Privacy policy
Last updated: October 9, 2026
1. Who is responsible
Sice is a service of Crack S.R.L., Santa Cruz de la Sierra, Bolivia ("Sice", "we"). This policy explains how we handle the personal data of the people who use the platform, the sice.site website and the app at app.sice.site, on Android and on Linux.
We handle data in two ways. We are the controller of your account data and of your relationship with Sice. And we are a processor of the data your business loads about its own customers, patients or staff: we handle that data on behalf of and under the instructions of your business, which is its controller.
For any privacy question, write to contact@sice.site or on WhatsApp at +591 62134124.
2. What data we handle
- Your account: name, username, email, phone and password. The password is stored as a hash (bcrypt), never in readable form. If you set up a passkey or an authenticator app, we store what is needed to verify it.
- Your workspace: the information you and your team load into the modules and the workspace: customers, products, sales, documents, files, posts and whatever else you use.
- Health data: the clinical and aesthetic information a business chooses to manage with the Health module.
- Usage and technical data: the modules you have switched on and your AI usage, which we use for billing; each API key's usage, which we show you under API keys; for each session, the device name and platform, the app version and the IP address; and technical activity logs.
- Location: only when you tap "My location" in the Sales module's prospecting, to show you nearby places.
- Content you send to AI: prompts, text, images or files you choose to process with the artificial intelligence features.
- Accounts you connect: information about the accounts, pages, channels and ad accounts you choose to connect (Meta, TikTok, Google, Microsoft, LinkedIn, WhatsApp Business), the mailboxes you link and the streaming destinations you set up, along with the leads and messages that come in through them.
- Billing: your invoices, credit top-ups and transaction identifiers. Sice does not receive or store card details.
- Proposal reading: when you open a proposal a business sent you, the name you enter with and which sections you read and for how long, so that business can see it.
- Visits to sice.site: we measure visits with our own analytics, without cookies. The details are in the Cookie policy.
When you create your account, your contact details are recorded in Sice's own CRM so we can look after you.
3. What we use it for
- Providing the service: your account, your modules and the features you switch on.
- Protecting your account: verification codes by email or WhatsApp, passkeys and security notices.
- Billing your modules and recording your credit top-ups.
- Making the artificial intelligence features you use possible.
- Sending you notices about your account, your modules and the service.
- Supporting you when you write to us.
- Improving the platform with aggregated usage data.
- Meeting the legal obligations that apply.
We do not sell your personal data or use it to show you third-party advertising.
4. Artificial intelligence
When you use an AI feature, the content you send is passed to a model provider for the sole purpose of producing the result you asked for: Anthropic (Claude) for text, assistants and agents, and Google (Gemini and Veo) to generate and edit images and to generate videos with audio. We may add OpenAI as an alternative provider; if we do, we will say so here.
We keep your conversations with the assistants and an excerpt of each prompt in your credit usage log. We recommend not including unnecessary personal data in what you send to AI. The details are in the Artificial intelligence policy.
5. Health data
When a business uses the Health module, Sice handles that data only as a processor, on behalf of and under the instructions of the business. The business is responsible for obtaining the consent of the people it treats and for complying with the health regulations that apply to it.
Access is limited by the module's permissions, and every access to clinical information is logged: who, when and what action.
6. Who we share data with
Sice runs on servers operated by Crack S.R.L. To provide the service we rely on these providers, each for a specific purpose:
- Anthropic and Google (Gemini and Veo): artificial intelligence features.
- Zoho (Zoho Mail): sending system emails, such as codes, notices and invitations.
- WhatsApp (Meta): sending verification codes and system notices, when you receive them by WhatsApp.
- Google Firebase Cloud Messaging and your browser's push service (Google, Mozilla or Apple, depending on the browser): notifications on your phone and in the browser.
- Google Maps Platform and OpenStreetMap (Nominatim): maps, addresses and prospecting.
- Meta (Facebook, Instagram, WhatsApp Business, Threads and Meta Ads): publishing, messaging, ads and leads, if you connect those accounts.
- TikTok and TikTok Ads: video publishing, connecting ad accounts and receiving leads, if you connect them.
- LinkedIn: publishing to the company pages you manage, if you connect it.
- Google and Microsoft: the accounts you connect (email, calendar, YouTube and Google Business Profile), described in section 7.
