Legal
Privacy Policy
Last updated April 22, 2025.
Overview
Entilla processes data to provide a knowledge graph and agent runtime to our customers. This policy explains what we collect, how we use it, and the choices you have.
Data we process
- Customer Data — data your team and integrations submit (messages, documents, tickets, events).
- Account data — name, work email, role, and authentication metadata.
- Usage data — service logs, performance metrics, and diagnostic events.
How we use data
- To operate, secure, and improve the Service.
- To provide support and respond to requests.
- To meet legal obligations.
What we don't do
- We don't sell personal data.
- We don't train foundation models on Customer Data.
- We don't share Customer Data with third parties except sub-processors listed in our DPA.
Security
Entilla is SOC 2 Type II and ISO 27001 certified. Customer Data is encrypted in transit (TLS 1.3) and at rest (AES-256). Customer-managed keys are available on the Enterprise plan.
Your rights
You may access, correct, export, or delete personal data we process about you by contacting privacy@entilla.com. Customers are the data controllers for the data they submit through the Service.
Data residency
Enterprise customers can choose US, EU, or APAC residency. Default residency is US.
Contact
Privacy questions: privacy@entilla.com.