Privacy policy
Last updated: August 2026
At ZenSavvy, a company incorporated in Mexico, we are responsible for processing the personal data you provide to us, in accordance with the Mexican Federal Law on the Protection of Personal Data Held by Private Parties (LFPDPPP).
Data we collect
Through our contact form we collect: name, email address, phone number, company name (optional), the services you are interested in and the message you write to us. We do not collect sensitive personal data.
How we use your data
We use your data only to:
- Reply to your request and follow up commercially.
- Prepare proposals and quotes for the services you ask about.
- Contact you through the channels you shared with us.
We do not share, sell or transfer your data to third parties for marketing purposes.
NavvyAI and Google APIs
NavvyAI is ZenSavvy's AI agent platform. One of its modules is a meeting note-taker: if you enable it, NavvyAI joins your video calls, records the audio, transcribes it and produces written notes (summary, decisions, action items and open questions). This section explains exactly what data from your Google account we touch, what for, where it is stored and how to revoke access.
The Google connection is optional and always initiated by you: nothing described here happens until you authorize the application on Google's consent screen, and it stops happening as soon as you disconnect it.
Permissions we request
-
calendar.events.readonly— read the events in your calendar so we know which meeting the assistant should join and when. This is a read-only permission: it cannot create, modify or delete anything in your calendar. We only query your primary calendar, and only the next hour's window. -
meetings.space.readonly— read Google Meet conference information (the meeting code, participant names and, when Google generates it, the meeting transcript). This is read-only as well. -
calendar.app.created— create a dedicated calendar named "Navvy AI" and manage only the events the application creates inside it, in order to book the appointments our voice agent closes. This permission grants no access to the rest of your calendar: it cannot read, edit or delete events that NavvyAI did not create in that calendar. -
userinfo.emailanduserinfo.profile— identify the connected account (Google identifier, email address and display name), so we know whose calendar it is and can show you which account is linked.
What we read from your calendar
From each event in the next hour we take only what is needed to decide whether the assistant
joins: the title, the start time, the video call link, whether you accepted or declined the
invitation, how many people are invited and the domains of their email
addresses (for example client.com), which is what lets us tell an external
meeting from an internal one.
We do not store attendees' email addresses or a copy of your calendar.
The assistant records the meeting
When a meeting comes up, NavvyAI joins the video call as an additional participant, visible in the attendee list, under an identifiable name (by default "Navvy AI (note-taker)"). Someone in the meeting has to admit it, just like any other guest. Its microphone and camera stay off: the assistant listens, it does not speak or send video.
Once inside, it records the meeting's audio and collects the participant names shown on screen. That recording is used for a single purpose: turning it into text in order to generate the notes. When the meeting ends, the assistant leaves the call.
How it is processed and where it is stored
- The recording is transcribed with Google Gemini, which returns the meeting text separated by speaker.
- From that transcript, an Anthropic (Claude) model writes the notes: summary, topics, decisions, action items, risks and open questions.
- The audio file lives only in the temporary container that handled that meeting and is destroyed when the process ends. We do not keep the recording: what is stored permanently is the transcript text and the notes.
- Transcripts and notes are stored in our database, hosted on Google Cloud infrastructure in the United States, and are accessible only to the user accounts of your own company within NavvyAI.
Who we share it with
Only with the providers required to deliver the service, which act as data processors and process the data solely on our instructions: Google (Gemini transcription and cloud infrastructure) and Anthropic (note generation).
We do not sell or transfer this data. We do not use it for advertising or targeting, and we do not use it — nor allow our providers to use it — to train artificial intelligence models. No one at ZenSavvy reads it either, unless you explicitly ask us to in order to resolve a support issue.
Limited Use of Google user data
NavvyAI's use of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.
How long we keep the data
- Audio recording: not retained. It is deleted along with the temporary container as soon as transcription finishes. The copy sent to Google's transcription service is automatically deleted after 48 hours.
- Transcripts and notes: kept for as long as your account is active, since they are the service's own content. You can delete any meeting from the application at any time, and the deletion is immediate and permanent.
- Google access credentials: kept encrypted while the connection is active and deleted when you disconnect it.
- When you cancel the service we delete the data associated with your account, except for what we must retain due to a legal or tax obligation.
How to disconnect your Google account
You can revoke access at any time, in two ways:
- From NavvyAI, under Integrations → Google → Disconnect.
- From your Google account, at myaccount.google.com/permissions, by removing access for NavvyAI.
On disconnection we cancel the Google Meet notification subscription, revoke the token with Google and delete the credentials and the connected account's details from our database (identifier, email address and name). The assistant stops joining your meetings immediately. Transcripts and notes from meetings already processed remain in your NavvyAI account until you delete them yourself or request account deletion by writing to ventas@zensavvy.com.
Your rights
You may at any time exercise your rights of Access, Rectification, Cancellation or Objection, and withdraw your consent, by writing to ventas@zensavvy.com. We will handle your request within the timeframes set by law.
Clients outside Mexico
We work with clients in other countries. If you write to us from a jurisdiction with its own data protection law, you may exercise the rights that law grants you at the same address; we will handle your request with the same standard.
Changes to this notice
We may update this privacy policy. Any change will be published on this same page.
If you have questions about how we handle your data, contact us at ventas@zensavvy.com.