Privacy Policy
Last updated September 14, 2026
Introduction
This Privacy Policy explains how Transfrm LLC, operating AI Everyday, collects, uses, shares, stores, and protects personal information through aieveryday.me and the AI Everyday services.
In this Privacy Policy, “Transfrm”, “AI Everyday”, “we”, “us”, and “our” refer to that legal entity. “You” and “your” refer to website visitors, customers, workshop attendees, Private 1-to-1 Session clients, and people who communicate with us.
Transfrm is responsible for deciding how and why personal information covered by this Privacy Policy is processed. By using the website or providing information to us, you acknowledge the practices described here. Where consent is legally required, we will request it separately.
Who This Policy Applies To
This Privacy Policy applies to personal information collected through the AI Everyday website, bookings, payments, workshops, Private 1-to-1 Sessions, email communications, customer support, analytics, cookies, and related services.
AI Everyday services are intended only for adults aged 18 and above. We do not knowingly collect personal information from children. If we learn that information from a person under 18 has been collected, we will take reasonable steps to delete it.
Information We Collect
Information You Provide
We may collect your name, email address, phone number, billing details, order information, workshop selection, attendance information, questions, feedback, and communications with us.
For Private 1-to-1 Sessions, we may also collect the problem brief, files, documents, examples, links, instructions, and other information you choose to provide so that we can prepare for and deliver the session.
Payment and Transaction Information
Payments are processed by Ziina. We may receive transaction status, payment amount, currency, order reference, customer identifiers, refund information, and limited payment-method details. We do not receive or store your complete card number or card security code.
Workshop Participation
We may collect attendance records, chat messages, questions, survey responses, and other contributions made during a workshop or Private 1-to-1 Session. Where a session is recorded, the recording may include your name, voice, image, chat messages, or contributions. We will notify attendees when recording applies.
Information Collected Automatically
When you use the website, we and our service providers may automatically collect your IP address, browser and device information, operating system, approximate location derived from IP address, referring page, pages viewed, links selected, timestamps, error logs, security events, cookie identifiers, and website performance information.
How We Use Personal Information
We may use personal information to:
process purchases, issue electronic receipts, and manage bookings;
deliver workshops, Private 1-to-1 Sessions, recordings, and course materials;
review problem briefs and prepare for private sessions;
send booking confirmations, joining instructions, reminders, schedule changes, service messages, and customer-support responses;
send marketing emails where you have consented or where otherwise permitted by law;
measure website use, diagnose problems, improve performance, and understand which content is useful;
protect the website, prevent fraud and misuse, and investigate security incidents;
enforce our Terms and Conditions and protect our rights and the rights of other people;
comply with accounting, tax, legal, regulatory, and reporting obligations; and
manage a merger, restructuring, financing, sale, or transfer of all or part of the business.
Depending on the activity and applicable law, we process personal information with your consent, to perform a contract with you, to comply with legal obligations, to protect legitimate interests permitted by law, or to establish, exercise, or defend legal claims.
Cookies and Website Analytics
Cookies are small files stored on your device. AI Everyday uses essential cookies and similar technologies that are necessary for website security, payment and booking flows, session continuity, and core website functions.
We use Google Analytics 4 to understand website traffic, page use, errors, and performance. Google Analytics 4 may set or read analytics cookies and collect information including cookie identifiers, IP-derived location, browser and device details, referring pages, pages viewed, events, and timestamps.
Google Analytics 4 will not be activated until you consent through the cookie banner. You can reject analytics cookies as easily as accepting them and can change your choice later through the website's cookie settings. Google Signals, advertising features, and remarketing are disabled.
Blocking essential cookies may prevent parts of the website from working correctly. Rejecting analytics cookies will not prevent you from browsing the website or purchasing a service.
Marketing Communications
Brevo may be used to send transactional messages and marketing emails. Transactional messages include receipts, booking confirmations, joining information, reminders, schedule changes, recording links, and service notices.
We will send promotional emails only where permitted by law. You may unsubscribe at any time using the link in a marketing email or by contacting us at the contact form. Unsubscribing from marketing does not prevent us from sending messages required to deliver a service you purchased.
We do not sell or rent your personal information to third parties for their own marketing.
