Trust & Security

Last updated August 2026

Everything a procurement or compliance team usually asks before the product conversation begins - roles, contracts, sub-processors, hosting, retention, transfers, AI handling and breach response - in one place.

In one sentence. Plateon is designed around UK GDPR and EU GDPR principles, operates under written data processing agreements, maintains a documented sub-processor list and international transfer safeguards, applies defined retention and deletion controls and protects guest information with appropriate technical and organisational measures.
01

Roles and contracts

Your role
Controller. You decide why and how guest data is processed.
Our role
Processor. We act only on your documented instructions.
The contract
A data processing agreement covering instructions, confidentiality, security, sub-processors, assistance with data-subject rights, breach notification, deletion or return of data and audit rights.
Guest-facing notice
Guests are told they are speaking with a digital concierge acting for your business and can reach a person at any point.
02

Where data lives

Hosting region
[PRIMARY REGION] with [BACKUP REGION] for resilience.
Encryption
TLS in transit; encryption at rest with our infrastructure providers.
Access
Least privilege, individually named accounts, multi-factor authentication, access reviewed on joining and leaving.
Secrets
Held in a managed secret store, never in source control.
Backups
[FREQUENCY] with [RETENTION], restore tested [CADENCE].
Logging
Application and access logs retained for [PERIOD]; personal data minimised in logs.
03

AI handling

Model providers
[PROVIDER(S)], accessed via their business APIs.
Training
Guest conversations are not used to train foundation models. Provider terms prohibit training on API data.
Provider retention
[PERIOD] for abuse monitoring, per provider terms, then deleted.
Grounding
Answers are drawn from your knowledge base, not the open internet.
Automated decisions
No profiling and no decisions with legal or similarly significant effects (Art. 22).

Detail on our approach is set out in Responsible AI.

04

Channels

Web chat
Served from your website; conversation content processed as described above.
WhatsApp
Delivered via the WhatsApp Business Platform through [BSP]. Message content and phone numbers pass through Meta's infrastructure under their terms; roles are documented in your DPA.
Telephone
[Calls are transcribed for handling and not retained as audio / Calls are recorded where you enable it, with the disclosure wording we provide]. Recording settings are yours to choose and local disclosure rules are applied.
05

Retention and deletion

Conversations
Retained for [PERIOD] by default; configurable per client.
Reservation details
Retained for [PERIOD] or passed to your reservation system and not duplicated.
On termination
Data returned in a portable format and deleted from live systems within [PERIOD] and from backups within [PERIOD].
On request
Deletion of a specific guest's data on your instruction, within [PERIOD].
06

International transfers

Plateon is a UK company serving clients internationally. Where a transfer of UK or EEA personal data is restricted, we rely on adequacy where it exists and otherwise on the UK International Data Transfer Agreement, the UK Addendum to the EU Standard Contractual Clauses, or the EU Standard Contractual Clauses - with a transfer risk assessment where the mechanism requires one.

07

Special category and payment data

The Concierge is built for data minimisation: it asks only for what a booking or request needs. Guests sometimes volunteer health-adjacent detail - an allergy, an access requirement - and that information is handled only for the purpose it was given, under your instructions.

Plateon does not request, process or store payment card details. Where a deposit is required, guests are directed to a PCI-compliant payment provider.

08

If something goes wrong

We maintain a documented incident response procedure. On becoming aware of a personal data breach affecting your data, we notify you without undue delay and in any event within [HOURS] hours, with the information you need for your own regulatory obligations, and support your assessment and any notification you must make.

09

Documents available on request

Data processing agreement · Technical and organisational measures · Sub-processor schedule (also published here) · Retention and deletion policy · Incident response summary · International transfer documentation · Records of processing activities extract relevant to your deployment.

Write to hello@plateontechnology.com and we will send them.