Legal
Privacy Policy
Last updated: 1 March 2026
FinSight ("we", "our", "us") is operated by Aras Digital Products d.o.o. in partnership with BSG Advisory™. This Privacy Policy explains how we collect, use, store and protect information when you use the FinSight platform.
1. What information we collect
Account information
When you register for FinSight, we collect your name, work email address, company name and role. This information is used to create and manage your account.
ERP query data
When you submit prompts through FinSight, we process the natural language queries you enter and the results returned from your connected ERP system. We access your ERP data in read-only mode — we never write to, modify or delete any records in your source systems.
Usage and telemetry data
We collect information about how you interact with FinSight, including pages visited, features used, query response times and error logs. This data is used solely to improve the product.
Technical data
We automatically collect standard log data including IP address, browser type, operating system and referring URLs when you access our platform.
2. How we use your information
- To provide, operate and improve the FinSight service
- To authenticate your identity and authorise access to connected ERP systems
- To respond to support requests and communicate about your account
- To detect and prevent fraud, abuse or security incidents
- To comply with legal obligations
We do not sell your personal data. We do not use your ERP data to train AI models accessible to other customers.
3. Legal basis for processing (GDPR)
For users in the European Economic Area, we process personal data on the following legal bases:
- Contract performance — to deliver the services you have agreed to
- Legitimate interests — to improve our services, ensure security and prevent fraud
- Legal obligation — where required by applicable law
- Consent — for optional communications such as product updates, which you may withdraw at any time
4. Data retention
Account data is retained for the duration of your active subscription plus 90 days after termination, after which it is permanently deleted. Query logs are retained for 30 days by default. You may request earlier deletion at any time.
5. Data sharing
We share your data only with:
- Cloud infrastructure providers — servers and databases used to operate FinSight, bound by data processing agreements
- AI model providers — anonymised query context may be sent to AI inference APIs to generate responses; no personally identifiable information is included in these calls
- Legal authorities — only when required by law or valid legal process
6. Your rights
Under GDPR and applicable data protection law, you have the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Request deletion of your data ("right to be forgotten")
- Object to or restrict certain types of processing
- Receive your data in a portable format
- Lodge a complaint with your national data protection authority
To exercise any of these rights, contact us at privacy@finsight.ai.
7. Cookies
We use essential cookies to operate the platform and optional analytics cookies to understand usage. See our Cookie Policy for full details.
8. Security
We implement industry-standard technical and organisational measures to protect your data. See our Security page for details.
9. Changes to this policy
We may update this policy from time to time. We will notify you of material changes by email or by a notice on the platform. Continued use of FinSight after changes take effect constitutes acceptance of the revised policy.
10. Contact
For privacy-related questions, contact our Data Protection team at privacy@finsight.ai.