Privacy Policy

Last updated 26 September 2026

This policy covers the products and services of HiAlly, operated by HiAlly Technologies. We make two kinds of product, and they handle data differently, so this page treats them separately:

It explains what we collect, why, and what you can do about it. It is written plainly on purpose.

The short version: by default, our local products keep your business data on your machine — the only information we hold is what you type when you activate. Connected services work differently by design: when a business connects a messaging channel such as WhatsApp or Telegram, the messages and details needed to run that service are processed by HiAlly’s connected service and by the messaging platform. We do not sell personal data.

Local products and connected services

Local products

Billing Books and Assistant are designed to process your business data locally, on your own computer. Your invoices, ledgers, documents and spreadsheets are not sent to us.

Connected services

An AI Employee talks to a business’s customers on a messaging platform, so it cannot run on one office computer. The messages sent to a connected business, and the information needed to reply and to hand the conversation to the business’s team, are processed by HiAlly’s connected service and by the relevant platform.

Local products

What stays on your computer

By default, local products keep everything they touch on your own machine. For Billing Books that means:

For Assistant it means your documents and spreadsheets, and the questions you ask about them.

None of this is sent to us. If you turn on backups, the copy goes to a folder you choose — normally your own Google Drive or OneDrive folder — which is your account, not ours.

If you choose to link a locally run HiAlly assistant to a HiAlly online dashboard with a connection key, a record of each conversation it handles — what was said and what it answered — is sent to that dashboard and is treated as connected-service information, described below. Your books themselves are not sent.

What we collect when you activate

When you activate the software, the details you type are sent to us so we can issue your licence:

WhatWhy we need it
Shop nameIt is printed on your licence
Your nameSo we know who to write to
EmailTo contact you about your licence and its renewal
Phone / WhatsAppSupport, if you ask for it
Country and tradeTo understand who uses the software
A code for your computerSo your licence works on your machine

The computer code is a scrambled one-way value. It cannot be turned back into anything about your machine, and it does not identify your hardware, location or network.

What we do with it

Where it is kept

On Cloudflare’s servers, which we use to run the licence service. Your details stay for as long as you use the software, and are removed if you ask.

One thing to be aware of. The local products can optionally use an online AI service. In Billing Books it is for typing bills by voice or in plain language, and it is off unless you switch it on and enter a key for a provider you choose. Assistant uses an AI model on your own computer by default, and can instead be set up to use an online one. The software supports Groq, OpenAI and Anthropic. When an online service is used, the words you type or speak for that feature — and, for Assistant, your question and the passages of your documents needed to answer it — are sent to that provider. Your books and files as a whole are never uploaded. With no online service set up, the software sends nothing except your licence check.

Connected services: HiAlly Sales

HiAlly Sales is an AI Employee for customer conversations. It is in development. When a business connects it to a messaging channel, it can:

The business decides whether to connect a channel and what information to give HiAlly. The business is responsible for telling its own customers how it handles their messages; we process those messages on the business’s behalf, to provide the service.

How a message flows

For a connected service, a customer’s message travels like this:

StepWhat happens
1. CustomerA customer sends a message to a business on a channel the business has connected — WhatsApp, Telegram, or Instagram when that is enabled.
2. Messaging platformThe platform delivers it: Meta for WhatsApp (and Instagram, when enabled), Telegram for Telegram.
3. HiAlly connected serviceHiAlly receives the message and processes it for the business, as described on this page.
4. Business workflowDepending on what the business has set up, HiAlly records an enquiry, notifies the business’s team, or hands the conversation to a person.
5. ResponseReplies go back to the customer through the same platform.

Meta and Telegram process information on their own platforms under their own terms and privacy policies. HiAlly does not control that processing.

WhatsApp and Meta integrations

Telegram

Instagram (when enabled)

When enabled, HiAlly may integrate with Instagram Professional accounts to receive and respond to messages through Meta’s APIs. This integration is not available yet. If a business connects an Instagram Professional account, HiAlly would process the account’s identifiers and the messages sent to it, for the same purposes and in the same way as described for WhatsApp. We will update this policy before it becomes available.

Information we may process

Not every category applies to everyone — it depends on which services a business enables. HiAlly may collect or process:

CategoryExamples
Account and sign-in informationThe name and email of each person who signs in, and their sign-in sessions. Passwords are stored only as a salted hash.
Business informationCompany name, industry, welcome message, menu, questions, product categories and delivery areas the business sets up.
Product and customer listsItem and customer lists a business uploads — for example item names, rates, stock, customer names, phone numbers and balances — or information read from a business system it connects.
Customer contact informationThe phone number or messaging name a customer writes from, and the names and phone numbers in a customer list a business uploads.
Customer messages and conversation historyThe messages a business’s customers send, the replies sent to them, and when.
Messaging identifiersWhatsApp numbers and profile names; Telegram user IDs, display names and chat IDs; connected phone number IDs and message IDs; Instagram account identifiers when that integration is enabled.
Enquiry informationThe product understood, the answers to the business’s questions, reference numbers and status.
Human handoff informationWhich team member took a conversation or an enquiry, and when.
Team reportsFree-text work reports sent by a business’s own team members, and the records made from them.
Integration settings and credentialsAccess tokens and bot tokens a business provides, and the address and key of a business system it connects.
Usage recordsCounts of the messages and actions handled, used to show the business its activity and to account for paid services.
Technical informationServer logs, which can include IP addresses, the addresses requested, and times.
Contact informationWhatever you include when you email us.
Licence informationFor local products, as described above.

How we use it

We do not sell personal data, we do not pass it to advertisers or data brokers, and we do not use customer conversations to train AI models.

AI processing

Certain HiAlly products and features may use AI or automated processing. The specific processing depends on the product and on the features the business enables. Not every message is sent to an AI model.

HiAlly Sales does not currently use an AI model to write its replies to customers. Its replies are built from fixed wording and the information the business has set up, and it recognises products by comparing the customer’s words with the business’s own product list.

Some other HiAlly features do use AI models:

AI output can be wrong. We design these features to check what a model produces and to ask a person when it is unsure, rather than guess. A business remains responsible for the accuracy of the information it gives HiAlly.

We may introduce further AI capabilities in the future, including AI-assisted replies. We will update this policy before they are used.

Service providers and third parties

We may also disclose information where the law requires it.

How long we keep it

We do not set a fixed retention period. Data may be retained for as long as necessary to provide the service, support the business’s operations, comply with applicable obligations and maintain security, or until a valid deletion request is processed. For example, conversation history and enquiries stay available to the business on its dashboard until deletion is requested. Sign-in sessions expire after 30 days. Licence details for local products are kept for as long as you use the software, and removed if you ask.

Security

How we protect this information is described on our Security & Data Protection page.

Your choices

You can ask us at any time to:

A business can also disconnect any channel it has connected, at any time.

If you are a customer of a business that uses HiAlly, the business is usually the best first contact, because it decides how your messages are used. You can also contact us directly and we will help, working with the business where needed.

Email hello@hially.in. Deleting your licence details does not stop the local software working — your books are yours and stay on your computer.

Deleting your data

How to ask us to delete data — including what happens to connected WhatsApp, Telegram and Instagram data — is explained on our Data Deletion page.

Children

This is business software and is not intended for anyone under 18.

Changes

If this changes in a way that matters, we will say so on this page and put the new date at the top.

Contact

HiAlly Technologies — hello@hially.in · Contact page