Legal
Privacy Policy
Effective date: May 5, 2026
Last updated: May 5, 2026
Dovik is a task manager that works inside WhatsApp. This policy explains what we collect, why we use it, where it goes, and what control you have.
Dovik is built and operated by AI4U (“AI4U”, “we”, “us”). AI4U is responsible for Dovik and acts as the data controller.
Contact: .
1. Summary
- We use your data to run Dovik: tasks, reminders, groups, AI replies, billing, support, security, and product reliability.
- We do not sell your data.
- AI4U does not use your messages or tasks to train AI models.
- We use AI providers and settings that do not train on user content.
- We use service providers for WhatsApp messaging, hosting, AI processing, observability, scheduling, payments, and similar operations.
- You can ask to access, export, correct, or delete your data.
2. Data we collect
When you use Dovik, we may collect:
- Your WhatsApp phone number and WhatsApp identifiers.
- Your name, language, timezone, and preferences if you provide or confirm them.
- Messages and other content you send directly to Dovik.
- In WhatsApp groups where Dovik is present, group identifiers, participant identifiers, roles, metadata, and messages where Dovik is mentioned or replied to.
- Tasks, reminders, recurring reminders, notes, groups, assignments, statuses, due dates, completion history, and related activity.
- Usage data such as timestamps, feature use, invite or referral source, delivery status, rate-limit data, and error information.
- Payment and subscription status, invoices, and billing identifiers. Full card details are handled by payment processors, not by us.
- Website data such as language preference, roadmap verification state, functional cookies or local storage, basic server logs, and security logs.
We do not collect your phone contacts, precise location, browsing history, or messages from WhatsApp groups where Dovik is not present.
Data comes from you through WhatsApp or the Dovik website. In groups, some data may come from group members, group admins, WhatsApp/Meta.
If you do not provide the account, message, task, reminder, group, or billing data needed for a feature, Dovik may not be able to provide that feature.
3. WhatsApp groups
Dovik is quiet in group chats. In normal group use, Dovik processes messages where Dovik is mentioned or replied to.
We do not collect or store unrelated group chatter that is not sent to Dovik.
We do not use unrelated group chatter to create tasks, train AI models, or market to users. If we later add optional broader group processing, we will update this policy and make the behavior clear in the product.
4. Why we use data
We use data to:
- Run Dovik and respond to your messages.
- Create, update, assign, search, complete, restore, and delete tasks.
- Send reminders, recurring reminders, daily digests, account notices, product notices, and service messages.
- Manage accounts, groups, roles, permissions, Guest mode, and deletion flows.
- Process payments, subscriptions, cancellations, and billing support.
- Provide customer support and investigate issues you report.
- Protect Dovik, users, and groups from spam, fraud, harassment, illegal content, fake accounts, scraping, attacks, and other abuse.
- Debug, measure reliability, improve product quality, and decide what to build next.
- Comply with legal obligations.
For GDPR users, our main legal bases are:
| Purpose | Main legal basis |
|---|---|
| Run Dovik, manage tasks, groups, reminders, accounts, and support | Contract |
| Security, abuse prevention, debugging, reliability, and product improvement | Legitimate interests |
| Billing, tax, fraud records, and legal compliance | Contract and legal obligations |
| Optional features that legally require consent | Consent |
5. AI processing
Dovik uses AI models through an AI routing provider.
Our policy is:
- AI4U does not use your content to train AI models.
- We use AI routing settings and model providers that do not train on user content.
- Where available and practical, we choose routing and model settings intended to prevent training on user content.
- We configure AI routing and logging to reduce unnecessary storage of user content. If content logging is needed for debugging, security, or support, access is limited and retention is kept short.
Important detail: “no training” and “zero data retention” are not the same thing. Some providers do not train on user content but may retain messages or AI responses for a limited time for abuse monitoring, security, legal, or compliance reasons under their own policies. If we materially change how AI providers may use or retain your content, we will update this policy where required.
