Privacy Policy
Last updated: 1 June 2026
This Privacy Policy explains how mikloskovacs.io collects, uses, stores, shares, and protects personal data when you visit our website, complete an assessment, purchase a service, join an AI intake call, subscribe to emails, or interact with our advertising and analytics tools.
The website and services are operated by Kovács András Miklós E.V., trading as MiklosKovacs.io ("MiklosKovacs.io", "we", "us", or "our"). For the purposes of the EU General Data Protection Regulation, UK GDPR, and similar data protection laws, we are generally the controller of personal data collected through this website and our services.
Controller details:
Legal name: Kovács András Miklós E.V.
Business form: sole entrepreneur
Registered office: 9700 Szombathely, Széll Kálmán út 51. 1/5., Hungary
Sole entrepreneur registration number: 30042681
Tax number: 65953916-1-38
EU VAT number: HU65953916
Website: https://mikloskovacs.io
Privacy contact: hello@mikloskovacs.io
1. Personal data we collect
Depending on how you interact with us, we may collect the following categories of personal data:
- Identity and contact data: name, email address, phone number, company name, job title, role, country, website, and similar business contact details.
- Assessment data: answers submitted through free or paid assessment forms, including business workflows, time leaks, bottlenecks, tools used, AI usage, urgency, priorities, company size, industry, readiness, and related business context.
- AI intake data: voice recordings, call transcripts, call summaries, structured notes, questions, responses, and related metadata when you use an AI voice or web intake experience.
- Payment and order data: checkout status, purchase amount, currency, product purchased, payment link or session metadata, billing details, customer name, business name, email address, and tax-related information. Full card numbers are processed by Stripe and are not stored by us.
- Communication data: emails, replies, support requests, consultation notes, and other messages you send to us.
- Marketing data: email consent status, newsletter subscription status, list membership, lead source, campaign source, UTM parameters, email opens, clicks, unsubscribe status, and lead temperature or funnel stage.
- Website and analytics data: IP address, device information, browser type, pages viewed, referring URLs, approximate location, session activity, cookie identifiers, advertising identifiers, and similar technical information.
- Implementation data: business process information, tool names, system screenshots, non-sensitive examples, workflow documentation, and project details that you choose to share with us.
We ask you not to provide passwords, API keys, bank details, payment card details, confidential customer records, trade secrets, legal records, health data, highly sensitive personal data, or information you are not authorised to share.
2. Sources of personal data
We collect personal data directly from you when you submit forms, complete assessments, join calls, purchase services, email us, or interact with our website. We may also receive data from service providers and platforms used to operate our funnel, including Tally, Stripe, Retell AI, Brevo, Google, Meta, Make.com, OpenAI, WordPress, and related business tools.
3. How we use personal data
We use personal data for the following purposes:
- To provide the Free AI Workflow Assessment and send your requested result.
- To provide paid AI Workflow Assessment services and related reports.
- To operate AI intake calls, recordings, transcripts, and structured assessment notes.
- To analyse workflows, bottlenecks, repeated tasks, AI readiness, and practical improvement opportunities.
- To process payments, confirm orders, create customer records, and manage fulfilment.
- To send transactional emails, onboarding instructions, assessment links, service updates, and customer support replies.
- To send marketing emails and nurture sequences where permitted by law.
- To measure website performance, advertising performance, campaign attribution, and conversion activity.
- To build and manage audiences for Facebook, Instagram, Google Ads, remarketing, and similar advertising where permitted and subject to your consent choices.
- To maintain records, prevent fraud, secure our services, troubleshoot automation errors, and comply with legal obligations.
- To improve our forms, prompts, reports, workflows, website content, and service delivery.
4. Legal bases under EU and UK data protection law
Where the EU GDPR or UK GDPR applies, we rely on the following legal bases:
- Contract: to provide services you requested or purchased, including paid assessments, intake calls, customer support, and order fulfilment.
- Consent: for marketing emails where required, non-essential cookies, advertising pixels, certain analytics or remarketing activities, and recording/transcription where consent is required.
