Privacy Policy
Effective Date: April 3, 2026
Introduction and Organizational Information
We, at Omnim Inc., are dedicated to serving our customers and contacts to the best of our abilities. Part of our commitment involves the responsible management of personal information collected through our website omnim.ai, and any related interactions. Our primary goals in processing this information include:
- Enhancing the user experience on our platform by understanding customer needs and preferences.
- Providing timely support and responding to inquiries or service requests.
- Improving our products and services to meet the evolving demands of our users.
- Conducting necessary business operations, such as billing and account management.
It is our policy to process personal information with the utmost respect for privacy and security. We adhere to all relevant regulations and guidelines to ensure that the data we handle is protected against unauthorized access, disclosure, alteration, and destruction. Our practices are designed to safeguard the confidentiality and integrity of your personal information, while enabling us to deliver the services you trust us with.
We do not have a designated Data Protection Officer (DPO) but remain fully committed to addressing your privacy concerns. Should you have any questions or require further information about how we manage personal information, please feel free to contact us at hello@omnim.ai.
Your privacy is our priority. We are committed to processing your personal information transparently and with your safety in mind. This commitment extends to our collaboration with third-party services that may process personal information on our behalf, such as in the case of sending invoices. Rest assured, all activities are conducted in strict compliance with applicable privacy laws.
Scope and Application
Our privacy policy is designed to protect the personal information of all our stakeholders, including website visitors, registered users, customers, and prospective customers. Whether you are just browsing our website omnim.ai, submitting a form, signing in to Omnim, or connecting third-party services to our platform, we ensure that your personal data is processed with the highest standards of privacy and security. This policy outlines our practices and your rights related to personal information.
Legal Basis for Processing
Under the General Data Protection Regulation (GDPR), we process your personal information on the following legal bases:
- Consent (Art. 6(1)(a) GDPR): We rely on your explicit consent for sending direct marketing communications and for setting non-essential cookies and tracking technologies. You may withdraw your consent at any time.
- Legitimate interest (Art. 6(1)(f) GDPR): We process data for our legitimate business interests, including improving our services, ensuring the security of our platform, and conducting analytics. Where we rely on legitimate interest, we have assessed that these interests are not overridden by your rights and freedoms.
- Contract performance (Art. 6(1)(b) GDPR): We process personal information as necessary to perform our contractual obligations to you, including account management, service delivery, and responding to your requests.
- Legal obligation (Art. 6(1)(c) GDPR): We may process your data where required to comply with applicable laws and regulations.
Data Storage and Protection
Data Storage
Personal information may be stored and processed in the United States and other countries where Omnim or our service providers operate. Our systems use third-party infrastructure for website hosting, edge functions, authentication, database services, analytics, CRM operations, and integrations. For services that require international data transfer, we ensure that such transfers comply with applicable laws and maintain appropriate data protection standards.
Data hosting and infrastructure partners: We work with reputable service providers selected based on their security practices, contractual commitments, and ability to support our operational and compliance requirements.
Data Protection Measures
- Encryption: To protect data during transfer and at rest, we employ robust encryption technologies.
- Access control: Access to personal information is strictly limited to authorized personnel who have a legitimate business need to access the data. We enforce strict access controls and regularly review permissions.
- Token protection: Authorization tokens for connected third-party services are stored using encrypted or otherwise protected storage mechanisms and are accessible only to systems and personnel with a legitimate operational need.
Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes described in this policy. Specifically:
- Lead and contact information: Retained for 24 months after your last interaction with us (e.g., form submission, email exchange, or website visit). After this period, your data is deleted or anonymized.
- Account information: Retained for the duration of your account and for 12 months after account closure, unless a longer period is required by law. This may include basic sign-in provider data, such as your email address and profile information, when you choose to sign in with Google or another supported provider.
- Connected integration metadata and authorization records: Retained while an integration remains active and for up to 12 months after disconnection or account closure, unless earlier deletion, deactivation, or a longer legal retention period applies.
- Analytics data: Retained in aggregated and anonymized form for up to 26 months, in accordance with our analytics provider defaults.
- Marketing consent records: Retained for as long as necessary to demonstrate compliance with applicable consent requirements.
Where a longer retention period is required or permitted by law (e.g., for tax, accounting, or legal purposes), we will retain the relevant data for the legally mandated period.
