← Back to HomeLast Updated: July 11, 2026

Privacy Policy

This Privacy Policy explains how Velvia Ops ("we," "our," or "us") collects, uses, discloses, and protects your personal information in compliance with the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA/CPRA).

1. Scope and Applicability

This Privacy Policy applies to all users of the Velvia Ops website, SaaS platform, and services. For the purposes of the GDPR, Velvia Ops acts as both a Data Controller (for our registered users' account data) and a Data Processor (for the personal data processed by your custom chatbots).

2. Personal Information Collected

We collect the following categories of personal information when you use our platform:

Statutory Category (§ 1798.140)ExamplesSource
IdentifiersName, email, IP address, account IDProvided during account registration or automatically collected
Commercial InformationBilling history, subscription plans, transactionsDirectly through our payment processor (Stripe)
Internet & Network ActivityBrowser type, page views, clickstream dataAutomatically collected via browser cookies and analytics systems
Professional/EmploymentJob title, company nameProvided directly during onboarding

* Note: We do not collect Sensitive Personal Information (SPI) per § 1798.121 or knowingly collect data from consumers under 16 years of age.

3. Use of Personal Information

We process personal information for the following business and commercial purposes:

  • Fulfillment: Delivering, maintaining, and improving our SaaS chatbot platform.
  • Customer Support: Addressing technical requests, billing issues, and user queries.
  • Safety & Security: Preventing fraud, protecting our systems against malicious activity, and enforcing policies.
  • Legal Compliance: Meeting statutory reporting and regulatory audit obligations.

4. Third-Party Sharing

We disclose personal information to trusted service providers, partners, and systems strictly for business purposes:

  • Hosting & DB: InsForge platform hosts our database and servers.
  • AI Models: Chatbot prompts are processed anonymously via OpenRouter API.
  • Payments: Payment processing is handled securely by Stripe. We do not store card details.

Do Not Sell or Share Statement: Velvia Ops does not sell, lease, or rent your personal information to third parties, nor do we share it for cross-context behavioral advertising.

5. GDPR Rights (EU Residents)

If you are in the European Economic Area (EEA), you possess the following rights under the GDPR:

  • Right of Access: Request a copy of all personal data held about you.
  • Right to Rectification: Request correction of inaccurate or incomplete data.
  • Right to Erasure (Forget): Request deletion of your account and associated personal data.
  • Right to Portability: Obtain your data in a structured, machine-readable format.
  • Right to Object: Object to processing based on legitimate business interests.

6. CCPA/CPRA Rights (California Residents)

If you are a resident of California, you possess the following rights under Cal. Civil Code §§ 1798.100–1798.199:

  • Right to Know: Disclose what categories and specific pieces of personal information we collect.
  • Right to Delete: Request deletion of collected personal information.
  • Right to Correct: Correct inaccurate personal information.
  • Right to Non-Discrimination: We will not deny service, alter prices, or lower service quality for exercising rights.

7. Request Channels and Timelines

To exercise any of your privacy rights (GDPR/CCPA), submit a verified request through either of the following channels:

  • Email: [email protected]
  • Mailing Address: Velvia Ops Corp, Attn: Privacy Office, 100 Pine Street, San Francisco, CA 94111

We acknowledge requests within 10 business days and respond fully within 45 days (for CCPA) or 30 days (for GDPR).

© 2026 Velvia Ops Corp. All rights reserved.