Privacy Policy for Repilo AI
Last updated: April 12, 2026
This Privacy Policy outlines how Repilo AI ("the Software," "the Riley Engine," "we," "our") collects, uses, and shares personal information from users who interact with our platform. Repilo AI is an advanced AEO (Artificial Intelligence Engine Optimization) software designed to help dental practices and local businesses restructure their digital authority for Large Language Model (LLM) selection. We are committed to complying with all applicable data protection laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).
1. Personal Data We Collect
We collect the following types of personal data from our users:
Identifying and contact information: Name, clinical email address, IP address, phone number, and system login credentials.
AEO Usage Data: Information regarding clinical audits, metadata restructures, interactions with the Riley Engine, and AI selection performance analytics.
Optimization Campaign Data: Data from end-patients (customers of local clinics), including names, email addresses, private feedback, public reviews, and video testimonials submitted via Riley-optimized landing pages.
Browsing and Telemetry Data: IP address, platform usage details, and performance logs collected via cookies and similar tracking technologies.
AI Processing Data: Data processed through our proprietary Riley Engine to generate structured schemas and automated review responses. This includes the content of public reviews and clinical metadata.
2. Purposes of Data Processing
We collect and process personal data for the following purposes:
AEO Aggregation: We collect data from multiple digital touchpoints (Google, Facebook, health directories) to create a unified clinical authority profile.
Automated Riley Responses: Reviews and patient interactions may be responded to automatically using our Riley AI Engine, which generates responses based on clinical parameters.
Selection Request Campaigns: We manage automated email and SMS workflows to encourage patients to submit feedback and video testimonials via optimized capture nodes.
Authority Sharing: We deploy optimized reviews and "AI-Ready" schemas to client websites via widgets and social media automation.
Analytics and LLM Reporting: We provide specialized tools to monitor "Selection Probability" and how your clinic is perceived by generative AI models.
3. Legal Basis for Data Processing
Under the GDPR, we process personal data based on the following legal grounds:
Consent: For the initialization of email campaigns and the use of the Riley Engine for automated responses.
Performance of a Contract: To execute the Riley Sprint and provide AEO services as requested by the user.
Legal Obligation: When we are required to comply with statutory legal requirements.
Legitimate Interests: To harden platform security, optimize the Riley Engine's logic, and improve the effectiveness of AEO outcomes.
4. User Rights (GDPR and CCPA)
Users of Repilo AI have specific rights regarding their personal data, including:
Right of Access & Rectification: The right to request a copy of held data and correct any inaccuracies in your clinical profile.
Right to Erasure ("Right to be Forgotten"): Users can request the total deletion of their personal data from the Riley Engine.
Right to Data Portability: The right to receive your optimized data in a structured, machine-readable format.
CCPA Specifics: California residents have the Right to Know about the categories of data collected, the Right to Opt-out of the sale of data (Note: Repilo AI does not sell user data), and the Right to Non-Discrimination for exercising these rights.
5. Data Sharing
We only share personal data in the following circumstances:
AEO Service Providers: With third-party partners who assist in hosting, email delivery, and technical analytics.
Intelligence Integrations: Repilo AI integrates with third-party platforms (e.g., Google, Facebook, OpenAI, Anthropic) to sync reviews and inject optimized schemas.
Legal Protections: When required to comply with legal obligations or to protect the integrity of the Riley Engine.
6. Data Security
We implement high-level technical and organizational measures, including AES-256 encryption, to protect clinical data from unauthorized access. While we maintain a rigorous security posture, no digital transmission is 100% secure; we cannot guarantee the absolute security of data stored on the cloud.
7. Data Retention
We retain personal data only for as long as the Entity's account is active or as necessary to fulfill the AEO optimization goals and comply with applicable legal requirements.
8. Changes to This Privacy Policy
We reserve the right to update this protocol to reflect shifts in AI technology or global privacy laws. Significant changes will be communicated via the Repilo Dashboard or the registered clinical email.
9. Contact Information
For questions regarding this Privacy Policy or the Riley Data Protocol, contact our Data Privacy Officer at: support@repilo.co.uk.