Data Sharing and Disclosure
At Omnim Inc., we are committed to safeguarding your personal information and ensuring it is treated with the utmost respect. This commitment extends to how we handle the sharing and disclosure of your data. Below we outline our practices in this area:
Third-Party Service Providers
We may share your information with third-party service providers who perform services on our behalf. Such trusted parties may have access to personally identifiable information on a need-to-know basis and will be contractually obliged to keep your information confidential.
| Service | Provider | Purpose(s) | Collected Data Types | Privacy Policy |
|---|---|---|---|---|
| HubSpot CRM | HubSpot, Inc. | Lead capture, contact management, and sales follow-up | Email address, name, company name, message content, lead source metadata, page URL, CTA source, and lead status metadata | View |
| Cloudflare | Cloudflare, Inc. | Website hosting, edge runtime, security, and waitlist form handling | IP address, request headers, request logs, page URLs, waitlist submissions, and related request metadata | View |
| Supabase | Supabase, Inc. | Authentication, account management, database, and session management | Email address, account identifiers, profile data, session and authentication data, and related application records | View |
| Google Identity and Google APIs | Google LLC / Google Ireland Limited | Google Sign-In, account authentication, and user-authorized Google integrations | Google account identifier, email address, basic profile data such as name and profile image, granted scopes, and connected Google service data that you authorize us to access | View |
| Google Analytics | Google Ireland Limited | Analytics and performance tracking | Device ID, IP address, operating system and version, browser fingerprint, IP-based approximate location, browser information and language, interaction logs (clicks, time on pages) | View |
| PostHog | PostHog, Inc. | Product analytics and funnel measurement | Pseudonymous analytics identifiers, page URLs and paths, referrer, CTA and form interaction events, experiment and campaign metadata, and qualified lead conversion events where consent has been granted | View |
| Google Tag Manager | Google Ireland Limited | Tag management | Aggregated data about tag firing | View |
| Google Fonts | Google Ireland Limited | Customizing user experience | IP address, browser fingerprint, interaction logs, browser information and language | View |
Data Processing Agreements
When we share your data with third-party service providers, we do so under the protection of Data Processing Agreements (DPAs) that ensure your information is managed in accordance with GDPR and other relevant data protection laws. These agreements mandate that third parties implement adequate technical and organizational measures to ensure the security of your data.
Transparency and Control
We believe in transparency and providing you with control over your personal information. You will always be informed about any significant changes to our sharing practices, and where applicable, you will have the option to consent to such changes.
When configured for operational routing or backup delivery, waitlist submissions may also be forwarded to a webhook endpoint we control or designate. Such payloads may include form submission data and related request metadata, such as IP address, referrer, user agent, page URL, CTA source, and submission timestamp.
Your trust is important to us, and we strive to ensure that your personal information is disclosed only in accordance with this policy and when there is a justified reason to do so. For any queries or concerns about how we share and disclose personal information, please reach out to us at hello@omnim.ai.
Google Sign-In and Google Integrations
Omnim supports Google Sign-In and optional Google integrations. When you sign in with Google, we may receive basic Google account data such as your Google account identifier, email address, name, and profile image. We use that information to authenticate you, create or link your Omnim account, maintain your session, display your profile in the product, secure access to the service, and provide customer support.
Optional Google Integrations
If you choose to connect additional Google services, we may access and process the Google data covered by the scopes you authorize. Depending on the integration you enable, this may include:
- Google Analytics: Analytics account and property information, campaign and traffic performance data, and related reporting metadata that you authorize us to read.
- Google Search Console: Search Console property information, search performance metrics, and related site or query data that you authorize us to read.
- Google Drive: File and folder metadata, account information, granted scopes, and document-related information for files you choose to connect or make available to Omnim, which may include previews, extracted structure, ownership metadata, or similar document context needed for user-facing product features.
How We Use and Protect Google User Data
- Purpose limitation: We use Google user data only to provide, secure, support, and improve the user-facing Omnim features that you enable.
- No sale or advertising use: We do not sell Google user data and do not use Google user data for targeted advertising.
- No training of general-purpose AI models: We do not use Google user data obtained through Google APIs to train general-purpose AI models.
- Restricted sharing: We share Google user data only with service providers and subprocessors that are necessary to operate Omnim, or where required by law, contract, or legitimate security needs.
- Retention and deletion: We retain Google account and integration data in accordance with the retention periods described in this policy. You may also revoke Omnim's access from your Google account settings and request deletion or disconnection by contacting us.
Artificial Intelligence and Automated Processing
Omnim is an AI-powered marketing platform. We want to be transparent about how artificial intelligence is used in connection with your data:
- Lead scoring and prioritization: We may use automated systems, including AI models, to analyze lead information (such as company details, job title, and engagement data) in order to assign a relevance score. This scoring is used to help our team prioritize outreach and does not produce legal or similarly significant effects on you.
- AI-assisted campaign execution: When you use our platform, AI agents may process data from connected marketing tools on your behalf to execute campaigns, generate content, and optimize performance.
- No solely automated decisions with legal effects: We do not make decisions that produce legal effects or similarly significant effects on you based solely on automated processing. A human is always involved in decisions that materially affect you.
- Your right to human review: Under Article 22 of the GDPR, you have the right to request human review of any automated decision that significantly affects you. To exercise this right, contact us at hello@omnim.ai.
We do not use your personal contact information or Google user data obtained through Google APIs to train general-purpose AI models. Data processed by AI systems is subject to the same security and privacy protections described in this policy.
User Rights and Choices
At Omnim Inc., we recognize and respect your rights regarding your personal information, in accordance with the General Data Protection Regulation (GDPR) and other applicable data protection laws. We are committed to ensuring you can exercise your rights effectively. Below is an overview of your rights and how you can exercise them:
Your Rights
- Right of access (Art. 15 GDPR): You have the right to request access to the personal information we hold about you and to obtain information about how we process it.
