Last updated: April 2026
Privacy Policy
This policy explains how Gentrico collects, uses and protects your personal data under Articles 13 and 14 of Regulation (EU) 2016/679 (GDPR). Gentrico is an Italian service and data processing is governed by Italian and EU law.
1. Data controller
The data controller is Gentrico (gentrico.com). For any privacy request, contact us at: privacy@gentrico.com
2. Data collected
We collect the following categories of personal data:
- Contact data: email address and phone number provided at sign-up
- Booking data: selected businesses, requested dates and times, appointment preferences
- Voice data: recordings of calls made by the AI agent on your behalf (retained for service-quality purposes)
- Browsing data: IP address, device type, pages visited
3. Purpose of processing
We process your personal data for the following purposes:
- Fulfilling bookings via the AI voice agent: our system calls businesses on your behalf. Legal basis: performance of the contract (Art. 6(1)(b) GDPR)
- Account management and service communications: booking notifications, confirmations, reminders. Legal basis: performance of the contract (Art. 6(1)(b) GDPR)
- Service improvement: call analysis to improve the voice agent. Legal basis: legitimate interest (Art. 6(1)(f) GDPR)
- Marketing communications: only with explicit opt-in. Legal basis: consent (Art. 6(1)(a) GDPR)
4. Automated processing and artificial intelligence
Gentrico uses an AI-based voice agent to place phone calls to businesses. The AI processes:
- Your booking preferences (date, time, type of service)
- The business's spoken replies during the call
AI processing is used solely to complete the requested booking. No automated decision produces significant legal effects on you. You can always contact the business directly to change or cancel a booking.
5. Recipients
Your data may be shared with the following categories of providers strictly necessary to operate the service:
- Cloud infrastructure providers (servers located in the EU)
- Telephony providers for AI-placed calls
- Email and notification services
- Analytics and monitoring tools
All providers are bound by GDPR-compliant Data Processing Agreements (DPAs). We never sell your data to third parties.
6. Transfers outside the EU
Some providers operate in the United States. Data transfers to them rely on appropriate safeguards, including the Standard Contractual Clauses approved by the European Commission.
7. Retention
We retain data for the following periods:
- Account data: for the duration of the contract and up to 10 years afterwards for tax obligations
- Voice recordings: up to 90 days after the call, for quality purposes and dispute resolution
- Browsing data: up to 26 months
- Waitlist: until service launch and up to 12 months afterwards
8. Your rights
Under the GDPR you have the right to:
- Access your personal data
- Request rectification or erasure
- Restrict or object to processing
- Request data portability
- Withdraw consent at any time (without affecting the lawfulness of prior processing)
To exercise your rights, email privacy@gentrico.com. You also have the right to lodge a complaint with the Italian Data Protection Authority (Garante per la protezione dei dati personali, www.garanteprivacy.it).
9. Cookies
For details on our use of cookies, see our Cookie Policy.