Laiye User Center Privacy Notice
Last Updated: October 2026
Effective from: October 2026
This Laiye User Center Privacy Notice (“Notice”), together with the Laiye Privacy Policy (available at https://laiye.com/en/legal/privacy), explains when, how, and why your personal information is processed in connection with the services (“Services”) offered by Laiye Pte. Ltd. (“We”, “Us”, or “Our”), including but not limited to Laiye ADP, Laiye APA, and Laiye Worker. In case of any inconsistency between this Notice and the Laiye Privacy Policy, this Notice shall prevail.
Important Notice:
1. This Notice does not apply to the enterprise version of the Services provided by us. Please find relevant service agreement or license agreement for more information;
2. Children must not use the Services for any purpose. By Children, we mean users under the age of 18, or such other age threshold at which the applicable jurisdiction sets a different minimum age for the processing of personal information. We neither seek nor knowingly collect personal information from any individual below the applicable legal minimum age for any purpose.
3. If you do not agree to the processing of your personal information in the way this Notice describes, please do not provide your information when requested and stop using the Services. By using the Services, you are acknowledging how we process your personal information as described in this Notice and the Laiye Privacy Policy and, to the extent performance of a contract or legitimate interest cannot be relied upon in your jurisdiction to process the personal information, you consent to the processing of your personal information as described in this Notice.
4. If you have any questions about anything in this Notice, or want to exercise any rights you may have, please contact us via privacy@laiye.com.
5. If we make any changes to this Notice, we will post the updated Privacy Policy here and notify you in accordance with relevant legal requirements.
6. Except as otherwise prescribed by law, in the event of any discrepancy or inconsistency between the English version and the Chinese version of this Privacy Policy, the English version shall prevail.
How We Process Your Personal Information
If you choose to integrate third-party applications via a model context protocol (“MCP”) connector, or upload any files and information, including personal information, as part of your Inputs, we will collect this information, and this information may be reproduced in Outputs.***When providing Inputs, please do not disclose your personal information or those belonging to other individuals. Any personal information you include in your prompts may be processed by third-party providers and reproduced in Outputs.
1. to process your Inputs and provide you with Outputs in accordance with your instructions;
2. to provide you with a history of your conversations and dialogue with the Services;
3. for troubleshooting and to detect and resolve any bugs.
It is in our legitimate interests to troubleshoot errors and improve our services.
Detailed desktop logs are stored locally by default. If you choose to submit a diagnostic report, we collect the relevant logs and additional system information included in that report, such as operating system version and processor architecture. The report may also include diagnostic records about the delivery and interaction status of notifications sent by our application, and any screenshots you attach.
How We Store and Share Your Personal Information
We have a global platform and may transfer your personal information outside the location in which you are based for the purposes described in this Notice. Your personal information will be stored in servers in Singapore. We also have global support, engineering, and other teams who support the Services, including from the People’s Republic of China, who may access your personal information for the purposes specified in this Notice.
For the provision of the Services, the personal information we collect from you may be transferred to, remotely accessed, locally stored, and/or otherwise processed outside of the jurisdiction in which you are based for the purposes described in this Notice. Safeguards, including but not limited to data processing agreements with all third-party processors, will be implemented by us where required by applicable laws to protect your personal information. We are not responsible for the processing of your personal information by third parties. Please review their data processing policies and other related documentation for more information. Any link to a third-party site or service does not mean our endorsement or approval of such site or service.
We will share your personal information with third parties in the following situations:
Third parties that provide services in support of the Services, including providers of services that process personal information identified in this policy in our legitimate interests of efficiently providing the Services. For example, we will transfer your personal information to:
- Third-party AI LLM providers that support the Services by processing your Inputs and providing you with Outputs;
- Instant messaging channel you chose to integrate into the Services (“Messaging Platform”), enabling you to interact with the Services via such platform;
- Third-party payment processors that process payment instruction data for payment of the Service; and
- Third-party service providers for Skills and MCP connectors that process personal information in order to provide Skills and MCP Connectors that you have installed or configured on the Service (where such feature is available in the version you use).
- Default MCP connectors: third-party MCP connectors we make available to you out of the box. It remains inactive until you turn it on, then we pass the data needed to relevant provider to carry out your instruction. Such providers, as independent controllers of the data it receives, processes your data under its own privacy notice and terms.
- MCP connectors chosen by you: Custom or self-hosted MCP servers you choose are not part of our default set. We do not select, review, integrate, test, or monitor them. We make no representation about the provider’s identity or lawfulness. If you install or connect such MCP connectors, you are at your own risk and you are solely responsible for it.
- Google Workspace API user data: We do not use data obtained through Google Workspace APIs (including Gmail) to develop, improve, or train generalized AI and/or ML models, and do not transfer such data to any third party for those purposes. This applies regardless of whether you have enabled the AI model training setting. Our use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy (available via https://developers.google.com/terms/api-services-user-data-policy).
Companies within our corporate group who process your personal information in our legitimate interests to efficiently provide the Services. All such group companies may only use your personal information in accordance with this Notice. We may also disclose your personal information to third parties if we either sell, transfer, merge, consolidate, or reorganize any part(s) of our business.
Third parties to ensure safety, security, or compliance with laws. We may disclose your personal information to: (a) enforce our terms and conditions; (b) detect, prevent, or otherwise address security, fraud, or technical issues; or (c) protect the rights, property, or safety of us, our users, a third party, or the public as required or permitted by law.
Regulators, judicial authorities, law enforcement agencies, and professional advisors. There are circumstances in which we may be legally required to disclose personal information about you, such as to comply with legal obligations or processes. We may disclose your personal information to auditors, law firms, or accounting firms.
The Security of Your Personal Information
We maintain information security and access policies governing the use of our systems and technology, and safeguard personal data through appropriate technical safeguards, including encryption, hashing, role-based access controls, and data access audit logs.
Unfortunately, internet-based information transfer cannot be guaranteed to be entirely secure. While we implement and maintain reasonable safeguards to protect your personal information, we cannot guarantee the security of information transmitted over the internet, and all such transmissions are made at your own risk.
Data Retention
Your personal data will be retained no longer than necessary to satisfy the relevant purposes described above, save where we are legally required or authorized to retain it for an extended period.
Diagnostic and usage data
Billing and consumption information