Privacy Policy

Effective Date: 10-July-2025
Last Updated: 14-July-2025

1. Introduction

Welcome to Barney AI ("we," "us," or "our"), an AI-powered conference networking agent. This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our services.

Barney AI is designed to facilitate meaningful professional connections at conferences through AI-powered introductions and networking assistance.

2. Information We Collect

2.1 Information You Provide Directly

  • Contact Information: Name, email address, phone number
  • Professional Information: Company details, job title, LinkedIn profile information
  • Conference Goals: Your networking objectives, target attendee criteria, and meeting preferences
  • Voice Data: Recordings of phone calls with our AI agent for service delivery and improvement
  • Communication Data: Messages, emails, and other communications with Barney AI

2.2 Information We Collect from Third-Party Sources

Conference and Event Data

  • Attendee Lists: When you're an exhibitor or when event organizers provide access
  • Event App Data: Information from official conference networking applications
  • Social Media Data: Public posts, hashtags, and attendee signals from LinkedIn, Twitter/X, and other platforms related to conferences
  • Public Professional Profiles: LinkedIn profile information and other publicly available professional data

Third-Party Enrichment

  • Data Enhancement Services: Professional information from business databases and lead enrichment providers
  • Social Network Analysis: Connection patterns and mutual professional relationships

2.3 Automatically Collected Information

  • Usage Data: How you interact with our service, features used, and engagement patterns
  • Technical Data: IP address, device information, browser type, and access times
  • Communication Metadata: Timestamps, delivery status, and response patterns for our outreach

3. Legal Basis for Processing (GDPR)

We process your personal data based on the following legal grounds:

  • Consent (Article 6(1)(a)): For marketing communications and optional data processing
  • Contract Performance (Article 6(1)(b)): To provide our introduction and networking services
  • Legitimate Interests (Article 6(1)(f)): For service improvement, security, and business operations
  • Legal Obligation (Article 6(1)(c)): To comply with applicable laws and regulations

4. How We Use Your Information

4.1 Service Delivery

  • Facilitate warm, double opt-in introductions between conference attendees
  • Generate personalized one-page introduction summaries
  • Match you with relevant contacts based on your networking goals
  • Conduct AI-powered phone calls to understand your objectives

4.2 Marketing and Communications

  • Send event-related notifications and networking opportunities
  • Share conference insights and networking tips
  • Provide updates about new features and services
  • Deliver personalized recommendations for upcoming events

4.3 Service Improvement

  • Analyze interaction patterns to improve matching algorithms
  • Train and improve our AI models (using anonymized data only)
  • Conduct research on networking effectiveness and conference ROI
  • Monitor service quality and user satisfaction

4.4 Business Operations

  • Process payments for premium services and introductions
  • Manage revenue-sharing arrangements with event organizers
  • Ensure platform security and prevent fraud
  • Comply with legal obligations and respond to legal requests

5. Information Sharing and Disclosure

5.1 Facilitated Introductions

  • Contact Information: Email addresses and phone number shared only after both parties explicitly opt-in to connect
  • Professional Profiles: LinkedIn and professional information shared with potential matches for introduction purposes
  • Introduction Context: Relevant conference details, shared interests, and networking rationale

5.2 Business Partners

Event Organizers and Conference Partners

  • Aggregate attendance and networking metrics
  • Success rates and introduction statistics for revenue-sharing purposes
  • User feedback and testimonials (with explicit consent)

Exhibitor Partners

  • Lead engagement metrics and introduction outcomes
  • ROI analytics for booth and conference investments
  • Contact information only for users who explicitly consent to exhibitor outreach

5.3 Third-Party Service Providers

  • AI Processing: OpenAI, Anthropic, and other AI providers for natural language processing
  • Data Enrichment: Professional data providers for contact and company information
  • Communication Services: Email, SMS, and messaging platforms for service delivery
  • Analytics: Services for understanding user behavior and service performance
  • Payment Processing: Secure payment processors for subscription and per-intro fees

5.4 Legal and Security

  • Legal Compliance: When required by law, regulation, or legal process
  • Safety and Security: To protect our users, service integrity, and prevent fraud
  • Business Transfers: In connection with mergers, acquisitions, or asset sales

5.5 Advertising and Marketing Partners

  • Custom Audiences: Email addresses with Meta and other advertising platforms
  • Conversion Tracking: Campaign effectiveness measurement and attribution
  • Retargeting: Showing relevant ads to users who have interacted with our service

6. International Data Transfers

We may transfer your personal data internationally, including to the United States and other countries where our service providers operate. We ensure adequate protection through:

  • Standard Contractual Clauses: EU-approved data transfer mechanisms
  • Adequacy Decisions: Transfers to countries with adequate data protection levels
  • Privacy Shield Successors: Appropriate frameworks for US transfers
  • Binding Corporate Rules: Internal policies ensuring consistent data protection

7. Data Retention

7.1 General Retention Periods

  • User Account Data: Retained for 2 years after last interaction
  • Communication Records: Retained for 1 year for service improvement
  • Introduction History: Retained for 3 years for analytics and legal compliance
  • Voice Recordings: Retained for 6 months unless consent is withdrawn earlier

7.2 Legal and Business Requirements

  • Financial Records: Retained for 7 years for tax and accounting purposes
  • Legal Obligations: As required by applicable laws and regulations
  • Dispute Resolution: Until resolution of any related legal matters

7.3 Data Minimization

We regularly review and delete data that is no longer necessary for our stated purposes.

8. Data Security

8.1 Technical Safeguards

  • Encryption: End-to-end encryption for data transmission and at-rest encryption for storage
  • Access Controls: Multi-factor authentication and role-based access limitations
  • Network Security: Firewalls, intrusion detection, and secure communication protocols
  • Regular Audits: Third-party security assessments and penetration testing

8.2 Organizational Measures

  • Employee Training: Regular privacy and security training for all team members
  • Data Handling Policies: Strict internal procedures for accessing and processing user data
  • Incident Response: Comprehensive breach response and notification procedures
  • Vendor Management: Security requirements for all third-party service providers

9. Your Privacy Rights

9.1 Correction and Deletion

  • Right to Erasure: Request deletion of your personal data (subject to legal obligations)
  • Account Deletion: Complete removal from our platform and systems

9.2 Communication Preferences

  • Email Unsubscribe: Opt-out using unsubscribe links in marketing emails
  • SMS Opt-Out: Reply "STOP" to text messages to cease SMS communications
  • Introduction Controls: Modify or pause your availability for new introductions

10. California Privacy Rights (CCPA/CPRA)

California residents have additional rights under the California Consumer Privacy Act:

10.1 Categories of Personal Information

We collect and process the following categories of personal information:

  • Identifiers: Names, email addresses, phone numbers
  • Professional Information: Job titles, company details, LinkedIn profiles
  • Commercial Information: Service usage, transaction history
  • Internet Activity: Website interactions, communication patterns
  • Audio Information: Voice recordings from AI phone calls

10.2 Business Purposes

We use personal information for the business purposes described in Section 4 of this policy.

10.3 Third-Party Sharing

We share personal information with the categories of third parties described in Section 5.

10.4 California Consumer Rights

  • Right to Know: What personal information we collect, use, and share
  • Right to Delete: Request deletion of personal information
  • Right to Opt-Out: Opt-out of the sale or sharing of personal information
  • Right to Non-Discrimination: Equal service regardless of privacy choices

We do not "sell" personal information as traditionally defined, but we may "share" information for advertising purposes under CCPA definitions.

11. Children's Privacy

Our service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If we become aware that we have collected information from a child under 18, we will delete it promptly.

12. Cookies and Tracking Technologies

12.1 Types of Cookies

  • Essential Cookies: Required for basic service functionality
  • Analytics Cookies: Help us understand service usage and performance
  • Marketing Cookies: Enable targeted advertising and campaign measurement
  • Preference Cookies: Remember your settings and preferences

12.2 Third-Party Tracking

  • Social Media Pixels: Facebook Pixel, LinkedIn Insight Tag, Twitter conversion tracking
  • Analytics Services: Google Analytics, Mixpanel, and similar services
  • Communication Tracking: Email open rates, click-through rates, and engagement metrics

12.3 Your Choices

You can control cookies through your browser settings and opt-out of targeted advertising through platform-specific controls.

13. Updates to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes through:

  • Email Notification: Direct communication to your registered email address
  • Service Notifications: In-app or platform notifications
  • Website Notice: Prominent notice on our website
  • Call Disclosure: Notification during your next AI phone call

Continued use of our service after notice of changes constitutes acceptance of the updated policy.

14. Contact Information

14.1 General Privacy Inquiries

Email: privacy@meetbarney.ai

14.2 Data Protection Officer

Email: dpo@meetbarney.ai

14.3 EU Representative (if applicable)

Company: [EU REPRESENTATIVE NAME]
Address: [EU ADDRESS]
Email: [EU REPRESENTATIVE EMAIL]

14.4 Exercising Your Rights

To exercise any privacy rights or submit requests:

  • Email: privacy@meetbarney.ai with "Privacy Request" in the subject line
  • Include: Full name, email address, and specific request details
  • Response Time: We will respond within 30 days (45 days for complex requests)

This Privacy Policy is designed to be transparent about our data practices. If you have questions or concerns, please don't hesitate to contact us.