Privacy Policy

Effective date: 1 August 2025 · Last updated: 1 August 2025

This Privacy Policy describes how Lyvena ("we", "our", "us"), operating the Seerist platform at seerist.xyz and app.seerist.xyz, collects, uses, and protects your personal information. Lyvena is the data controller for the personal data described here.

Contact for any privacy request: info@seerist.xyz

1. Information We Collect

  • Account data: name, email address, company name, plan and workspace settings
  • Usage data: pages visited, features used, sessions, actions taken in the product
  • Bidding activity: the job postings you capture, AI fit scores, pitch stages, submission and outcome data, and which platform each bid relates to
  • Proposal content: the proposal drafts you generate, edit and send, including the prompts, edits and approvals attached to them
  • Payment data: processed by Creem (Armitage Labs OÜ) as Merchant of Record — we receive subscription status and invoice metadata, never your full card details
  • Communications: emails, support messages and form submissions you send us
  • Technical data: IP address, browser type, device and operating system, referring URLs

2. How We Use Your Information and Legal Bases

  • To provide and operate the Seerist platform, including scoring, drafting and automation — performance of a contract
  • To take payment through Creem as our Merchant of Record — performance of a contract
  • To send transactional email (account confirmations, receipts, service notices) — performance of a contract
  • To send product updates and marketing email — consent, withdrawable at any time via the unsubscribe link or by emailing us
  • To analyse usage, debug and improve the product — legitimate interests (and consent where cookies require it)
  • To prevent fraud, abuse and security incidents — legitimate interests
  • To comply with tax, accounting and other legal obligations — legal obligation

3. Analytics and Tracking Tools

We use exactly three analytics and CRM tools:

  • Cloudflare Web Analytics — cookieless, privacy-preserving traffic measurement. It sets no cookies, stores no personal data, and does not track you across sites; it reports aggregate page views and performance only. Cloudflare Privacy Policy: https://www.cloudflare.com/privacypolicy/
  • PostHog — first-party product analytics used to understand how the application is used (feature usage, funnels, session behaviour). Data is processed in the EU on PostHog's EU Cloud. PostHog Privacy Policy: https://posthog.com/privacy
  • HubSpot CRM — marketing and lead management: contact records, marketing email, and attribution for people who contact us or sign up. Data may be transferred to the USA under Standard Contractual Clauses together with supplementary safeguards. HubSpot Privacy Policy: https://legal.hubspot.com/privacy-policy

Which of these set cookies, and how to refuse them, is explained in our Cookie Policy.

4. Payment Data and Creem

When you purchase a subscription, Creem (Armitage Labs OÜ, registry code 16813900, Tornimäe tn 5, 10145 Tallinn, Estonia) acts as our Merchant of Record. You are buying through Creem: Creem collects your payment and billing details, performs fraud checks, issues the invoice, and collects and remits VAT and sales tax. Creem processes that payment data as its own controller, under its Privacy Policy: https://creem.io/legal/privacy-policy.

Seerist / Lyvena does not store your card details. We receive only what we need to run your account: your subscription status, plan, billing country and invoice references.

5. Data Sharing

We do not sell your personal data. We share it only with:

  • Creem (Armitage Labs OÜ) — payments, invoicing and tax, as Merchant of Record
  • Cloudflare, PostHog and HubSpot — analytics and CRM, as described in Section 3
  • Hosting and infrastructure providers — to run the platform and store your workspace data
  • AI model providers — to generate scores, drafts and code from the content you submit; they act as processors and do not train public models on your content
  • Legal authorities — when required by law or to protect our rights

6. Cookies

We use cookies and similar technologies. See our Cookie Policy for the full list, which categories require consent, and how to manage them.

7. Data Retention

  • Account and workspace data — kept while your account is active, then deleted within 90 days of account closure
  • Bidding activity and proposal content — kept for the life of the account so your agents retain context; deleted with the account, or earlier on request
  • Payment and invoice records — retained by Creem and by us for as long as tax and accounting law requires (typically 7 years)
  • Analytics data — retained in aggregated or pseudonymised form, typically no longer than 24 months
  • Support correspondence — kept for up to 24 months after the ticket closes

8. Your GDPR Rights

If you are in the EEA or UK you have the right to:

  • Access — obtain a copy of the personal data we hold about you
  • Rectification — have inaccurate or incomplete data corrected
  • Erasure — have your personal data deleted ("right to be forgotten")
  • Portability — receive your data in a structured, machine-readable format, or have it sent to another provider
  • Restriction — ask us to pause processing while a dispute or accuracy check is resolved
  • Objection — object to processing based on legitimate interests, and to direct marketing at any time
  • Withdraw consent — at any time, without affecting processing already carried out

To exercise any of these, email info@seerist.xyz. We respond within 30 days. You also have the right to lodge a complaint with your local data protection authority.

9. International Transfers

Seerist is operated globally and some of our providers are outside the EEA — notably HubSpot in the USA. Where personal data leaves the EEA we rely on the European Commission's Standard Contractual Clauses, adequacy decisions where they exist, and supplementary technical and organisational safeguards.

10. Security

We use encryption in transit, access controls, and least-privilege practices to protect your data. No system is perfectly secure; if a breach affects your personal data we will notify you and the relevant supervisory authority as required by law.

11. Children

Seerist is not directed at children under 16. We do not knowingly collect personal data from children.

12. Changes to This Policy

We may update this Privacy Policy. We will notify you by email or by posting a notice on our website. Continued use of Seerist after the effective date of a change constitutes acceptance.

13. Contact

Controller: Lyvena — lyvena.xyz
Privacy requests: info@seerist.xyz

← Back to home