Legal
Privacy Policy
Enterprise-grade data stewardship aligned with global privacy mandates and operational transparency.
Data Collection & Enterprise Usage
obay.app collects only the business-critical data required to provision software services, secure enterprise operations, and maintain contractual delivery quality.
Collected data may include contact identity records, authenticated platform activity logs, integration metadata, and deployment telemetry required for performance, security, and incident recovery.
No data is sold for advertising purposes. All processing is limited to product delivery, legal obligations, service continuity, and authorized enterprise support workflows.
GDPR Compliance & Data Minimization
Our data governance model follows GDPR principles of lawfulness, purpose limitation, storage limitation, and technical safeguards across all managed environments.
Data minimization is enforced by default: we only retain fields strictly necessary for contractual fulfillment, security operations, and compliance verification.
Customers may request access, correction, export, or deletion pathways subject to legal retention obligations and active service commitments.
CPRA Universal Opt-Out
obay.app honors CPRA rights frameworks, including requests related to data access, deletion, correction, and opt-out workflows where applicable.
The control below is a structured placeholder for enterprise-specific 'Do Not Sell or Share My Personal Information' handling and downstream preference orchestration.