- Legitimate interests: to operate and improve our business, respond to enquiries, send relevant business-to-business follow-up where permitted, secure our systems, measure basic performance, prevent fraud, and maintain business records.
- Legal obligation: to comply with tax, accounting, consumer protection, data protection, and other legal requirements.
Where we rely on legitimate interests, we consider whether our interests are balanced against your rights and expectations. You may object to processing based on legitimate interests where applicable.
5. AI processing and transparency
We use AI tools to support assessment intake, workflow analysis, summarisation, drafting, classification, and internal preparation of materials. AI may help us process your assessment answers, call transcripts, and business context. AI-assisted outputs may be reviewed, edited, or rejected by a human before they are used in a paid assessment report.
When you interact with our AI voice assistant or AI intake experience, we aim to make clear that you are interacting with an AI-assisted system. We do not use AI to make solely automated decisions that produce legal or similarly significant effects for you.
Our AI-related processing is intended for business workflow diagnostics and service delivery. It is not intended to provide legal, tax, financial, medical, employment, security, or compliance advice.
For EU users, our AI disclosures are designed to support the transparency principles of the EU AI Act. In practical terms, this means we identify AI-assisted interactions, avoid presenting AI intake as a human consultant, and keep human review in the paid assessment process.
6. Cookies, analytics, and advertising technologies
We use cookies, pixels, tags, scripts, local storage, and similar technologies to operate the website, remember preferences, measure usage, understand campaign performance, and support advertising.
These technologies may include:
- Essential technologies: required for website operation, security, form submission, checkout, and preference storage.
- Analytics technologies: such as Google Analytics, used to understand website traffic and performance.
- Advertising technologies: such as Google Ads, Meta/Facebook/Instagram pixels, conversion tracking, remarketing, and audience measurement.
- Email technologies: such as Brevo email open and click tracking, where enabled.
Where required by law, we ask for your consent before placing non-essential cookies or using advertising and analytics technologies. You can manage cookie choices through the cookie banner or settings available on the website. You can also control cookies through your browser settings.
Advertising partners may use information from our website and your interactions with ads to provide measurement, attribution, retargeting, and personalised advertising. This may be considered "sharing" or "sale" of personal information under some US state privacy laws, even if we do not sell personal information for money.
7. Marketing emails
If you request assessment results, download content, join a list, purchase a service, or otherwise ask to receive follow-up, we may send relevant emails. Marketing emails are sent through Brevo or similar providers.
You can unsubscribe from marketing emails at any time by using the unsubscribe link in the email or by contacting hello@mikloskovacs.io. We may still send transactional or service-related emails where necessary.
8. Who we share personal data with
We share personal data only where needed for the purposes described in this Privacy Policy. Recipients may include:
- Form and assessment providers: Tally and related form tools.
- AI and automation providers: Retell AI, OpenAI, Make.com, and related automation tools.
- Email and CRM providers: Brevo, Gmail, Google Workspace, and related communication tools.
- Payment providers: Stripe and related payment, billing, and fraud prevention services.
- Analytics and advertising providers: Google Analytics, Google Ads, Meta/Facebook/Instagram, and related measurement technologies.
- Website and hosting providers: WordPress, hosting, security, backup, and infrastructure providers.
- Professional advisers: accountants, lawyers, tax advisers, and consultants where necessary.
- Authorities: regulators, courts, tax authorities, law enforcement, or public bodies where required by law.
We require service providers to process personal data only for authorised purposes and to apply appropriate security and confidentiality measures where required by law.
9. International data transfers
We operate from Hungary and may use service providers located in the European Union, United Kingdom, United States, and other countries. Personal data may therefore be transferred outside your country or region.
Where EU or UK data protection law requires transfer safeguards, we rely on appropriate mechanisms such as adequacy decisions, the EU Standard Contractual Clauses, the UK International Data Transfer Agreement or UK Addendum, Data Privacy Framework participation where applicable, data processing agreements, and transfer risk assessments where needed.