- Right to rectification (Art. 16 GDPR): If you believe that any personal information we hold about you is incorrect or incomplete, you have the right to request its correction or completion.
- Right to erasure (Art. 17 GDPR): You have the right to request the deletion of your personal information when it is no longer necessary for the purposes for which it was collected, among other circumstances.
- Right to restriction of processing (Art. 18 GDPR): You have the right to request that we restrict the processing of your personal information under certain conditions.
- Right to data portability (Art. 20 GDPR): You have the right to receive your personal information in a structured, commonly used, and machine-readable format and to transmit those data to another controller.
- Right to object (Art. 21 GDPR): You have the right to object to the processing of your personal information, under certain conditions, including processing for direct marketing.
- Right to withdraw consent (Art. 7(3) GDPR): Where the processing of your personal information is based on your consent, you have the right to withdraw that consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
- Right to lodge a complaint (Art. 77 GDPR): You have the right to lodge a complaint with a supervisory authority if you believe our processing of your personal information violates applicable data protection laws.
Exercising Your Rights
To exercise any of these rights, please contact us at hello@omnim.ai. We will respond to your request in accordance with applicable data protection laws and within the timeframes stipulated by those laws (typically within 30 days). Please note, in some cases, we may need to verify your identity as part of the process to ensure the security of your personal information.
Cookies and Tracking Technologies
At Omnim Inc., we value your privacy and are committed to being transparent about our use of cookies and other tracking technologies on our website omnim.ai. These technologies play a crucial role in ensuring the smooth operation of our digital platforms, enhancing your user experience, and providing insights that help us improve.
Understanding Cookies and Tracking Technologies
Cookies are small data files placed on your device that enable us to remember your preferences and collect information about your website usage. Tracking technologies, such as web beacons and pixel tags, help us understand how you interact with our site and which pages you visit.
How We Use These Technologies
- Essential cookies: Necessary for the website's functionality, such as authentication and security. They do not require consent.
- Performance and analytics cookies: These collect information about how visitors use our website, which pages are visited most frequently, and if error messages are received from web pages. These cookies help us improve our website.
- Functional cookies: Enable the website to provide enhanced functionality and personalization, like remembering your preferences.
- Advertising and targeting cookies: Used to deliver advertisements more relevant to you and your interests. They are also used to limit the number of times you see an advertisement and help measure the effectiveness of the advertising campaign.
Your Choices and Consent
You can control cookies and similar technologies through your browser or device settings, and through any consent or notice tools that we may make available from time to time. Depending on the page, jurisdiction, and technology in use, Omnim may not always provide an always-available on-page cookie preference center on the landing site.
Where applicable law requires consent before the use of non-essential cookies or similar technologies, we will seek to obtain that consent through the relevant notice, banner, or consent workflow then in use. If we materially change how we use cookies or introduce a dedicated cookie settings interface, we will update this policy accordingly.
International Data Transfers
At Omnim Inc., we may transfer your personal information to the United States and other countries for storage and processing by Omnim and our third-party service providers, including providers used for hosting, authentication, analytics, CRM, infrastructure, and authorized integrations.
For transfers of personal data from the European Economic Area (EEA), United Kingdom, or Switzerland to countries that have not received an adequacy decision from the European Commission, we rely on the following safeguards:
- EU-US Data Privacy Framework: Where our service providers are certified under the EU-US Data Privacy Framework, we rely on this certification as a valid transfer mechanism.
- Standard Contractual Clauses (SCCs): Where the Data Privacy Framework does not apply, we enter into Standard Contractual Clauses approved by the European Commission with our data processors to ensure an adequate level of data protection.
You may request a copy of the relevant transfer safeguards by contacting us at hello@omnim.ai.
Direct Marketing and Communications
At Omnim Inc., we may use your personal information to send you direct marketing communications about our products, services, promotions, and other relevant information that we believe may be of interest to you. We are committed to ensuring that our direct marketing practices are transparent, lawful, and in compliance with applicable data protection laws, including the General Data Protection Regulation (GDPR) and the ePrivacy Directive.
Obtaining Consent for Direct Marketing
- Opt-in consent: We will obtain your explicit opt-in consent before sending you direct marketing communications, where required by law. This means that you will have the opportunity to actively consent to receiving marketing messages from us before we send them to you.
- Unsubscribe option: Every direct marketing communication we send will include clear instructions on how to unsubscribe or opt-out from receiving future marketing communications. You can exercise your right to opt-out at any time, and we will promptly honor your request to stop sending you marketing messages.
Types of Direct Marketing Communications
We may use your personal information to send you direct marketing communications via email.
Managing Your Preferences
You have control over the direct marketing communications you receive from us. You can manage your communication preferences by using the unsubscribe link provided in our marketing emails.
Contact Us
If you have any questions or concerns about this Privacy Policy or how your personal information is handled, please contact us at hello@omnim.ai.