Privacy Policy

Effective date: October 1, 2025
Who we are: Fusible LLC (“Fusible,” “we,” “us,” “our”)
Contact: [hello@fusible.ai] • 1401 21st ST STE R, Sacramento CA 95811
Scope: This notice explains how we collect, use, share, and protect personal information when you: (a) visit fusible.ai and related pages; (b) receive or respond to our outbound B2B marketing; and (c) use Services we provide to customers as a processor/service provider.

1. What we collect
1.1 Website visitors. Device and usage data (IP address, identifiers, pages viewed, referrers), general location, cookie IDs, and preferences.
1.2 Business leads and contacts (B2B outreach). Work contact details (name, role, employer, work email/phone), publicly available profile info (e.g., company sites, event lists), signals of interest (opens/clicks/replies), and notes from our conversations.
1.3 Customers and end users. Account details, billing and admin info, logs, prompts, documents and knowledge‑base content you connect, and Outputs generated by the Services.
1.4 Sensitive categories. We do not intentionally collect sensitive personal information (e.g., precise geolocation, health data) on our website. Customers should not upload regulated data (e.g., PHI) unless we have a signed BAA.

2. Sources
Directly from you (forms, emails, calls, demos).
Public and enterprise sources (company websites, LinkedIn profiles, conference lists) and reputable lead providers.Automatically from your device via cookies and similar technologies.
From customers who connect their systems to our Services (as our role as processor).

3. How we use information
3.1 Provide and secure the Services (including to authenticate, route queries to models, prevent abuse, and troubleshoot).
3.2 Outbound B2B marketing to business contacts by email or LinkedIn/message — to promote Services, follow up on interest, and manage suppression lists (opt‑outs). Region‑specific rules apply (see §10).
3.3 Product improvement (quality, safety, performance), including aggregated analytics about feature use. We do not use Customer Data to train third‑party foundation models for the benefit of others without an explicit opt‑in.
3.4 Compliance with law, defending legal claims, preventing fraud or abuse.
3.5 With consent for specific purposes (e.g., testimonials, cookies where required).

4. Legal bases (EEA/UK)
We process personal data under GDPR where: (a) necessary for a contract (to deliver the Services); (b) based on our legitimate interests (e.g., B2B marketing to corporate contacts, service analytics, service security) balanced against your interests; or (c) with consent (e.g., certain cookies). You can object to direct marketing at any time. The EDPB recognizes legitimate interest as a valid basis where a proper balancing test is performed; we document ours for B2B outreach.

5. Sharing & disclosure
We share personal information with:
Subprocessors (cloud providers, LLM API vendors, analytics) under contracts requiring confidentiality and appropriate safeguards.
Affiliates for service operations.
Professional advisors (legal, accounting), and authorities where required by law.
Business transfers (e.g., merger or sale); we’ll notify you where required.

6. International transfers
Where data moves outside its origin country (e.g., EU/UK → U.S.), we use appropriate safeguards such as the EU Standard Contractual Clauses and UK addenda/IDTA, plus supplementary measures as needed.7. RetentionWe keep personal information only as long as necessary for the purposes described or as required by law.
Typical periods:
Website analytics logs: ~12 months (shorter where feasible).
B2B lead records: up to 24 months from last interaction (we maintain suppression lists indefinitely to honor opt‑outs).
Customer project artifacts (prompts, configs, logs): per contract/SOW; commonly 90–365 days for standard logs unless you request otherwise.

8. Security
We use reasonable administrative, technical, and physical safeguards (e.g., access controls, encryption in transit, least‑privilege, security monitoring). No method is 100% secure.

9. Your rights
EEA/UK: access, rectification, erasure, restriction, portability, and objection (including to direct marketing). You may lodge a complaint with your Data Protection Authority.
California (CPRA): right to know, delete, correct, and opt‑out of sale or sharing for cross‑context behavioral advertising; right to limit use of sensitive personal information; non‑discrimination. We do not “sell” or “share” personal information as those terms are defined by CPRA. If this changes, we will update this notice and provide required “Do Not Sell or Share My Personal Information” links and disclosures.
Canada (CASL & PIPEDA): rights to withdraw consent to commercial electronic messages and to access/correct personal information.
Submit requests to hello@fusible.ai. We will verify your request and respond as required by law. Authorized agents may submit requests where permitted.

10. Outbound B2B marketing — region‑specific details
10.1 United States (CAN‑SPAM). Our emails include accurate header info, a physical postal address, a working unsubscribe link, and truthful subject lines. We honor opt‑out requests within 10 business days and maintain suppression lists.
10.2 UK/EU (PECR/ePrivacy + GDPR). We may email corporate subscribers without prior consent if the message relates to their role and we provide an easy opt‑out and our identity. Emails to individual subscribers generally require consent, subject to limited “soft opt‑in” exceptions. We respect the GDPR right to object to direct marketing at any time.
10.3 Canada (CASL). We send Commercial Electronic Messages only with express or permitted implied consent (e.g., existing business relationship), and include identification info and a working unsubscribe in each message. We keep consent records. ISED Canada+1

11. Cookies & similar technologies
We use cookies and similar technologies for site operations, analytics, and (where enabled) marketing. Where required, we will present a consent banner and honor your preferences. You can adjust browser settings to limit cookies (site functionality may be affected).

12. Children
Our website and Services are not directed to children under 13 (or 16 where applicable). We do not knowingly collect such data.

13. Changes to this Policy
We may update this Policy. If changes are material, we will notify you (e.g., by posting or email). The “Effective date” above shows when it was last updated.

14. How to contact us
Questions, requests, or complaints: hello@fusible.ai or 1401 21st ST STE R, Sacramento CA 95811