Legal

Privacy Policy

This privacy policy informs you about Slidesmith.ai's data processing.

Last Updated: July 10, 2024 (Version 1.1.17)


1. General Information regarding Data Processing

Slidesmith.ai is a collaborative presentation software built for modern teams. Depending on your relationship with us and how you interact with our services, different parts of this privacy policy will apply to you.

If you have joined or visited a workspace, or are viewing a presentation as a reader (with no account), our customer (usually a company or organization) is the controller of the information they provide to Slidesmith.ai. To understand how your data is processed in that context, please review their privacy policy.

In all other cases, Slidesmith.ai is the controller of your data and the following provisions apply.

1.1 Slidesmith.ai as Data Controller

Data controller is Slidesmith.ai. You can contact us at:

1.2 Scope of Data Processing

Personal data are any information relating to an identified or identifiable natural person. Applicable legal provisions include the EU GDPR (Regulation (EU) 2016/679), the German Federal Data Protection Act (BDSG), and the German Telemedia Act (TMG).

1.3 Your Rights

Under applicable law, you have the right to:

  • Access your personal data
  • Rectify or erase it
  • Restrict processing
  • Data portability
  • Withdraw consent at any time (where processing is based on consent)
  • Object to processing for direct marketing or on grounds of legitimate interest

To exercise these rights, email us at support@slidesmith.ai. You also have a right to lodge a complaint with a supervisory authority.

1.4 Storing and Deleting Data

We retain your personal data only as long as necessary for the purposes described or as required by law. Once the purpose ceases, we delete or block your data unless legal retention requirements apply.

1.5 Profiling and Automated Decision‑Making

We do not use automated decision‑making or profiling in connection with our Website or Platform.

1.6 Data Security

We use SSL/TLS to encrypt data in transit and maintain appropriate technical and organizational measures to protect your data.

1.7 Data Processing by Third Parties / Outside the EU

We engage subprocessors in the EU and the USA under data processing agreements that include EU‑approved Standard Contractual Clauses to ensure adequate protection.


2. Data Processing on Our Website

2.1 Server Logs

We collect standard server logs (e.g. page visited, timestamp, IP address, browser, device info) for analytics, stability, and security under our legitimate interests (Art. 6 (1) f GDPR). Logs are deleted after 30 days.

2.2 Newsletter

When you subscribe to our newsletter, we collect your name, email, IP, device info, and track opens/clicks. This is based on your consent (Art. 6 (1) a GDPR) and retained until you unsubscribe.

2.3 Careers Section

If you apply for a job via our site, we process your name, email, CV, and any additional information you provide under our pre‑contractual obligations (Art. 6 (1) b GDPR) or for employment (Section 26 BDSG). We retain applications for 6 months if not hired.

2.4 Talent Pool

With your consent (Art. 6 (1) a GDPR), we may keep your data in our talent pool for up to 2 years to inform you of future openings.

2.5 Contacting Us

If you contact us via email or form, we process your name, email, and message under our legitimate interests (Art. 6 (1) f GDPR) or to fulfill a contract (Art. 6 (1) b GDPR).

2.6 COVID‑19 Hardship

We may process company and personal data to evaluate COVID‑19 hardship relief under our pre‑contractual obligations (Art. 6 (1) b GDPR).

2.7 Website Analytics (Cookies)

We use cookies and similar tech—essential, performance, and marketing—based on your consent (Art. 6 (1) a GDPR). Manage your choices via the Manage cookie settings link on our site.

2.8 Advertising (Conversion Tracking & Retargeting)

With your consent (Art. 6 (1) a GDPR), we use cookie‑based tools to measure ad performance and retarget visitors. Data are deleted after one year.

2.9 User Surveys

With your consent (Art. 6 (1) a GDPR), we may ask for your email and survey responses to improve Slidesmith.ai. Data are retained until you revoke consent.


3. Data Processing in Connection with Our App (Web, Desktop, Mobile)

3.1 Service Provision

Creating, editing, and sharing presentations may involve processing personal data you enter, as well as use of AI tools (e.g., GPT‑based features). This is necessary to perform the contract (Art. 6 (1) b GDPR). We retain your account data for up to 3 years after last activity or account deletion.

3.2 Registration and Sign‑In

We process profile data (name, email), IP address, and company information to create and access your account under contract (Art. 6 (1) b GDPR).

3.3 Payment Processing

To manage Paid Plans, we process billing data under contract (Art. 6 (1) b GDPR) and retain payment records for tax compliance (typically 10 years).

3.4 Product Improvement

With your consent (Art. 6 (1) a GDPR), we track usage data (logs, device type) in‑app to optimize the user experience.

3.5 Error Tracking

We process profile and usage data under our legitimate interests (Art. 6 (1) f GDPR) to detect and fix errors.

3.6 Basic Customer Support

To handle support requests (excluding file access), we use profile and usage data under contract (Art. 6 (1) b GDPR).

3.7 Support with File Access

With your consent (Art. 6 (1) a GDPR), support staff may access your files, usage logs, and profile data to resolve issues. Shared files are deleted once the issue is resolved.

3.8 Fonts

We load web fonts via third‑party servers, processing IP addresses under our legitimate interests (Art. 6 (1) f GDPR).

3.9 Product News

With your consent (Art. 6 (1) a GDPR), we send feature news based on your activity. Unsubscribe at any time via the email footer.

3.10 Feature Requests / Feedback

Feedback via Canny (name, email, user ID) is processed under contract (Art. 6 (1) b GDPR) or our legitimate interests.

3.11 Presentation Analytics

We collect aggregate reader analytics under legitimate interests to improve content, and may process recipients' emails to secure private presentations (Art. 6 (1) f GDPR).

3.12 Sales Outreach

We process business contact data from third‑party sources under legitimate interests (Art. 6 (1) f GDPR) to reach prospective leads.


4. Third‑Party Integrations

  • Google Sheets: View Sheets you authorize (Art. 6 (1) a GDPR).
  • Google Analytics: Import your Analytics data (Art. 6 (1) a GDPR).
  • Zapier: Integrate workflows (Art. 6 (1) a GDPR).
  • ChartMogul: Import charts via encrypted API keys (Art. 6 (1) a GDPR).

All integrations use EU‑standard contractual clauses for data transfers.


5. Cookies

We use session and persistent cookies for essential, performance, and marketing purposes. Opt‑in via our banner; opt‑out via Manage cookie settings or your browser preferences.

Service ProviderCookie NamesFunctionDuration
Segmentajs_user_id, ajs_anonymous_idPerformance1 year
Google Analytics_ga, _gcl_au, …Performance2 years
Intercomintercom-id, intercom-device-idPerformance1 year
Facebook, LinkedIn, Twitter, etc.variousMarketing1–2 years

6. Data Processing on Our Social Media Pages

We operate on Facebook, Instagram, Twitter, and LinkedIn. Data processed there is subject to each platform's policy. We may process your comments, messages, and interactions under consent or legitimate interests (Art. 6 (1) a, b, f GDPR). You may manage your privacy settings directly on each platform.


7. Questions?

For further information or to exercise your rights, email us at support@slidesmith.ai.

Version 1.1.17 (July 10, 2024)