Legal

Privacy Policy

Last updated: 19 April 2026

This Privacy Policy explains how Jesto ("Jesto", "we", "us", or "our") collects, uses, and protects your personal information when you use our websites, products, and services (collectively, the "Services"). We are committed to protecting your privacy and being transparent about our practices.

1. Information we collect

We collect information in three ways:

  • Information you provide directly — such as your name, email address, phone number, company, and any content you submit through forms or workspaces.
  • Information from third-party sign-in providers — if you sign in with Microsoft or another identity provider, we receive basic profile information (name, email, tenant identifier) authorised by you.
  • Information collected automatically — such as IP address, browser type, device information, pages visited, and similar telemetry, collected via cookies and analytics tools.

2. How we use your information

We use personal information to:

  • Provide, maintain, and improve the Services.
  • Authenticate users and secure accounts.
  • Respond to support requests and communicate about the Services.
  • Send transactional and, where you have opted in, promotional messages.
  • Analyse usage to improve product quality and prevent abuse.
  • Comply with legal obligations.

3. Legal bases for processing

Where applicable, we rely on the following legal bases under data protection law: performance of a contract, your consent, our legitimate interests in operating the business, and compliance with legal obligations.

4. Cookies and similar technologies

We use cookies and similar technologies to keep you signed in, remember preferences, and understand how the Services are used. You can control cookies through your browser settings; disabling some cookies may affect functionality.

5. Sharing your information

We do not sell your personal information. We share information only:

  • With service providers who process data on our behalf (e.g., hosting, email delivery, analytics) under written contracts.
  • With identity providers (e.g., Microsoft Entra ID) when you choose to sign in via SSO.
  • To comply with law, valid legal process, or to protect the rights, property, or safety of Jesto, our users, or others.
  • In connection with a corporate transaction such as a merger or acquisition, with appropriate safeguards.

6. Sub-processors

ProviderPurposeRegion
Microsoft Azure / Entra IDAuthentication (SSO)Global
Amazon Web Services (SES)Transactional email deliveryAsia Pacific
SendGridTransactional email deliveryGlobal
Google Analytics & Google AdsSite analytics and marketing measurementGlobal

7. Data retention

We retain personal information for as long as needed to provide the Services, comply with legal obligations, resolve disputes, and enforce agreements. When data is no longer required, we delete or anonymise it.

8. Security

We use technical and organisational measures designed to protect personal information, including encryption in transit, access controls, monitoring, and regular reviews. No method of transmission or storage is 100% secure, however, and we cannot guarantee absolute security.

9. International transfers

Personal information may be transferred to and processed in countries other than the one in which you reside. Where required, we put appropriate safeguards (such as Standard Contractual Clauses) in place to protect your data.

10. Your rights

Subject to applicable law, you may have the right to access, correct, delete, restrict, or port your personal information, and to object to certain processing. To exercise these rights, contact support@jesto.ai. We will respond within the timeframes required by law.

11. Children

The Services are not directed to children under 16, and we do not knowingly collect personal information from them. If you believe a child has provided us with personal information, please contact us so we can take appropriate action.

12. Changes to this Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you by email or through the Services. Your continued use of the Services after changes take effect constitutes acceptance of the updated Policy.

13. Contact

Questions about this Privacy Policy or our data practices? Email us at support@jesto.ai.