Legal
Privacy Policy
Last updated: July 24, 2026
This Policy explains how BeWise handles personal data when you visit our website, contact our team, engage us for technology services, or use digital tools and workspaces we provide. We aim for clarity, purpose limitation, and responsible use of information under Brazil's LGPD and equivalent rules.
Who we are
BeWise is a Brazilian technology company (CNPJ 61.269.188/0001-62) that builds and maintains software for businesses of every size — including custom systems, automations, AI integrations, and ongoing care of existing stacks.
For this Policy, BeWise acts as controller of personal data processed to run the website, commercial relationships, billing, and support; and, when we operate digital tools or workspaces for a client, as a technical processor of content and data submitted under that client's instructions and configuration.
Data we collect
Contact and commercial data: name, company, work email, phone (when provided), and the content of inquiries, proposals, and contracts.
Account and access data (when you use tools we provide): authentication credentials, preferences (such as language), and workspace identifiers.
Project and operations data (inside client workspaces): brand settings, content, attachments, media files, prompts, and metadata required to deliver the contracted service.
Usage and technical data: access logs, IP addresses, device/browser type, product events, and diagnostics for security, performance, and service improvement.
Payment and billing data: information needed to issue invoices and process charges through partner gateways (we do not store full card numbers in our systems).
Integration data: when a client connects third-party services (for example social or ads platforms), we may receive tokens and metadata authorized for that integration.
How we use data
To respond to inquiries, propose solutions, and perform contracted technology services (build, automate, integrate AI, maintain).
To operate and improve digital tools or workspaces we provide: authentication, project isolation, media processing, AI-assisted features, and related workflows.
To operate billing, fraud prevention, customer support, and essential service communications.
To maintain security, auditability, availability, and legal compliance.
To analyze aggregated or anonymized usage so we can evolve our services — without mixing one client's confidential project data with another's.
Client and project isolation
When we deliver multi-tenant tools, access controls, queries, and file storage are designed to keep client workspaces isolated.
Users and API keys should only reach projects they are authorized for. Cross-tenant leakage is treated as a critical privacy and security incident.
Content, media, and AI
Files and content you share for a project or upload into tools we operate are processed to deliver the requested service — for example building software, converting media, generating or reviewing outputs, or publishing to connected networks.
AI models and pipelines may receive project context strictly to produce or review the requested output. We do not use a client's private content to train public third-party models without a legal basis and clear notice.
You remain responsible for ensuring submitted or published content does not infringe third-party rights or applicable law.
Retention
We keep data as long as needed to provide services, meet legal and accounting obligations, resolve disputes, and enforce agreements.
When an engagement, account, or project ends, we apply deletion or anonymization of associated data, subject to limited backup copies and legal retention periods.
Security
We apply technical and organizational measures appropriate to the risk: access control, encryption in transit where applicable, storage segregation for client workspaces, and secure development practices.
No system is perfectly secure. If you discover an incident or vulnerability, email contact@bewise.app.
Your rights (LGPD and equivalents)
Under applicable law (including Brazil's LGPD), you may request confirmation of processing, access, correction, anonymization, portability, deletion of unnecessary data, information about sharing, and withdrawal of consent when consent is the legal basis.
Requests can be sent to contact@bewise.app. We may verify identity and will respond within legal timelines, noting any applicable limits (for example legal retention or data required to perform a contract).
Integration data deletion
If you connected a third-party account (for example Meta) to a BeWise-operated workspace and want us to remove data tied to that connection, email contact@bewise.app with your account email and, if possible, the project name. Where the product allows, you may also disconnect the integration in settings.
Project content (deliverables, media, creatives) follows the retention and engagement/account closure rules in this Policy and in the commercial agreement.
International transfers
BeWise infrastructure and partners may operate in different regions. When personal data is transferred internationally, we use safeguards required under applicable law.
Children
BeWise services are intended for business and professional use. We do not knowingly collect children's data. If we learn of improper collection, we will take steps to delete that information.
Changes to this Policy
We may update this Policy to reflect service, legal, or privacy practice changes. The date at the top shows the current version. Material updates may be announced on the site or via the contact email on file.
Contact
Privacy, rights requests, data deletion, or incidents: contact@bewise.app. Include the company, project, and account email when possible.
Controller: BeWise — CNPJ 61.269.188/0001-62. For matters about using our services, also see the Terms of Use.