Privacy Policy
A full lawyer-reviewed policy (PT + EN) will replace this page before public launch. What is here today is accurate and binding on us.
Who is responsible
The data controller is the operator of Zeelity, identified in the Legal notice. Contact: email us.
What we process, and why
- Account data (phone number, name, email): to create and secure your account. Legal basis: contract.
- Fiscal data (NIF, NISS, address, activity details, earnings you add): to prepare your declarations and documents. Legal basis: contract and legal obligations of the accounting service.
- Identity verification, including biometric face data: when you choose to verify your identity, our verification partner Didit (EU-based; data processed and stored in the EU) compares your ID document with a short selfie. This uses biometric data and happens only with your explicit consent, given in the app before the check starts. The result is kept as required for anti-money-laundering rules (Law 83/2017); the biometric comparison itself is not used for anything else.
- Call scheduling: booking details are stored in our systems (Google Cloud / Firebase, EU region) and mirrored to our operations calendar to run your setup call.
Where your data lives
Google Cloud / Firebase, EU region, protected so that only your signed-in account (and our authorized operations) can access it. We never sell data.
Your rights
Access, rectification, erasure, portability, restriction, objection, and the right to withdraw consent at any time — write to us (email us). You may complain to the CNPD (cnpd.pt).
Retention
Account and fiscal data: while your account exists and as tax law requires. Identity-verification records: as required by Law 83/2017. Everything else is deleted with your account.