Butler_
01 Memory 02 Modules 03 Execution Terms
JOIN BETA
← Return to Butler DATA GOVERNANCE & PRIVACY

Privacy Policy

Data Controller: Sevorse
Application: Butler AI
Effective Date: September 23, 2026
Framework: DPDP Act 2023 & Global Privacy Norms
ZERO DATA SELLING COMMITMENT: Sevorse ("we", "us", or "our") builds Butler to execute commercial workflows using contextual memory. We respect your enterprise privacy, implement rigorous encryption, and never sell, rent, monetize, or broker your personal information or proprietary business data to third-party advertising networks or data brokers.
01

Information We Collect

When you register for early access, interact with Butler, or integrate external channels, we collect the following categories of information:

  • Identity & Account Data: Name, work email address, company name, billing information, and contact credentials submitted via our waitlist or registration forms.
  • Business Context & Memory Profile: Brand guidelines, target audience profiles, campaign goals, commercial context, past outputs, and feedback loops that you upload or confirm. This data forms Butler's unified memory engine to prevent repetitive prompting.
  • Integration Tokens & Channel Credentials: Encrypted API tokens, OAuth tokens, and webhook secrets provided by you to authorize Butler to connect with third-party channels (e.g., WhatsApp Business API, LinkedIn, X, Meta Pages, Google Analytics).
  • Execution Telemetry & Usage Logs: System interaction logs, command timestamps, IP addresses, browser type, referral URLs, latency metrics, and error traces necessary to maintain uptime and diagnose failures.
02

How We Use Your Data

Sevorse processes your information strictly for legitimate commercial and operational purposes, including:

  • Operating, maintaining, and executing Butler's modular capabilities according to your instructions;
  • Preserving your organization's context memory so Butler recalls business facts across multi-day workflows;
  • Executing scheduled publications, marketing campaigns, and external API requests on your behalf;
  • Authenticating user sessions and safeguarding account security;
  • Sending critical transactional notifications, early access status updates, and security alerts;
  • Detecting, preventing, and mitigating fraudulent, abusive, or unauthorized activities that violate our Terms of Service.
03

AI Model Processing & Third-Party LLM Infrastructure

Butler leverages enterprise-grade foundation models and large language model (LLM) APIs (such as Anthropic Claude, Google Cloud Vertex AI, and OpenAI) to analyze context, synthesize research, and orchestrate execution.

DATA CONFIDENTIALITY WITH AI PROVIDERS: WE ACCESS LLM INFRASTRUCTURE VIA ENTERPRISE COMMERCIAL APIS SUBJECT TO STRICT CONFIDENTIALITY OBLIGATIONS. PURSUANT TO OUR ENTERPRISE SERVICE AGREEMENTS, YOUR PROPRIETARY INPUTS AND CONTEXT DATA ARE NOT USED BY THIRD-PARTY FOUNDATION MODEL PROVIDERS TO TRAIN PUBLIC AI MODELS WITHOUT YOUR PERMISSION.

User Caution: You agree not to submit sensitive personally identifiable information (PII), unauthorized third-party personal data, classified state secrets, or critical financial credentials into general prompt text. You represent that you possess all legal rights and consents for any data you introduce into Butler.

04

Third-Party Platforms & Data Processing Roles (Controller vs. Processor)

When Butler publishes content or executes messaging on third-party channels (e.g. WhatsApp, social networks):

  • Role Designation: Regarding end-customer data (e.g., recipients of your WhatsApp messages or social followers), you act as the primary Data Controller / Data Fiduciary. Sevorse acts strictly as a technical Data Processor executing software workflows under your direction.
  • Compliance Responsibility: You are solely responsible for obtaining all necessary prior consents, opt-ins, and clearances required under applicable privacy and anti-spam laws before communicating with third parties through Butler.
  • Platform Privacy Policies: Data transmitted to third-party platforms is subject to their respective privacy policies (e.g., Meta Privacy Policy, WhatsApp Privacy Policy). Sevorse exercises no control over third-party platform data handling.
05

Authorized Sub-processors

To provide high-availability autonomous execution, Sevorse partners with vetted, enterprise-grade third-party sub-processors who adhere to strict data security standards:

