Last updated: October 10, 2026
Privacy Policy
This is a translation. In case of any divergence, the Portuguese version prevails.
1. Who we are
Sofik (SOFIK AI Inc., "Sofik", "we") operates the console at sofik.ai, where companies create AI agents that work with the company's own applications. Contact: support@sofik.ai.
2. Data we process
- Account data: name, email address, photo, language, company and role.
- Data the company creates in the console: areas, agents, tasks, conversations, uploaded files and decisions.
- Data from apps connected by the company (Gmail, GitHub, WhatsApp, Stripe and others), accessed only with the authorization given by the manager and only to carry out the tasks the company itself requests.
- Technical data: access logs, IP address and session identifiers, used for security and operations.
3. What we use it for
To provide the service (carrying out the agents' tasks, showing the history, sending invitations and notices), for security (authentication, usage limits, abuse detection), for billing (paid plans via Stripe) and to comply with legal obligations. We do not sell personal data and we do not use the companies' data for advertising.
4. Google data (Gmail)
When the manager connects Gmail, we request the gmail.readonly (read messages) and gmail.send (send messages on the user's behalf) scopes, as well as the account's email address. This data is used exclusively to carry out the tasks the user triggered in the company's agents, and its use complies with the Google API Services User Data Policy, including the Limited Use requirements:
- we do not transfer it to third parties except as necessary to provide or improve the feature, nor for advertising;
- no person reads this data, except with your consent, for security purposes or as required by law;
- we do not use it to train general-purpose AI models.
Access tokens are stored encrypted; disconnecting Gmail in Settings deletes the tokens and stops the access.
5. Other connected apps
GitHub, WhatsApp (Meta), Stripe and the other apps follow the same rule: access limited to what the manager authorized, use only in the company's tasks, revocable at any time in Settings.
6. Model providers
The content of the tasks is sent to the model providers chosen by the company (Anthropic, OpenAI, xAI) to generate the responses, using Sofik's keys or the company's own keys and subscriptions, depending on the configuration. Sofik does not use this data to train models.
7. Sharing
With processors that help us provide the service (hosting on Amazon Web Services, email delivery, Stripe for billing) under contract; with authorities when required by law; with whomever the company authorizes.
8. Retention and deletion
Conversations, tasks and runs are kept until the company deletes them. When the company's account is deleted, the data is deactivated and removed within the operational period, and the subscription is canceled. Technical logs are kept for a limited period.
9. Security
Data encrypted in transit (TLS) and at rest (company keys and app tokens encrypted), restricted access, audit logs.
10. Your rights (LGPD)
Access, correction, deletion, portability, information about sharing and withdrawal of consent, by email at support@sofik.ai. Data protection officer: the same channel.
11. International transfer
The servers are located in the United States (AWS, Northern Virginia); transfers follow the safeguards of the LGPD.
12. Cookies
We only use the session cookie required for sign-in.
13. Changes
We will announce relevant changes by email or in the console; the date at the top indicates the version.