dloper AccountReturn to dashboard

dloper legal

Privacy Policy

A clear explanation of the data that powers dloper Dashboard, Drive, Creator and Davern.

Last updated: July 21, 2026

On this page

  1. Who this notice is for
  2. Personal data we process
  3. How and why we use data
  4. Creator, Davern and connected platforms
  5. Who receives data
  6. International transfers
  7. Retention and deletion
  8. Your privacy rights
  9. Cookies and device storage
  10. Security, changes and contact

01

Who this notice is for

This notice explains how dloper processes personal data when you use dloper Dashboard, dloper Drive, dloper Creator and Davern, visit our sites, contact us, or open a public Drive share or file request.

dloper is responsible for account, billing, security, product-operation and support data. Where an organisation uses the Services to store or manage personal data belonging to its own customers, followers or team members, that organisation will usually decide why and how that data is used. In that situation, the organisation is normally the controller and dloper processes the data to provide the Services.

For privacy questions or requests, email [email protected]. The legal entity and registered contact details that apply to a paid service are identified in the relevant order form, invoice or checkout record.

02

Personal data we process

We process the categories below, depending on the Services you use and the choices you make.

Account and organisation data
Your name, email address, phone number if supplied, profile image, account settings, memberships, roles and organisation details.
Authentication and security data
Protected password and passkey material, multi-factor authentication status, session-token hashes, device and browser information, IP address, login activity and audit records.
Billing data
Stripe customer references, subscription and invoice records, payment status and invoice links. Card details are handled by Stripe and are not stored by dloper.
Dashboard data
Website, domain, DNS, mailbox and sales-enquiry information that you add or manage through Dashboard.
Drive data
Files, folders, names, file type, size, checksums, extracted metadata, thumbnails, versions, upload information and content supplied through file requests. If your organisation opts in to Davern Advanced Search, this also includes a derived local index of extracted text, OCR text, folder paths and media duration.
Public-share data
Share settings, expiry and access limits, view and download counts, and hashed IP address and browser information recorded for public-share activity.
Creator data
Connected-account details, encrypted authorisation tokens, approved scopes, posts, captions, publishing status, comments, messages, participant details and platform analytics.
Davern data
Prompts, instructions, chat history, generated output, selected Drive attachments, relevant Drive search excerpts, video-review results, error reports and organisation-level credit and usage records.

03

How and why we use data

We use personal data only where we have a valid reason to do so. The reasons most relevant to the Services are:

  • Providing the Services. To create and secure accounts, host and organise Drive content, publish or schedule Creator content, provide Davern responses, administer organisations, process payments and respond to requests. This is normally necessary to perform a contract with you or your organisation.
  • Security and product operations. To prevent abuse, detect suspicious activity, enforce permissions, maintain audit logs, troubleshoot failures and protect our systems. This is normally based on our legitimate interests in operating a safe and reliable service.
  • Legal and financial obligations. To keep records, meet tax and accounting obligations, and respond to valid legal requests where required.
  • Consent. Where a feature requires consent, such as a non-essential cookie or a connection you choose to authorise, we will explain the choice at the point it is requested. You can withdraw consent, although this will not affect processing already carried out.

04

Creator, Davern and connected platforms

Creator processes information supplied by social platforms when you connect an account. Depending on the scopes you approve, it can publish content, schedule posts, synchronise comments or messages, and retrieve analytics. You control which accounts you connect and which publishing actions you confirm.

Davern is an AI assistant and can make mistakes. To answer a request, it sends the relevant conversation, instructions and selected media to the model provider enabled for the service. dloper supports OpenAI, Anthropic and Google AI providers. For video review, OpenAI and Anthropic processing may use sampled video frames, while Google processing may receive the full selected video, audio and file name.

Davern Advanced Search is optional and can be enabled by an organisation owner or administrator. OCR, document parsing and media-duration analysis run in the configured dloper worker. A search answer sends the question, exact Drive inventory totals and a bounded set of matching excerpts to the enabled model provider, rather than sending the whole Drive. Turning Advanced Search off deletes the derived search index without changing the original files.

Do not submit data that you are not authorised to share. The provider, processing location, retention and training terms can differ by provider and configuration. We will provide applicable provider and transfer information for the configuration used by your organisation before relying on it for regulated or sensitive workloads.

05

Who receives data

We share data only as needed to provide, secure or administer the Services. Recipients can include:

  • Stripe for payment processing and billing administration.
  • Resend for transactional email delivery.
  • Hosting, storage, database, cache and security providers that operate the infrastructure used by the Services.
  • Enabled Davern model providers to process a request, as described above.
  • Connected social platforms, including Meta or Google/YouTube, when you connect an account or instruct Creator to publish, sync or analyse platform data.
  • Professional advisers, insurers, authorities or other parties when reasonably necessary for legal claims, compliance, corporate activity or protection of users and our Services.

These recipients do not all have the same role. For example, payment processors and social platforms may process data under their own notices and terms.

06

International transfers

Our providers and connected platforms may process data outside the United Kingdom, European Economic Area or your country of residence. Where transfer rules apply, we will use a recognised transfer mechanism, such as an adequacy decision, standard contractual clauses or the UK International Data Transfer Addendum, unless another lawful exception applies.

Contact us if you need the transfer information that applies to your organisation's configured Services.

07

Retention and deletion

We keep personal data for as long as needed for the purposes above, including to provide the Services, resolve disputes, maintain security and meet legal obligations.

  • Dashboard and Drive sessions are configured to expire after 30 days unless ended earlier.
  • Drive items moved to trash follow the organisation's selected trash-retention setting. The default is 15 days.
  • The derived Davern Advanced Search index is deleted when an organisation turns the feature off. Provider processing for individual answers follows the configured provider terms described above.
  • Billing, security, audit and dispute records may be retained after account closure where necessary for legal, security or accounting reasons.

Retention for Creator data, Davern conversations and external-provider processing can depend on your use, the configured provider and applicable law. We will publish more detailed retention schedules as those operational settings are finalised.

08

Your privacy rights

Depending on applicable law, you may have rights to request access, correction, deletion, restriction, portability or a copy of your data, and to object to processing based on legitimate interests. Where processing is based on consent, you may withdraw it.

To exercise a right, email [email protected]. We may need to verify your identity and authority before acting. If you are using an organisation's account, contact that organisation first for personal data it controls.

If you are in the UK, you can complain to the Information Commissioner's Office. You may also have the right to complain to the data-protection authority where you live or work.

09

Cookies and device storage

We use essential cookies and similar storage to keep you signed in, protect multi-factor authentication, remember selected accounts or workspaces, save a theme preference and protect access to password-protected Drive shares.

See our Cookie Notice for the current categories of cookies and browser storage. If we introduce non-essential storage, we will provide the required information and choice before using it.

10

Security, changes and contact

We use appropriate technical and organisational measures designed to protect personal data. No service can guarantee absolute security, so please use strong credentials and notify us promptly if you believe your account has been compromised.

We may update this notice when our Services or legal obligations change. For material changes, we will take reasonable steps to give notice through the Services or another suitable channel. The current version is always published at this address.

Questions about this notice can be sent to [email protected].

dloper legal
PrivacyTermsCookies