Legal

Privacy Policy

This policy explains how Amplytic collects, uses, stores, retains, deletes, and protects data for the Amplytic website, service, newsletter, and Amplytic Microsoft Teams app.

1. Scope

This Privacy Policy applies to Amplytic Ltd, the public website at https://www.amplytic.co, the Amplytic service, the Amplytic newsletter, and the Amplytic Microsoft Teams app. The Microsoft Teams app is an access surface for Amplytic inside Microsoft Teams.

2. Who we are and how to contact us

  • Company: Amplytic Ltd
  • Address: 2nd Floor College House, 17 King Edwards Road, Ruislip, London, United Kingdom, HA4 7AE
  • Email: hello@amplytic.co

For most website, newsletter, and direct customer interactions, Amplytic acts as the data controller. Where Amplytic processes data on behalf of an organisation using the Amplytic service or Microsoft Teams app under a separate customer agreement, Amplytic may act as a data processor for that organisation.

3. Data we collect

The data Amplytic collects depends on how you use the website, service, newsletter, or Microsoft Teams app.

  • Account and organisation data: name, business email address, role or title if provided, company name, Microsoft tenant or organisation identifiers, Microsoft Teams user identifiers, team, channel, chat, or meeting identifiers, and app installation or consent status.
  • Service content: prompts, commands, messages, files, links, renewable energy asset data, project details, portfolio context, and other information that users or customer administrators choose to submit to Amplytic.
  • Usage and technical data: feature usage, dates and times of access, IP address, browser or device type, Microsoft Teams client information, diagnostic logs, error reports, and security event records.
  • Support and contact data: support requests, email messages, screenshots, issue descriptions, and related correspondence.
  • Newsletter and signup data: name, email address, company name, selected market regions, consent records, and unsubscribe preferences.
  • Commercial and admin data: procurement details, billing contacts, contract records, and customer administrator details where applicable.

4. How we use data

  • Provide, operate, secure, and improve the Amplytic service.
  • Authenticate users and enable access through Microsoft Teams and other approved access surfaces.
  • Generate responses, analyses, summaries, workflows, and other service outputs requested by users.
  • Administer customer workspaces, app installations, permissions, support requests, and service communications.
  • Monitor reliability, prevent misuse, investigate security events, and comply with legal obligations.
  • Send newsletters, product updates, and marketing communications where permitted by consent or applicable law.

Amplytic does not sell personal data. Amplytic does not use customer service content submitted through the Microsoft Teams app to train general purpose AI models unless a customer gives explicit written permission.

5. Lawful basis

  • Contract: to provide the Amplytic service and Microsoft Teams app requested by a customer or user.
  • Legitimate interests: to secure, maintain, improve, and support Amplytic.
  • Consent: for newsletter subscriptions and optional marketing where consent is required.
  • Legal obligation: to meet tax, accounting, regulatory, security, and compliance duties.

6. Microsoft Teams and service providers

When you use the Amplytic Microsoft Teams app, Microsoft may process Microsoft Teams, Microsoft Entra ID, tenant, app installation, and message routing data under the relevant Microsoft agreements and privacy terms. Amplytic receives the data made available through Microsoft permissions, APIs, bot messages, app installation events, and user actions needed to provide the Amplytic service.

Amplytic may use trusted service providers for hosting, databases, email delivery, analytics, logging, security, customer support, and AI model processing. These providers process data under contractual protections and only for authorised purposes. Data may be processed in the United Kingdom, the European Economic Area, the United States, or other locations where our providers operate. Where required, Amplytic uses appropriate safeguards such as standard contractual clauses.

7. Storage, retention, and deletion

Customer and user data is stored in cloud services and operational systems used by Amplytic and its contracted providers, with access limited to authorised personnel and systems that need it to provide, secure, and support the service.

  • Account, organisation, and customer administrator records are kept while the account or customer relationship is active and then as needed for legal, accounting, security, or dispute resolution purposes.
  • Microsoft Teams app service content is retained according to the applicable customer agreement. If no separate retention period is agreed, active workspace content is retained while the service is in use and is deleted or anonymised within 30 days after a verified deletion request, uninstall, or contract end, unless retention is legally required.
  • Operational, diagnostic, and security logs are normally retained for up to 12 months unless longer retention is needed to investigate an incident, comply with law, or enforce agreements.
  • Support correspondence is normally retained for up to 24 months.
  • Newsletter data is retained until you unsubscribe or ask us to delete it. We may keep a limited suppression record to honour opt-out requests.
  • Contract, tax, and accounting records may be retained for up to seven years or longer if required by law.

To request deletion, export, correction, or restriction of personal data, email hello@amplytic.co. Amplytic will verify the request before acting. Deleted data is removed from active systems and then expires from backups according to the normal backup lifecycle.

8. How we protect data

Amplytic uses technical and organisational safeguards designed to protect data, including encryption in transit, controlled access, least-privilege permissions, secure cloud infrastructure, monitoring, backup controls, and vendor due diligence. No internet service can be guaranteed to be perfectly secure, but Amplytic works to reduce risk and respond promptly to security issues.

Data is protected through role-based access, monitoring, secure development practices, and vendor review processes appropriate to the sensitivity of the information and the Amplytic Microsoft Teams app workflow.

9. Your rights

Depending on your location and relationship with Amplytic, you may have rights to access, correct, delete, restrict, object to processing, transfer, or withdraw consent for your personal data. You can exercise these rights by emailing hello@amplytic.co. If your data is processed on behalf of your employer or organisation, Amplytic may direct the request to that organisation.

You may also have the right to complain to a data protection authority, including the UK Information Commissioner Office.

10. Children

Amplytic is intended for business users and is not directed to children under 13. Amplytic does not knowingly collect personal data from children.

11. Changes

Amplytic may update this Privacy Policy from time to time. Material changes will be posted on this page or communicated through reasonable service channels.

Last updated: 2 October 2026