Privacy policy
How personal data is used on the website and in the application. Last updated September 25, 2026.
Who is responsible for your data?
Lontratech, Inc., 1111b S Governors Ave, STE 40827, Dover, DE 19904, United States, operates AmplifyMax. For privacy inquiries, contact dpo@amplifymax.ai. For data a business customer places in its workspace, that customer may determine the purposes of processing and Lontratech may act on its behalf. The details of that relationship must be set out in a separate agreement with the customer.
Data, purposes and legal bases
| Data | Purpose | Legal basis |
|---|---|---|
| Email address and messages you send to our contact address | Respond to your request and follow up on the business discussion you initiated | Legitimate interests or steps before entering a contract |
| Name, work email, role, customer workspace, login codes and sessions | Provide access to the application and protect accounts | Performance of a contract and legitimate security interests |
| Connected or monitored Instagram accounts, statistics, content, media, projects, calendar and member actions | Provide the discovery, creation, organization and publishing services requested by the customer | Performance of a contract or the instructions of the customer acting as controller |
| Credit transactions, purchases, invoices and payment references | Process purchases, maintain accounting records and prevent fraud | Performance of a contract, legal obligations and legitimate interests |
| Technical connection data, error logs and security logs | Maintain the service, diagnose incidents and protect access | Legitimate security and service continuity interests |
The public website has no embedded contact form, advertising tracker or audience analytics tool. Selecting a contact link opens your email application; you decide whether to send a message.
Where does the data come from?
Data comes from you, your workspace administrator, the social accounts a customer chooses to connect, content uploaded by its members, and service providers needed to deliver the service. Information requested for login or payment is needed for that function; without it, the function cannot be provided.
Who receives the data?
Authorized Lontratech personnel and authorized members of your workspace may access data as needed. Data may also be shared, to the extent necessary, with the hosting provider (Hostinger), payment provider (Stripe), and providers used for email, social account connections and publishing, statistics collection, and content generation. Media and instructions submitted for generation are processed by the relevant provider. We do not sell personal data to advertisers.
Transfers outside the European Economic Area
Lontratech is established in the United States, and some providers may process data outside the European Economic Area. Where applicable law requires it, those transfers must be covered by a recognized mechanism, such as an adequacy decision or standard contractual clauses. Ask dpo@amplifymax.ai for details about the providers and safeguards relevant to your workspace.
How long is data kept?
Contact exchanges are kept while we handle the request and then for as long as needed to manage the relationship and defend our rights. Account data, content and projects remain available during the contractual relationship; after it ends, we delete or return them according to applicable instructions and obligations. Billing data is kept for applicable accounting and tax periods. Technical logs are kept for as long as needed for security, diagnosis and evidence of an incident. Backups follow their technical replacement cycle; deleting data from the active system does not immediately erase it from backups.
Your rights
Depending on applicable law, you may request access, correction, deletion, restriction or portability of your data, or object to certain processing. You may also withdraw consent where processing relies on it. Contact dpo@amplifymax.ai; we may ask for information needed to verify your identity. If your request concerns a workspace managed by a business customer, we may refer it to its administrator or act on that customer’s instructions.
If you are in the European Union and believe your rights have not been respected, you may complain to the competent data protection authority, including the CNIL in France.
Security and updates
We use access controls, protected sessions, encrypted connections and logging measures. No measure eliminates every risk. We may update this policy; the date above indicates when it was last updated.