- Stock image and video libraries (Pexels, Unsplash, Pixabay, Openverse and Wikimedia Commons): they receive the terms you search for in the design and video studios.
- Streaming servers (RTMP/RTMPS) you specify: relaying your live broadcasts.
- Bolivia's tax authority (Servicio de Impuestos Nacionales, SIN): electronic invoicing, if you connect "SIN Bolivia" in Workspace › Connections › Integrations.
We may also share information when the law or a court order requires it, to protect our legal rights, or when you authorize it.
7. Google and Microsoft accounts
You can connect your Google and Microsoft accounts to Sice. We only access what you authorize on the provider's consent screen, and only for the feature you switch on:
- Gmail and Outlook: we read your mailbox's folders and messages to show them in your Sice inbox, and we send, move, flag or delete emails when you do so from Sice. We keep a copy so the inbox loads fast: each message's body is stored encrypted; the subject, senders and dates are stored unencrypted so they can be searched. The copy is deleted when you disconnect the mailbox.
- Google Calendar: we read, create, update and delete events to keep your Sice calendar in sync with Google's.
- YouTube: we read your channel's information, upload the videos you publish from Sice, read their metrics and manage the live broadcasts you start from Sice.
- Google Business Profile: we read your profile's accounts and locations and publish the updates you choose to publish on your listing.
The mailboxes you connect in Workspace › Connections › Integrations for your CRM store emails as messages on the contact, inside your workspace's database.
Limited use. Sice's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. With the data from your Google and Microsoft accounts:
- We use it only to provide the features you see and use in Sice.
- We do not sell it or use it for advertising, to build advertising profiles or to train artificial intelligence models.
- We only share it when needed to provide those features, to comply with the law or with your authorization. The content of your emails is not sent to artificial intelligence providers. If you ask the Sice assistant to look at your calendar, the events needed to answer are sent to the AI provider only to produce that answer.
- Nobody on our team reads it, unless you give us your express permission for a specific case, it is necessary for security, or the law requires it.
Your control. You can disconnect each account at any time from Sice: when you do, we stop accessing it and delete the credentials we kept. You can also revoke access from your Google or Microsoft account.
8. Security
Data travels encrypted over TLS. The most sensitive data is also encrypted separately inside the database with AES-256-GCM, using a key of its own for each workspace and each person: the passwords of the mailboxes you connect, the access tokens of your integrations and the body of the emails in your personal mailbox. Those keys are protected by a master key kept outside the database, and they can be rotated or revoked for one workspace or person without affecting the rest.
Each workspace has its own database, and we take a daily backup of the databases, kept for about two weeks. We log sensitive actions: access to clinical data, changes to encryption keys, workspace deletions and actions by Sice staff.
9. How long we keep data
- Your account and your workspaces: for as long as you keep them active.
- A workspace you delete: it stays 30 days under "deleted", where you can restore it. After that it is permanently erased: its database, files, encryption keys, API keys and domains. Backups roll over within about two more weeks.
- Your personal account: we delete it when you ask us to (see Data deletion).
- sice.site analytics: visits are deleted automatically after 90 days.
- Proposal reading: deleted automatically after 180 days.
- Platform invoices: we keep them for the accounting and tax obligations that apply.
10. Your rights
You have the right to:
- Access: ask us for a copy of your personal data.
- Rectification: correct inaccurate data, in the app or by asking us.
- Erasure: ask us to delete your data (see Data deletion).
- Portability: download information from several modules as CSV or PDF, and ask us for a full copy by email.
- Objection and withdrawal: object to a specific use and disconnect the accounts you connected at any time.
To exercise them, write to contact@sice.site from your account's email address; we answer within 30 days at most. In Bolivia, the Constitution protects your right to privacy and gives you the privacy protection action. If you live in a country whose data protection law gives you additional rights (for example, the GDPR in the European Union or the LGPD in Brazil), we respect those too.
11. International transfers
The providers in section 6 may process data outside Bolivia, for example in the United States, for the specific purpose we use them for and under their own privacy policies.
12. Minors
Sice is not directed at people under 18 and we do not knowingly collect data from minors. If we learn that an account holds a minor's data, we delete it.
13. Changes to this policy
We may update this policy. We will tell you about important changes by email or in the app at least 30 days in advance.
14. Contact
Crack S.R.L., Santa Cruz de la Sierra, Bolivia. Email: contact@sice.site. WhatsApp: +591 62134124. You can also use our contact page.