Version 0.1

Trust at Halvday

A clear view of how Halvday approaches customer data, security, artificial intelligence, and compliance.

Privacy and data

Purpose-bound processing with clear documentation. Sumosmash UG (haftungsbeschränkt) operates Halvday. Customer context is processed to provide requested sales research functionality. Roles, legal bases, retention, and rights are described in the Privacy Policy and customer contract documents.

Privacy questions and data-subject requests can be sent to privacy@halvday.com. General product and procurement questions can be sent to hello@halvday.com.

DPA / AVV

The versioned customer DPA, public-safe technical measures, and electronic acceptance flow are being completed. This page does not describe them as available before approval.

Halvday uses selected infrastructure and service providers. The provider-by-provider location and transfer review is still being completed, so we do not claim that all processing remains exclusively in the European Union.

Verified claims

Infrastructure, provider, training, and compliance statements appear here only after their production evidence has been reviewed.

Security

A useful public summary without sensitive control details. The public-safe security summary is prepared from reviewed operational evidence. It explains the controls customers need to assess without publishing exploitable implementation detail.

Access controls

The reviewed summary covers administrative access, authentication safeguards, production access, and separation between customer tenants.

Resilience

It covers encrypted transmission, provider-supported storage protection, dependency maintenance, backups, and recovery measures.

Incident response

It covers logging boundaries, retention, deletion propagation, incident handling, and the route for responsible security reports.

Additional reviewed security and compliance information may be available to qualified customers and prospects on request.

Responsible AI

AI supports research, not hidden decision-making. Halvday uses AI to turn a sales question into reviewable research, signals, prioritisation, and outreach preparation. Users remain responsible for material decisions and external communication.

AI limitations

AI output can be incomplete or incorrect, public information can be outdated, and a buying signal is an indicator rather than confirmation of purchasing intent. Scores indicate sales relevance, not a person's character, reliability, or value.

Halvday is intended for B2B sales intelligence and human-reviewed outreach preparation. It is not intended for recruitment, employee evaluation, credit, insurance, essential-service access, law enforcement, social scoring, emotion recognition, sensitive-trait inference, or other legally significant decisions about natural persons.

AI Act readiness

Halvday is documenting its AI systems, intended purpose, human oversight, interaction disclosure, AI literacy, and output provenance. This Trust Center is not a certification, and no broad compliance badge is claimed while applicable roles and feature-level controls remain under review.

Customer data

Customer context may be processed by selected AI providers to deliver requested product functionality. Provider-level training, logging, retention, routing, and transfer controls are reviewed before a narrower public no-training statement is made.

Documents

Authoritative sources and their publication status. The Trust Center summarizes these materials; it does not replace them.