Flomatic AI

Privacy Policy

Effective Date: May 2, 2026  •  Last Updated: May 2, 2026
Application: AI Meeting Tracker (iOS and Android)
Operator: ALL ROYAL LLC, doing business as Flomatic AI
This Privacy Policy explains how ALL ROYAL LLC ("Flomatic AI," "we," "our," or "us") collects, uses, discloses, and protects information when you use the AI Meeting Tracker mobile application (the "App"). The App is an enterprise business tool distributed exclusively to authorized users of organizations that have contracted with Flomatic AI. It is not available to the general public.

1. Who This Policy Applies To

This Policy applies to all users of the AI Meeting Tracker App. Access to the App is granted exclusively by invitation through an enterprise or organizational account. If you are using the App, your organization has entered into a separate agreement with Flomatic AI that may supplement or supersede certain provisions of this Policy. Please review any agreement your organization has signed with us.

The App is intended for use by individuals who are at least 18 years of age or the applicable age of majority in their jurisdiction. We do not knowingly collect personal information from anyone under 18. If we learn that we have collected personal information from a minor, we will promptly delete it.

2. Information We Collect

2.1 Information You Provide Directly

2.2 Information Collected Automatically Through the App

2.3 Information Collected Automatically by Our Systems

2.4 Permissions Requested

Permission Purpose Required
Camera Photograph business cards for AI extraction and capture contact photos Required for card scanning features
Microphone Record meeting conversations for AI transcription Required for recording features
Photo Library Select existing business card images or contact photos from your library Optional
Contacts Save extracted business card contacts to your device address book Optional

You may deny any optional permission. Denying camera or microphone will disable the scanning and recording features respectively, but the App remains functional for manual data entry and reviewing existing records.

3. How We Use Your Information

4. Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA) or the United Kingdom, we process your personal data under the following legal bases:

5. Third-Party Service Providers

We share data with the following categories of third-party processors to operate the App. All third-party processors are contractually bound to protect your data and may only process it as directed by us.

5.1 Supabase

We use Supabase as our database and file storage provider. All lead data, contact records, meeting notes, transcripts, audio recordings, and business card images are stored on Supabase-managed infrastructure. Supabase is hosted on AWS infrastructure, predominantly in the United States. See Supabase's privacy policy at supabase.com/privacy.

5.2 OpenAI

We use OpenAI's APIs for two purposes: (a) audio transcription of meeting recordings using OpenAI Whisper, and (b) AI-assisted generation of follow-up email drafts and meeting summaries using OpenAI GPT models. Audio data and text data submitted to OpenAI are subject to OpenAI's API data usage policies. As of the effective date of this Policy, OpenAI does not use API inputs to train its models. See openai.com/policies/privacy-policy.

5.3 Google AI (Gemini / Vision)

We use Google AI services to perform optical character recognition (OCR) on business card images and to assist with contact data extraction. Business card images may be transmitted to Google's APIs for processing. See policies.google.com/privacy.

5.4 Odoo CRM

If your organization has configured the Odoo integration, approved lead and contact data (name, company, email, phone, notes) is synchronized to your organization's Odoo CRM instance. The Odoo instance is operated by or on behalf of your organization. Data transmitted to Odoo is governed by your organization's agreement with Odoo and their privacy terms.

5.5 WhatsApp Business API

When you explicitly send a follow-up message via WhatsApp, the recipient's phone number and your composed message are transmitted through the WhatsApp Business API (operated by Meta Platforms, Inc.). This transmission occurs only upon your deliberate action. Meta's data practices are governed by their WhatsApp Privacy Policy.

5.6 Gmail API

When you send a follow-up email through the App, we use the Gmail API to send the email on your behalf using your authenticated Google account. We access only the send-email scope. We do not read, store, or process the contents of your Gmail inbox. Your use of the Gmail integration is subject to Google's Privacy Policy.

6. Data Retention

We retain your personal data for as long as your organizational account is active or as needed to provide the services. Specifically:

7. Data Security

We implement technical and organizational measures appropriate to the sensitivity of the data we process, including:

No security system is impenetrable. In the event of a data breach that affects your personal data, we will notify affected users and relevant authorities as required by applicable law.

8. International Data Transfers

ALL ROYAL LLC is incorporated in the United States. Your data may be processed and stored in the United States and other countries where our third-party processors operate. If you are located in the EEA or UK, transfers of your personal data outside of those regions are made under appropriate safeguards, including Standard Contractual Clauses (SCCs) as approved by the European Commission, or equivalent mechanisms where applicable.

9. Your Privacy Rights

9.1 For All Users

9.2 For EEA and UK Residents (GDPR / UK GDPR)

In addition to the rights above, if you are located in the EEA or UK, you have the right to:

To exercise these rights, contact us at info@flomatic.io.

9.3 For California Residents (CCPA / CPRA)

California residents have the right to know what personal information we collect, to request deletion, to opt out of the "sale" of personal information (we do not sell personal information), and to non-discrimination for exercising these rights. To make a verifiable consumer request, contact us at info@flomatic.io.

10. Children's Privacy

The App is designed for use by business professionals and is not directed at children under the age of 13 (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us at info@flomatic.io and we will promptly delete such information.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last Updated" date at the top of this page and, where feasible, provide notice through the App or by email to your registered address. Your continued use of the App after the effective date of a revised Policy constitutes your acceptance of the revised terms.

12. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

ALL ROYAL LLC (d/b/a Flomatic AI)
Email: info@flomatic.io
Application: AI Meeting Tracker

For EEA/UK inquiries related to GDPR rights, please include "GDPR Request" in the subject line. We will respond within 30 days.