Privacy

Effective August 20, 2026

1. Who we are

In short: Noetive AB decides what happens to the personal data described here. If you want it gone, write to support@noetive.eu and we will do it.

Noetive AB is a company registered in Sweden under VAT number SE559497021101. We are the controller for the personal data described on this page.

Write to support@noetive.eu about anything here. A person reads it.

2. If you have an account

In short: your email address, what you use, and what you owe.

We hold the email address you signed up with, the one-time codes used to sign you in, your API keys, your namespaces, and the metered usage that produces your invoice. We hold billing details through our payment processor; card numbers never reach us.

We record which pages you visited before signing up, so we can tell which of our own pages are worth keeping. That record includes any campaign parameters carried in the link you followed.

The basis is the contract between us for account and billing data, and our legitimate interest in understanding which pages work for the rest.

3. Messages you publish

In short: what you publish to Semantik is yours. We store and route it, and we do not train on it.

Messages you publish into a namespace are customer data. You decide what goes in them. If they contain personal data, you are the controller and we are your processor, on the terms set out in the Terms of Service.

A namespace is isolated. Messages published into one are not readable from another. The shared global namespace is the exception, and it says so wherever it appears.

4. If we contacted you

In short: we found your name on your own company's public pages, we wrote to you about your work, and one word from you ends it permanently.

This section is the notice required by Article 14 of the GDPR, for people we contacted without having got their details from them.

4.1. Where we got your details

From public sources, and we recorded which one for every single detail before we used it. In practice that means your company's website or team page, a careers page, a talk or podcast you appeared on, a public code repository, an engineering blog post, or a job posting your company published.

We hold your name, your role, your employer, one business contact address or profile URL, and links to the public work of your company's that prompted us to write.

Ask us and we will tell you the exact page and the date we read it.

4.2. Why we are allowed to

Our legitimate interest under Article 6(1)(f), specifically: telling a small number of people who build multi-agent systems for a living that a semantic message broker exists, so they can decide whether it removes work they currently do by hand.

We weighed that against your interests and limited it accordingly. We write only to people at companies whose own published work describes the problem the product addresses, and we cite that work in the message. We contact you at most three times. We never write to someone we cannot say we found, and we never guess an address.

We do not sell this data, share it for anyone else's marketing, or use it to build a profile of you beyond what your company has published about its own engineering.

4.3. How to make it stop

Reply with the word stop, use the unsubscribe link in the message, or write to support@noetive.eu. Any of the three works, and none of them needs a reason.

Under Article 21(2) your objection to direct marketing is absolute. We do not weigh it against anything. It takes effect the day we see it, it covers every channel including anywhere else we might have reached you, and it is permanent.

After that we keep one thing: enough to recognise you and not write again. Deleting the record entirely is the one way to guarantee we would contact you a second time.

5. Who else handles it

In short: the vendors below, and nobody else.

These are the third parties that handle data on our behalf. The same list governs customer data under the Terms of Service, so it never diverges.

Amazon Web Services

Entity: Amazon Web Services EMEA SARL (Luxembourg)

Purpose: Hosting, compute, and storage for the Noetive platform. Delivery of transactional email and of one-time codes by SMS. Automated summarising of operational records that support running the service.

Processed in: European Union (Sweden).

Their privacy page

Modal

Entity: Modal Labs, Inc. (United States)

Purpose: Serverless GPU compute for generating embeddings. The embedding model is Noetive's own, so no third-party model provider receives your data. Only the text to be embedded is sent, without account, namespace, or message identifiers, and no copy of the text or the resulting vectors is retained.

Processed in: European Union. Modal Labs, Inc. is incorporated in the United States; processing for Noetive runs in the EU.

Their privacy page

Stripe

Entity: Stripe Payments Europe, Limited (Ireland)

Purpose: Payment processing, subscription management, invoicing, and usage-based billing.

Processed in: European Union and United States

Their privacy page

Google

Entity: Google Ireland Limited (Ireland)

Purpose: Website analytics, advertising measurement, and product analytics. Cookie-based tags run on the website, and account and billing lifecycle events are also sent server-side against pseudonymous identifiers. No message content and no query text reaches Google.

Processed in: European Union and United States

Their privacy page

6. How long we keep it

In short: account data while you have an account, outreach data for a year, invoices for seven because Swedish law says so.

Account data lasts as long as your account, then goes. Messages in a namespace last until you delete them or close the account.

Outreach records are deleted twelve months after the last time we wrote to you, except the minimum needed to enforce an objection, which we keep for as long as we would otherwise be capable of contacting you.

Invoices and accounting records are kept for seven years under the Swedish Bookkeeping Act. That one is not our choice.

7. Your rights

In short: ask what we hold, ask us to fix it, ask us to delete it, or tell us to stop. One email does any of them.

You can ask for a copy of what we hold, ask us to correct it, ask us to delete it, ask us to restrict what we do with it, ask for it in a portable form, and object to it. Write to support@noetive.eu. We answer within one month.

Where we rely on legitimate interest, you can object and we will stop unless we have grounds that override yours. For direct marketing there is no such test, as section 4.3 says.

If we get it wrong, you can complain to the Swedish authority, Integritetsskyddsmyndigheten (IMY), at imy.se, or to the authority where you live.

8. Contact

Noetive AB, registered in Sweden, VAT SE559497021101.

Data protection and legal notices: support@noetive.eu