How We Share Personal Information
We share personal information only where it is reasonably necessary for the purposes described in this Privacy Policy. Confirmed service providers include:
Cloudflare, for website hosting, database services, content delivery, performance, and security;
Brevo, for transactional and marketing email; and
Ziina, for payment processing and transaction management;
Google Analytics 4, for consent-based website analytics; and
Microsoft Teams and Microsoft 365, for live sessions, meeting invitations, attendance, chat, communications, and recordings where applicable.
We may also share information with professional advisers, auditors, insurers, banks, government authorities, regulators, courts, law-enforcement bodies, fraud-prevention providers, and parties involved in a genuine business sale or restructuring where permitted or required by law.
Service providers may process information only for the services they provide to us and under their own legal and security obligations. Their processing is also governed by the applicable provider privacy policy.
International Data Transfers
Some service providers may store or process personal information outside the United Arab Emirates. Data-protection laws in those locations may differ from UAE law.
Where an international transfer requires protection under applicable law, we will use an approved transfer mechanism, contractual safeguards, consent where valid, or another legally permitted basis. We will take reasonable steps to require appropriate protection from service providers handling the information.
Private-Session Files and Confidential Information
Only provide files and information that are necessary for the agreed session. Do not send passwords, payment-card information, government identifiers, health information, confidential source code, regulated data, or personal information about another person unless we have expressly agreed that it is required and an appropriate handling method has been confirmed.
You are responsible for removing unnecessary information and obtaining permission from your employer, clients, staff, or other people before sharing their information. We use private-session materials to prepare for and deliver the requested service, provide agreed follow-up materials, protect legal rights, and meet legal obligations.
Data Retention
We retain personal information only for as long as reasonably necessary for the purpose for which it was collected and to meet legal, tax, accounting, security, dispute-resolution, and enforcement requirements.
Transaction records and invoices are retained for the period required by applicable law. Booking, attendance, support, and communication records are retained for a reasonable period after the service. Private-session briefs and files are deleted or anonymised when they are no longer required for delivery or follow-up, unless a longer period is agreed or legally required.
Recordings are retained for the access period communicated with the relevant service and for any additional period reasonably needed to administer that access. Google Analytics 4 user-level and event-level data is configured for a 14-month retention period. When retention is no longer required, we delete, anonymise, or securely isolate the information.
Data Security
We use reasonable technical and organisational measures designed to protect personal information against unauthorized access, loss, misuse, alteration, disclosure, or destruction. Measures may include access controls, authentication, encryption in transit, backups, monitoring, vendor controls, and limiting access to people who need the information for their work.
No internet transmission or storage system is completely secure. We cannot guarantee absolute security. If a personal-data breach occurs, we will investigate it, take reasonable remedial action, and notify affected people or authorities where required by applicable law.
Your Privacy Rights
Subject to applicable law and any permitted exceptions, you may have the right to:
request information about how your personal information is processed;
request access to or a copy of your personal information;
correct inaccurate or incomplete information;
request deletion of information in qualifying circumstances;
restrict or object to certain processing;
receive or transfer certain information in a usable format;
withdraw consent for future processing where processing relies on consent; and
raise a complaint with the competent data-protection authority.
To make a request, email the contact form. We may need to verify your identity before acting on a request. Withdrawing consent does not affect processing that was lawful before withdrawal and does not prevent processing that is required on another lawful basis.
Third-Party Websites and AI Tools
The website and course materials may link to third-party websites, AI tools, applications, or services. Their privacy practices are controlled by the relevant provider, not Transfrm. Review the provider's privacy policy before creating an account, uploading information, or using its service.
Do not enter confidential, personal, or regulated information into an AI tool merely because it is demonstrated in a workshop. You are responsible for assessing whether the tool and its settings are suitable for your intended use.
Changes to This Privacy Policy
We may update this Privacy Policy to reflect changes in our services, providers, technology, or legal obligations. The updated version will be posted on this page with a revised date.
If a change materially affects how we use information already collected, we will provide additional notice or request consent where required by applicable law.
Contact Us
For privacy questions, complaints, consent withdrawal, marketing opt-out requests, or requests to exercise privacy rights, contact the contact form.