Privacy Policy
Effective Date: 05/04/2025
Last Updated: 17/07/2025
1. Introduction
MLG Projects ("we," "our," or "us") operates the website khairos.ai (the "Service") and is committed to protecting your privacy and personal data in accordance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services.
2. Data Controller Information
Legal Entity: MLG Projects
Registration Number: KVK 94643342
VAT ID: NL11INGB0398147671
Address: Minckelersstraat 7B, Maastricht 6211GX, Netherlands
Contact: mattia@khairos.ai
Data Protection Officer: mattia@khairos.ai
3. Information We Collect
3.1 Personal Data
We may collect the following types of personal data:
- Contact Information: Name, email address, phone number, company name, job title
- Technical Data: IP address, browser type, operating system, referring URLs, access times
- Usage Data: Pages visited, time spent on pages, click-through rates, user interactions
- Communication Data: Messages, feedback, and correspondence you send to us
- Marketing Data: Your preferences for receiving marketing communications
3.2 Sensitive Data
We do not intentionally collect sensitive personal data (such as health data, political opinions, or religious beliefs) unless explicitly required for our services and with your explicit consent.
4. Legal Basis for Processing
We process your personal data under the following legal bases:
- Consent: When you have given clear consent for specific processing activities
- Contract: When processing is necessary for performing a contract with you
- Legitimate Interests: When we have legitimate business interests that do not override your rights
- Legal Obligation: When we must comply with legal requirements
- Vital Interests: When necessary to protect someone's life or health
5. How We Use Your Information
We use your personal data for:
- Service Provision: Delivering our AI automation services and customer support
- Communication: Responding to inquiries, sending service updates, and providing customer support
- Marketing: Sending promotional materials (with your consent) and analyzing market trends
- Legal Compliance: Meeting legal obligations and protecting our rights
- Website Improvement: Analyzing usage patterns to enhance user experience
- Security: Protecting against fraud, unauthorized access, and security threats
6. Data Sharing and Disclosure
6.1 Third-Party Service Providers
We may share your data with trusted third parties who provide services on our behalf:
- Cloud hosting providers (for data storage and processing)
- Email marketing platforms (for communication purposes)
- Analytics providers (for website performance analysis)
- Customer relationship management (CRM) systems
- Payment processors (for transaction processing)
6.2 Legal Requirements
We may disclose your information when required by law, court order, or to protect our rights, property, or safety.
6.3 Business Transfers
In case of merger, acquisition, or sale of assets, your data may be transferred to the new entity.
7. International Data Transfers
When we transfer your data outside the European Economic Area (EEA), we ensure adequate protection through:
- Adequacy Decisions: Transferring to countries with adequate data protection
- Standard Contractual Clauses: Using EU-approved contractual terms
- Binding Corporate Rules: When applicable for multinational organizations
- Specific Derogations: Only when necessary and with appropriate safeguards
8. Data Retention
We retain your personal data only as long as necessary for the purposes outlined in this policy:
- Contact Information: 3 years after last contact or until consent is withdrawn
- Marketing Data: Until consent is withdrawn or legal requirements expire
- Technical Data: 12 months for analytics purposes
- Legal Obligations: As required by applicable laws (typically 7 years for business records)
9. Your Rights Under GDPR
You have the following rights regarding your personal data:
Right of Access: Request copies of your personal data and information about how we process it.
Right to Rectification: Request correction of inaccurate or incomplete personal data.
Right to Erasure ("Right to be Forgotten"): Request deletion of your personal data under certain circumstances.
Right to Restrict Processing: Request limitation of processing your personal data in specific situations.
Right to Data Portability: Receive your personal data in a structured, machine-readable format.
Right to Object: Object to processing based on legitimate interests or for direct marketing purposes.
Rights Related to Automated Decision-Making: Request human intervention in automated decision-making processes.
Right to Withdraw Consent: Withdraw consent at any time for consent-based processing.
To exercise these rights, contact us at: mattia@khairos.ai
10. Data Security
We implement appropriate technical and organizational measures to protect your personal data:
- Encryption: Data encryption in transit and at rest
- Access Controls: Strict access limitations and authentication
- Regular Security Audits: Ongoing assessment of security measures
- Staff Training: Regular privacy and security training for employees
- Incident Response: Procedures for handling data breaches
11. Cookies and Tracking Technologies
We use cookies and similar technologies to enhance your experience. For detailed information, please see our separate Cookie Policy.
12. Children's Privacy
Our services are not intended for individuals under 16 years of age. We do not knowingly collect personal data from children under 16.
13. Changes to This Privacy Policy
We may update this Privacy Policy periodically. We will notify you of significant changes by:
- Posting an updated version on our website
- Sending email notifications for material changes
- Providing prominent notice on our website
14. Complaints and Supervisory Authority
If you believe we have violated your privacy rights, you can:
1. Contact us directly: mattia@khairos.ai
2. File a complaint with your local supervisory authority
Netherlands Data Protection Authority:
Autoriteit Persoonsgegevens
Website: autoriteitpersoonsgegevens.nl
Phone: +31 70 888 8500
15. Contact Information
For questions about this Privacy Policy or our data practices:
MLG Projects
Minckelersstraat 7B
Maastricht 6211GX, Netherlands
Email: mattia@khairos.ai
KVK: 94643342
*This Privacy Policy is effective as of 05/04/2025 and will remain in effect except with respect to any changes in its provisions in the future, which will be in effect immediately after being posted on this page.*