How we collect, use, and protect your personal data
HiFi WP is committed to protecting your privacy and personal data. This policy explains how we collect, use, store, and protect your information in compliance with GDPR, CCPA, PIPEDA, LGPD, PDPA, and other applicable privacy laws.
You have the right to access, correct, delete, and control how your personal data is used. You can exercise these rights through your account settings or by contacting us directly.
Legal Basis: Legitimate Interest (Article 6(1)(f) GDPR)
We process your data to provide our AI-powered platform services, including content generation, automation, and technical support.
Legal Basis: Contract Performance (Article 6(1)(b) GDPR)
We process billing information and usage data to fulfill our contractual obligations and manage subscriptions.
Legal Basis: Legitimate Interest (Article 6(1)(f) GDPR)
We process technical data and usage patterns to protect our service and prevent abuse or fraudulent activity.
Legal Basis: Consent (Article 6(1)(a) GDPR)
We only send marketing communications with your explicit opt-in consent, which you can withdraw at any time.
Retention: Until account deletion + 30 days
Includes profile information, preferences, and settings.
Retention: 2 years or until deletion request
AI conversations and generated content for service improvement.
Retention: 7 years (legal requirement)
Transaction records, invoices, and payment information.
Retention: 1 year
Access logs, security events, and audit trails.
Request a copy of all personal data we hold about you, including how it's used and who it's shared with.
Update or correct any inaccurate or incomplete personal information in your account.
Request deletion of your account and associated personal data (right to be forgotten).
Export your data in a structured, machine-readable format to transfer to another service.
Object to certain types of data processing, particularly for marketing purposes.
Withdraw consent for data processing where consent is the legal basis.
You can exercise these rights through your profile's "Privacy Rights" section or by contacting us at ⏳ Loading... . We will respond within 30 days.
Your data may be processed in countries outside your jurisdiction, including the United States and European Union. We ensure adequate protection through:
OpenAI, Anthropic
Content generation and AI processing. Data processed according to their privacy policies with appropriate safeguards.
Firebase Auth
User authentication and account management. Google's privacy policy applies to authentication data.
Stripe
Secure payment processing. Stripe's privacy policy governs payment and billing data.
The official HiFiBots AI Agents plugin connects your self-hosted WordPress site to your HiFi WP account. It is designed to be private by default:
Data is transmitted to HiFi-WP / HiFiBots services (the API at wordpressgpt-api-325927718367.us-central1.run.app and the web app at wp.hifibots.com) only for the features you enable:
If you enable visitor-facing features (onsite chatbot, offsite AI agent, CTA forms, or outbound click analytics), you act as the data controller for your visitors' data. You are responsible for maintaining your own privacy notice and obtaining any consent required in your jurisdiction before those features process visitor data.
Required for basic functionality including authentication, security, and service delivery. These cannot be disabled.
Help us understand how you use our service to improve performance and user experience. You can opt-out through cookie settings.
Set only with your consent when we run advertising campaigns (Meta Pixel, Microsoft Advertising). Used to measure ad performance and may share data with those platforms. Opt out any time via cookie settings or the "Do Not Sell or Share My Personal Information" link in the footer.
For California residents: the table below lists the categories of personal information (as defined by the California Consumer Privacy Act) we have collected in the preceding 12 months, with examples and the categories of recipients. We do not sell personal information for money. If you enable Advertising cookies, identifiers and internet activity may be shared with advertising partners for cross-context behavioral advertising — you can opt out at any time via the "Do Not Sell or Share My Personal Information" link in the footer, the cookie settings panel, or a Global Privacy Control (GPC) browser signal, which we honor.
| Category | Examples we collect | Disclosed to |
|---|---|---|
| Identifiers | Name, email address, account ID, IP address | Service providers (hosting, authentication); advertising partners only with Advertising-cookie consent |
| Customer records | Billing details processed by our payment processor (we never store full card numbers) | Payment processor (Stripe) |
| Commercial information | Subscription plan, purchase and usage history | Service providers (billing, analytics) |
| Internet / network activity | Pages visited, feature usage, interactions with our AI agents | Analytics provider (Google Analytics, consent-gated); advertising partners only with Advertising-cookie consent |
| Coarse geolocation | Country/region derived from IP address, used for privacy-law compliance | Not disclosed |
| Professional information | Organization name, connected WordPress site URLs | Service providers (hosting) |
| Inferences | Product-usage patterns used to improve the service | Not disclosed |
We collect this information directly from you (account signup, service use, support requests) and automatically through the service (usage logs and cookies you have consented to). We use it to deliver and secure the service, process billing, provide support, measure and improve the product, and — only with your Advertising-cookie consent — measure ad campaigns. Retention periods per data type are listed in the Data Retention section above. We do not knowingly collect or share personal information of consumers under 16 years of age, and we do not use or disclose sensitive personal information for purposes that would require a right to limit under the CPRA.
Full compliance with the General Data Protection Regulation, including all rights and protections for EU residents.
California Consumer Privacy Act compliance, including rights to know, delete, and opt-out of data sales.
Personal Information Protection and Electronic Documents Act compliance for Canadian users.
Lei Geral de Proteção de Dados compliance for Brazilian users with equivalent rights and protections.
This privacy policy may be updated periodically to reflect changes in our practices or legal requirements. We will:
Continued use of our service after policy updates constitutes acceptance of the new terms.
HiFi WP support team is ready to help you succeed. Whether you need technical assistance, have billing questions, or want to explore partnership opportunities, we're here for you.
Email: arvind@augmentable.ai
Response Time: Within 4 hours (30 minutes for emergencies)
Available: 24/7 for critical issues
For technical issues, integration problems, API questions, platform troubleshooting, emergency outages, privacy concerns, legal matters, and compliance questions. For critical system issues, include [EMERGENCY] in your subject line.
Email: arvind@augmentable.ai
Response Time: Within 24 hours
Available: Monday-Friday, 9 AM - 6 PM EST
For subscription questions, payment issues, refunds, billing inquiries, dispute resolution, and Stripe payment support. We currently accept credit/debit cards via Stripe only.
Email: arvind@augmentable.ai
Response Time: Within 48 hours
Available: Monday-Friday, 9 AM - 5 PM EST
For partnership discussions, enterprise engagements, integrations, marketing collaborations, and other business-related opportunities.