Privacy Policy

Effective Date: October 4, 2025
Last Updated: October 4, 2025

Overview

Fyllyo is an AI-powered platform that helps users automatically fill complex application forms in chrome browser. This Privacy Policy explains how we collect, use, store, and protect your information when you use our website (fyllyo.com), web application (app.fyllyo.com), and Chrome extension.

Information We Collect

1. Authentication Information

  • Google Account Information: When you sign in with Google, we collect your email address and basic profile information (name, profile picture) through Google's OAuth 2.0 service.
  • Authentication Tokens: We store encrypted JWT tokens to maintain your login session.

2. Form Data

  • Form Field Information: We analyze form fields on web pages to understand their structure and requirements.
  • User-Provided Data: Information you choose to save in your profile for form filling (e.g., name, address, phone number).
  • Form Filling History: Records of which forms you've filled and when (for improving our service).
  • AI Intructions: Instructions you provide to the AI for filling the form.

3. Technical Information

  • Usage Analytics: How you interact with our services (features used, success rates).
  • Error Logs: Technical information when errors occur (no personal data included).
  • Browser Information: Chrome version and extension version for compatibility.

4. User documents and personal information

  • User-Provided Data: Information you choose to save in your profile for form filling (e.g., name, address, phone number).
  • Documents: Documents you choose to upload for form filling (e.g., passport, visa, etc.).

How We Use Your Information

Primary Purposes

  1. Form Filling: To automatically fill forms with your saved information
  2. Authentication: To verify your identity and maintain secure access
  3. Service Improvement: To enhance our AI models and user experience
  4. Customer Support: To help you with technical issues

AI Processing

  • Your form data is processed by our AI system to understand form requirements
  • We use this data to train and improve our form recognition algorithms
  • Your data is securely shared with our partner OpenAI (https://openai.com/)
  • Your data is not stored on OpenAI servers or used for training

Data Storage and Security

Storage Locations

  • Local Storage: Authentication tokens (encrypted) and user preferences stored locally in your browser
  • Cloud Storage: User profile data and documents are stored on our cloud infra partners

Security Measures

  • Encryption: All sensitive data is encrypted using AES-256 encryption
  • Secure Transmission: All data transmission uses HTTPS/TLS encryption
  • Access Controls: Only you can access your data in our platform
  • Regular Audits: We conduct regular security audits and vulnerability assessments

Data Sharing

We DO NOT Share Your Personal Data With:

  • Third-party advertisers
  • Data brokers
  • Marketing companies
  • Any unauthorized parties

Limited Sharing for Service Operation:

  • Google OAuth: For authentication purposes only
  • Cloud Infrastructure: Cloud infra partners for secure data storage
  • AI Partner: OpenAI to generate content and take actions for your form
  • Error Monitoring: Anonymized error data for service improvement

Your Rights and Choices

You Have the Right To:

  1. Access: Request a copy of your personal data
  2. Correction: Update or correct your information
  3. Deletion: Request deletion of your account and data

How to Exercise Your Rights:

  • Web Application: Use the settings panel to manage your data
  • Email Us: Contact support@fyllyo.com for data requests
  • Account Deletion: Use the "Delete Account" option in settings

Data Retention

  • Active Accounts: Data retained while your account is active
  • Expired Accounts: Data is deleted after 15 days of expired subscription
  • One time users: Data is deleted according to data retention policy mentioned in the pricing page for your plan
  • Deleted Accounts: All data permanently deleted within 30 days
  • Legal Requirements: Some data may be retained longer if required by law

Children's Privacy

Fyllyo is not intended for users under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such information, we will delete it immediately.

International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data during international transfers, including:

  • Standard Contractual Clauses (SCCs)
  • Adequacy decisions by relevant authorities
  • Other legally recognized transfer mechanisms

Cookies and Similar Technologies

Types of Data Stored:

  • Authentication Tokens: To keep you logged in
  • User Preferences: Your extension settings
  • Session Data: Temporary data for current browsing session

No Tracking Cookies:

We do not use tracking cookies or similar technologies for advertising or marketing purposes.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. When we do:

  • We will notify you through our services
  • The "Last Updated" date will be revised

Third-Party Services

Google OAuth 2.0

  • Used for secure authentication
  • Governed by Google's Privacy Policy
  • We only access basic profile information

Cloud Infrastructure

  • AWS/Railway for secure data storage
  • Subject to their security and privacy standards
  • Data processing agreements in place

Legal Basis for Processing (GDPR)

For users in the European Union, our legal basis for processing personal data includes:

  • Consent: When you explicitly agree to data processing
  • Contract: To provide the services you've requested
  • Legitimate Interest: To improve our services and provide customer support
  • Legal Obligation: To comply with applicable laws

California Privacy Rights (CCPA)

California residents have additional rights under the California Consumer Privacy Act:

  • Right to know what personal information is collected
  • Right to delete personal information
  • Right to opt-out of the sale of personal information (we don't sell data)
  • Right to non-discrimination for exercising privacy rights

Contact Information

If you have questions about this Privacy Policy or our data practices:

Email: support@fyllyo.com

Support: support@fyllyo.com

Mailing Address:

aiformasses

8 Rush Street, Unit 1

Somerville, MA, 02145

By using Fyllyo, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and disclosure of your information as described herein.