  • Cloud Infrastructure & Hosting: AWS / Google Cloud Platform (Encrypted server hosting, relational databases, and isolated compute environments).
  • AI Inference APIs: Anthropic, OpenAI, and Google Cloud Vertex AI (Ephemeral enterprise inference with zero training on customer data).
  • Messaging & Delivery: WhatsApp Business API / Meta Graph API (Direct API transmission for commercial messaging).
  • Transactional Email: Enterprise SMTP delivery infrastructure for service notifications and waitlist verification.
06

Data Storage, Encryption & Security Safeguards

We implement industry-standard technical, operational, and organizational security measures to protect your information against unauthorized access, loss, alteration, or disclosure:

  • Encryption in Transit: All communications between your browser, our servers, and external APIs are secured using Transport Layer Security (TLS 1.3 / HTTPS).
  • Encryption at Rest: Sensitive access tokens, API credentials, and database records are stored using AES-256 encryption.
  • Access Governance: Internal access to user databases is restricted to authorized personnel under strict non-disclosure obligations on a need-to-know basis.
SECURITY DISCLAIMER & LIMITATION OF LIABILITY: WHILE WE EMPLOY INDUSTRY-STANDARD SAFEGUARDS, NO METHOD OF ELECTRONIC TRANSMISSION OR CLOUD STORAGE IS 100% IMPERVIOUS. SEVORSE, ITS FOUNDERS, AND AFFILIATES SHALL NOT BE HELD LIABLE FOR UNAUTHORIZED INTERCEPTION, THIRD-PARTY HACKING, MALICIOUS ZERO-DAY ATTACKS, OR SECURITY BREACHES RESULTING FROM CAUSES BEYOND OUR REASONABLE COMMERCIAL CONTROL.
07

Your Data Rights (DPDP Act 2023, GDPR, CCPA)

Depending on your jurisdiction, you possess clear statutory rights regarding the personal and commercial data processed by Butler:

  • Right to Access & Review: You can inspect and verify the memory profiles and account data stored for your organization.
  • Right to Rectification: You can update, correct, or refine outdated context memory facts at any time.
  • Right to Data Portability: You can request an export of your stored memory profiles and operational assets in standard structured format (JSON/CSV).
  • Right to Erasure ("Right to be Forgotten"): You have the right to request the permanent deletion and erasure of your account, context profiles, and associated API tokens by emailing privacy@sevorse.com. Upon verification, data will be purged from our active systems within 30 days.
  • Right to Withdraw Consent: Where processing is based on consent, you may withdraw your consent at any time without affecting the lawfulness of prior processing.
08

Data Deletion Instructions

If you wish to delete your account, contextual memory data, and associated personal information from Butler AI, you can execute the deletion directly from your account dashboard by following these steps:

DATA DELETION INSTRUCTION:
Profile > Settings > Account > Delete Account

Upon confirming account deletion through this path:

  • Data Purge: Your user profile, contextual memory, uploaded guidelines, API integration keys, and historical interaction logs will be permanently deleted and purged from our active databases.
  • Connected Channels: All active sessions and authorization tokens connected to third-party services will be immediately invalidated and disconnected.
  • Assisted Request: If you are unable to access your account or wish to request manual data erasure, you may submit a request by contacting our data governance team at privacy@sevorse.com. Upon identity verification, your data will be permanently purged within 30 days.
09

Cookies & Tracking Technologies

Butler uses strictly necessary session cookies and security tokens (e.g. CSRF verification tokens) required to authenticate sessions and protect form submissions. We do not sell tracking profiles to advertising brokers or deploy intrusive third-party behavioral profiling cookies across unrelated websites.

10

International Data Transfers & Legal Compliance

Sevorse is headquartered in Bengaluru, Karnataka, India. Our servers and service providers may operate in India, the United States, and other cloud regions. By accessing Butler, you consent to the transfer, storage, and processing of your data across international jurisdictions in accordance with this Privacy Policy, the Digital Personal Data Protection Act, 2023 (India), and international data protection norms.

11

Privacy Officer & Contact Information

For privacy inquiries, data deletion requests, or regulatory questions regarding Butler AI, please reach our data governance team:

Privacy Officer: privacy@sevorse.com
General Legal: legal@sevorse.com
Entity: Sevorse, Bengaluru, Karnataka, India
BUTLER

A modular AI agent that plans and executes work.

Built by Sevorse
Navigation System Execution Business Module Pricing
Company Sevorse About Contact
Legal & Social Privacy Policy Terms of Service
X / LinkedIn / Instagram

© 2026 Sevorse. All rights reserved.