support. These providers are contractually obligated to protect your data and use it only for specified purposes.

Business Transfers

If ZeroTask is involved in a merger, acquisition, or sale of assets, your information may be transferred. We will notify you via email and/or prominent notice on our website before your information is transferred and becomes subject to a different privacy policy.

Legal Requirements

We may disclose your information when required by law, court order, or government request, or when necessary to protect the rights, property, or safety of ZeroTask, our users, or others. We will notify you of such requests unless prohibited by law.

With Your Consent

We will share your information with third parties when you explicitly authorize us to do so, such as when integrating with external services or APIs you specify.

5. Your Rights and Choices

Access and Portability

You have the right to access your personal information and receive a copy of your data in a portable format. You can request this through your account dashboard or by contacting our support team.

Correction and Deletion

You can update your account information at any time. You may request deletion of your account and associated data, subject to legal retention requirements and active service obligations.

Opt-Out

You can opt out of marketing communications by clicking the unsubscribe link in emails or adjusting your account preferences. Note that you cannot opt out of essential service communications related to your account.

Data Retention

We retain your data for as long as your account is active or as needed to provide services. After account deletion, we may retain certain data for legitimate business purposes, legal compliance, or dispute resolution, typically for 7 years.

6. International Data Transfers

Data Location

ZeroTask operates globally and may transfer, store, and process your information in countries outside your residence, including the United States. We ensure appropriate safeguards are in place for such transfers.

EU-US Transfers

For transfers from the European Economic Area (EEA) to the United States, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission and implement additional security measures.

Data Residency Options

Enterprise customers may request specific data residency options. Contact our sales team to discuss requirements for keeping data within specific geographic regions.

7. Cookies and Tracking

Essential Cookies

We use cookies necessary for authentication, security, and basic functionality of our services. These cookies cannot be disabled as they are essential for the service to function.

Analytics Cookies

We use analytics tools to understand how users interact with our service. This includes Google Analytics and similar services. You can opt out of analytics tracking through your browser settings or privacy extensions.

Cookie Management

Most web browsers automatically accept cookies, but you can modify your browser settings to decline cookies. However, this may prevent you from taking full advantage of our services.

8. Children's Privacy

Age Requirement

ZeroTask is not intended for use by individuals under 18 years of age. We do not knowingly collect personal information from children. If we discover we have collected data from a child, we will delete it immediately.

9. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of any material changes by:

  • Posting the updated policy on our website with a new "Last Updated" date
  • Sending an email notification to the address associated with your account
  • Displaying a prominent notice on our platform for 30 days after the change

Your continued use of our Services after such modifications constitutes your acknowledgment and acceptance of the updated Privacy Policy. We encourage you to review this policy periodically.

10. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: privacy@zerotask.io

Data Protection Officer: dpo@zerotask.io

Mail: ZeroTask, Inc.
Attn: Privacy Team
123 Automation Ave, Suite 400
San Francisco, CA 94105
United States

For EU residents: You have the right to lodge a complaint with your local data protection authority if you believe we have not adequately addressed your concerns.