10. How long we keep personal data
We keep personal data only for as long as reasonably necessary for the purposes described in this Privacy Policy, unless a longer retention period is required by law.
Typical retention periods include:
- Assessment submissions and related email records: up to 24 months after last meaningful interaction, unless needed for an active customer relationship.
- Paid assessment records, reports, intake notes, and customer communications: up to 7 years where needed for contract, tax, accounting, and legal records.
- Raw AI intake call recordings and raw transcripts stored in Retell AI: generally up to 30 days after the call, unless a longer period is necessary for service delivery, dispute resolution, legal compliance, or a specific customer request.
- Structured assessment notes, report materials, and customer records created from an AI intake call: retained according to the paid assessment and customer record periods above.
- Marketing contact records: until you unsubscribe, withdraw consent, object, or the record becomes inactive and no longer needed.
- Cookie and analytics data: according to the settings of the relevant analytics and advertising tools and your consent choices.
We may anonymise or aggregate data so it no longer identifies you and use it for analytics, service improvement, and business planning.
11. Your privacy rights
Depending on your location and applicable law, you may have rights to:
- Access the personal data we hold about you.
- Request correction of inaccurate or incomplete data.
- Request deletion of your personal data.
- Request restriction of processing.
- Object to processing based on legitimate interests or direct marketing.
- Withdraw consent where processing is based on consent.
- Request data portability.
- Complain to a data protection authority.
To exercise your rights, contact hello@mikloskovacs.io. We may need to verify your identity before responding.
12. EU and UK residents
If you are in the European Union, European Economic Area, or United Kingdom, you have the rights described above under the EU GDPR or UK GDPR. You also have the right to lodge a complaint with your local supervisory authority.
In Hungary, the supervisory authority is the Hungarian National Authority for Data Protection and Freedom of Information (NAIH): https://www.naih.hu.
In the United Kingdom, the supervisory authority is the Information Commissioner's Office (ICO): https://ico.org.uk.
We are established in the European Union. If applicable law requires us to appoint a UK representative for specific UK processing activities, we will update this Privacy Policy with the representative's details.
13. United States privacy rights
If you are located in the United States, you may have privacy rights under state privacy laws, depending on your state and whether the relevant law applies to us. These rights may include the right to know, access, correct, delete, obtain a copy of personal information, opt out of targeted advertising, opt out of sale or sharing of personal information, and appeal a privacy request decision.
We do not sell personal information for money. However, our use of advertising cookies, pixels, remarketing, and similar technologies may be considered "sale", "sharing", or targeted advertising under some US state privacy laws. You can opt out by using our cookie settings, disabling advertising cookies, using browser controls where available, or contacting us at hello@mikloskovacs.io.
We do not knowingly collect sensitive personal information for the purpose of inferring characteristics about you. Please do not submit sensitive personal information through our forms or intake calls.
14. Security
We use reasonable technical and organisational measures to protect personal data against unauthorised access, loss, misuse, alteration, or disclosure. No website, email system, AI tool, or internet transmission is completely secure, so we cannot guarantee absolute security.
You are responsible for ensuring that any information you share with us is appropriate, lawful, and not unnecessarily sensitive.
15. Children
Our website and services are intended for adults and business users. We do not knowingly collect personal data from children under 16. If you believe a child has provided personal data to us, contact us so we can review and delete it where appropriate.
16. Links to other websites
Our website may link to third-party websites, tools, checkout pages, samples, or resources. We are not responsible for the privacy practices or content of third-party sites. Please review their privacy policies before providing personal data.
17. Changes to this Privacy Policy
We may update this Privacy Policy from time to time. The updated version will be posted on this page with a new "Last updated" date. If changes are material, we may take additional steps to notify you where required by law.
18. Contact us
If you have questions about this Privacy Policy or want to exercise your privacy rights, contact us at:
MiklosKovacs.io
Email: hello@mikloskovacs.io
Website: https://mikloskovacs.io
