1. Introduction
Denz.ai (“we,” “our,” or “us”), operated by World AI Group, provides a customer relationship management (CRM) platform designed for marketing agencies and their clients. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform.
2. Information We Collect
We collect the following types of information:
- Account Information:Â Name, email address, and password when you create an account.
- Lead Data:Â Contact information (name, email, phone number, company) submitted through website forms, Facebook Lead Ads, CallRail, and other integrated sources on behalf of our clients.
- Communication Data:Â Records of emails, SMS messages, and phone calls made through the platform.
- Facebook Data:Â When connected via Facebook Lead Ads, we receive lead form submission data including names, email addresses, and phone numbers as authorized by the Facebook Page administrator.
- Usage Data:Â Information about how you interact with our platform, including pages viewed and features used.
- Device Information:Â Browser type, IP address, and device identifiers for security and analytics purposes.
3. How We Use Your Information
We use collected information to:
- Provide, maintain, and improve the Denz.ai CRM platform
- Process and manage leads on behalf of our clients
- Facilitate communications between our clients and their leads (email, SMS, phone)
- Send notifications about new leads and platform activity
- Generate analytics and reports for client dashboards
- Ensure platform security and prevent unauthorized access
- Comply with legal obligations
4. Facebook Data Usage
When a client connects their Facebook Page to Denz.ai, we access lead data through the Facebook Graph API solely for the purpose of importing leads into the client’s CRM dashboard. We:
- Only access data that the Facebook Page administrator has explicitly authorized
- Use Facebook lead data exclusively for CRM lead management purposes
- Do not sell, rent, or share Facebook user data with third parties
- Do not use Facebook data for advertising or profiling purposes beyond the CRM functionality
- Store Facebook lead data securely and delete it upon client request
5. Data Sharing and Disclosure
We may share information with:
- Service Providers:Â Third-party services that help us operate the platform, including Twilio (SMS/voice), SendGrid (email), and Calendly (scheduling).
- Client Organizations:Â Lead data is shared with the client organization that the lead is associated with.
- Legal Requirements:Â When required by law, regulation, or legal process.
We do not sell personal information to third parties.
5a. SMS / Text Messaging
SMS (text) communications are sent by our customer businesses (such as dental clinics) using the Denz.ai platform — not by Denz.ai itself. Denz.ai is a software provider and processes messages on behalf of its clinic customers. Each clinic customer is responsible for collecting the recipient’s SMS consent before messaging. Messages include follow-ups on a recipient’s own inquiry and invitations to leave feedback about a visit. By providing your mobile phone number to a clinic customer (for example, through the clinic’s website form, a Facebook Lead Ad, or during a visit) and giving consent, you agree to receive such text messages from that clinic through the platform.
- Opt-out: You can opt out of text messages at any time by replying STOP to any message. You may also reply HELP for assistance.
- Message frequency:Â Message frequency varies depending on your interactions with the business.
- Fees:Â Message and data rates may apply according to your mobile carrier plan.
- No sharing for marketing:Â Mobile information and SMS opt-in consent are never sold or shared with third parties or affiliates for marketing or promotional purposes. Text messaging originator opt-in data and consent are not shared with any third parties.
6. Data Security
We implement industry-standard security measures to protect your data, including encrypted data transmission (TLS/SSL), secure password hashing (bcrypt), session-based authentication, and access controls. However, no method of electronic transmission or storage is 100% secure.
7. Data Retention
We retain personal data for as long as the associated client account is active. When a client account is deleted, all associated lead data, communications, and records are permanently removed. Users may request data deletion at any time by contacting us.
7a. UK & EEA Users (UK GDPR / EU GDPR)
For users in the United Kingdom and European Economic Area, World AI Group acts as a data processor on behalf of our customers (clinics and agencies), who are the data controller for lead and patient data. For our own account holders we act as the data controller.
- What we collect:Â Account details (name, email, hashed password, role); lead/patient data submitted to our customers (name, email, phone, message content); call recordings and transcripts; communication logs; technical logs (IP address, user agent, audit events).
- Why we use it (lawful basis):Â Performance of contract (delivering the CRM service); legitimate interests (security, fraud prevention, service improvement); legal obligation (audit logs, tax records); consent (where required, e.g. marketing emails to data subjects).
- Who we share it with: Sub-processors listed at /sub-processors (hosting, OpenAI, Twilio, SendGrid, Stripe, CallRail, Meta). We do not sell personal data.
- How long we keep it:Â Lead and patient data: for the life of the customer’s account; deleted within 30 days of account termination. Audit logs: 365 days. Sessions: 4 hours of inactivity. Backups: rolling 30 days.
- International transfers:Â Data is stored in the United States. UK/EEA transfers rely on the UK International Data Transfer Addendum, EU Standard Contractual Clauses, and the EU-U.S. Data Privacy Framework where applicable.
- Your right to complain: UK users may complain to the Information Commissioner’s Office at ico.org.uk. EEA users may complain to their local supervisory authority.
To exercise your rights, use our Privacy & Data Requests page.
8. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Object to or restrict certain processing activities
- Request data portability
To exercise any of these rights, contact us at the email address below.
9. Data Deletion
Users and leads can request deletion of their personal data by contacting us at admin@worldaigroup.com. Upon receiving a verified deletion request, we will remove all associated personal data within 30 days. For Facebook data, users may also manage their data through Facebook’s privacy settings.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify users of material changes by posting the updated policy on this page with a revised “Last updated” date.
11. Contact Us
If you have questions about this Privacy Policy or our data practices, contact us at:
Denz.ai — World AI Group
Email: admin@worldaigroup.com
+1 (416) 768-8422
+1 725 215 2141
+44 7576 075578