Dovik uses AI to help automate task handling and replies. We do not use Dovik to make legal, credit, employment, housing, medical, or similarly significant decisions about you.
6. Human access
We restrict human access to user data.
Limited AI4U team members or service providers may access user data only when needed to operate Dovik, debug a problem, investigate abuse or security issues, provide support, comply with law, or complete a request you made.
7. Sharing and subprocessors
We share data with service providers that help us run Dovik. They may process data only for the service they provide to us.
| Service category | Data involved |
|---|---|
| Database hosting | Account data, tasks, groups, messages, reminders, usage data |
| Web and API hosting | Web/API requests, logs, routing metadata |
| WhatsApp messaging | WhatsApp account, messages, groups, platform metadata, delivery data |
| AI processing | Messages and AI responses, AI usage metadata |
| AI observability and debugging | AI traces, metadata, and message/response content if enabled |
| Error tracking | Error logs, stack traces, diagnostic metadata |
| Workflow scheduling | Reminder/digest metadata and operational logs |
| Payment processing | Billing details, payment status, invoices, card/payment data handled by processor |
We may also share data if required by law, to protect rights and safety, in connection with a business transfer, or with your permission.
8. Where data is processed
Our main production database is hosted in the European Union.
Some subprocessors may process data in other countries, including the United States. Where required, we use appropriate safeguards such as data processing agreements and Standard Contractual Clauses.
9. Retention and deletion
We keep data only as long as needed for Dovik, legal requirements, security, and legitimate business records.
- Account, task, reminder, group, and billing state: kept while your account is active so Dovik can work.
- Raw message delivery records: kept for up to 30 days, unless needed longer for security, debugging, abuse investigation, legal reasons, or unresolved delivery issues.
- Conversation history used for AI context: kept for up to 90 days.
- Observability and error logs: kept only as long as needed for reliability, security, debugging, and cost tracking, with access limited to the team members who need it. We avoid logging raw message and response content where practical; if raw content is logged for debugging, we keep access limited and retention short.
- Guest mode: if you stop paying or your trial ends, we keep data during Guest mode so you can return.
- Inactivity: after 60 days of no activity in Guest mode, your account moves to deletion state.
- Grace period: deletion state has a further 60-day grace period before permanent deletion.
- Backups: deleted data remains in backups for up to 30 days before backup rotation removes it.
- Payment, tax, fraud, security, and legal records may be kept longer if required by law or needed to protect the service.
You can request deletion by emailing . For exports, deletion, and other sensitive requests, we verify that the request comes from the account owner before acting.
10. Your rights
Depending on where you live, you may have the right to:
- Access the data we hold about you.
- Export your data in JSON or CSV.
- Correct inaccurate data.
- Delete your data.
- Object to or restrict certain processing.
- Withdraw consent where processing depends on consent.
- Complain to your local data protection authority.
We respond to privacy requests within the legal deadline that applies, and try to respond sooner when we can.
11. Cookies and website data
The Dovik website uses functional cookies or local storage for things like language preference and roadmap verification state.
We do not use Google Analytics, Facebook Pixel, or third-party ad trackers. If we add website analytics, we will update this policy if required.
12. Children
Dovik is not directed to children. Because Dovik runs through WhatsApp, users must be allowed to use WhatsApp in their country and must have any parent or guardian permission required by law.
If we learn that Dovik is being used by a child without required permission, we will take appropriate action. This may include limiting or deleting the account.
13. Security
We use technical and organizational safeguards, including encryption in transit, encryption at rest where supported by our providers, limited internal access, backups, logging, abuse controls, and operational monitoring.
No system is perfectly secure. If we confirm a data breach that affects your personal data, we will notify affected users and regulators as required by law.
Security reports can be sent to .
14. Changes to this policy
We may update this policy. If we make a material change, such as adding a new category of data, changing how AI providers may use your content, or adding a major subprocessor, we will provide reasonable notice where required.
15. Contact
Privacy:
Legal:
AI4U.