Privacy policy
This page describes the data Gezora collects when you visit gezora.ai or work with us as a customer, how we use and protect that data, and the choices you have over your own information.
Last updated August 2026
This page states our general practice in plain language, not a fully lawyered contract. The full legal text of this policy is reviewed by Gezora's legal team before it is treated as binding, and your signed service agreement governs where the two differ.
1. What we collect
When you reach out to Gezora, browse our site, or work with us as a customer, we collect the information needed to respond to you and deliver the service you have asked for.
- Contact details you give us directly, such as your name, email address, phone number, and company.
- Business data processed through the agents we deploy for you, scoped strictly to the workflow you have asked us to automate.
- Technical and usage information needed to operate, secure, and support the service, such as log and diagnostic data.
2. How we use your data
We use the information we collect to deliver and support the services you have engaged us for, to communicate with you about your deployment, and to keep our systems secure and reliable.
Your data is not used to train models without your explicit written approval. If a project ever calls for that, we ask first.
3. How we protect your data
Gezora encrypts data at every stage, in transit and at rest, and keeps every secret out of the codebase. Administrative access requires multi factor authentication, follows least privilege, and is logged and reviewed periodically.
- Transit encryption uses TLS 1.2 or higher for every connection.
- Data at rest is encrypted with industry standard algorithms.
- Secrets such as API keys and credentials are kept in managed secret stores, never in source code.
- Our systems run on reputable cloud providers with network isolation, hardened configuration, automated patching, and continuous monitoring.
4. Data processing agreements and sub processors
Our controls align with the SOC 2 Trust Services Criteria and support GDPR and HIPAA requirements. A data processing addendum is available on request for customers who need one, and we will share our current sub processor list on request as well.
Teams with strict data residency needs can request a private hosting environment they control directly. Customers operating in the European Union or the United Kingdom can read more about how this applies to them on our GDPR page.
Read our GDPR page5. Your choices
You can ask what information we hold about you, request corrections, or ask us to delete it, subject to what we need to keep to deliver an active engagement or meet a legal obligation.
For a security question, or to report a vulnerability under responsible disclosure, you can also reach us directly.
Contact our security teamYou can also reach the Gezora team by email at sales@gezora.ai, by phone at +92 308 3406338 or +92 336 8447111, or by mail at 228, Rose Commercial, Park View, Lahore, 53720, Pakistan. Our office hours are Monday to Friday, 9am to 8pm. Saturday, 9am to 6pm. Sunday, 9am to 5pm.
Get started
Stop paying people to do what an agent can
Tell us what you want to automate. We will map the workflow, deploy the right agents, and train your team to run them.
- Every agent is trained on your own workflows, never a generic template
- Most deployments are live within two to four weeks
- SOC 2 compliant, with a complete audit trail on every deployment
