← Back to site
Legal Document

Privacy Policy

Last updated: April 2026  |  Version: 1.0  |  In compliance with Law No. 13,709/2018 (LGPD)

This is an English translation of our Portuguese Privacy Policy. In case of any discrepancy, the Portuguese version shall prevail. Original at regulabio.com.br/politica-de-privacidade.html.

1. Data Controller

Your personal data is processed by:

ABS Legaltech Soluções Simplificadas LTDA — RegulaBio
CNPJ: 58,699,635/0001-09
Privacy contact: contato@regulabio.com.br

This Policy describes how we collect, use, store and protect your personal data when you use the RegulaBio platform, including the institutional website, the logged-in area and the AI diagnostic assistant.

2. Data We Collect

We collect the following data, depending on how you use the platform:

Data When collected Purpose
NameSign-up or diagnostic chatIdentification and personalized service
EmailSign-up or chatCommunication, sending diagnostic, account access
PhoneDiagnostic chat (optional)Commercial follow-up
Company name and detailsDiagnostic chatGeneration of regulatory diagnostic
Company regulatory informationDiagnostic chat (sector, size, biodiversity activities)Risk analysis and diagnostic generation
Uploaded documentsLogged-in area (voluntary upload)Secure storage for user access
Access and browsing dataAutomatically, when using the platformSecurity, service improvement

We do not collect sensitive data as defined in Art. 5, II of the LGPD (racial origin, religious belief, health, biometrics, etc.), nor data of minors under 18.

3. Legal Bases for Processing

All data processing performed by RegulaBio has a legal basis under Art. 7 of the LGPD:

4. How We Use the Data

We do not sell your data to third parties and we do not use your information for third-party advertising purposes.

5. Data Sharing

We may share your data only in the following cases:

6. Data Retention

We keep your data for the time necessary to fulfill the purposes described in this Policy:

After the retention period, data is irreversibly deleted or anonymized.

7. Your Rights as a Data Subject

The LGPD (Art. 18) grants you the following rights, which can be exercised at any time at contato@regulabio.com.br:

Access
Know what data of yours we hold.
Correction
Correct incomplete, inaccurate or outdated data.
Deletion
Request deletion of data processed under consent.
Portability
Receive your data in a structured, interoperable format.
Withdraw consent
Withdraw consent at any time, free of charge.
Objection
Object to processing carried out under legitimate interest.
Review of automated decisions
Request human review of AI-generated diagnostics.
Information on sharing
Know which entities your data is shared with.

We will respond to requests within 15 business days. If necessary, this period may be extended with justification.

8. Data Security

We adopt appropriate technical and organizational measures to protect your data against unauthorized access, loss, alteration or improper disclosure:

In case of a security incident that may pose risks to data subjects, we will notify the Brazilian National Data Protection Authority (ANPD) and affected users within the time frames set by the LGPD.

9. Cookies and Local Storage

We use the browser's localStorage to store the chat session and consent record. We do not use third-party tracking cookies or behavioral advertising tools.

You may clear local storage at any time through your browser settings.

10. International Data Transfers

For the operation of the AI assistant and other platform components, some information may be processed by servers located outside Brazil. Such transfers are made under contractual clauses that guarantee a level of protection equivalent to that required by the LGPD, in accordance with Art. 33 of the law. Information about destination countries may be requested at contato@regulabio.com.br.

11. Children and Adolescents

The platform is not intended for minors under 18. We do not knowingly collect data from children or adolescents. If we identify improper collection, we will delete the data immediately.

12. Changes to this Policy

This Policy may be updated periodically. Material changes will be communicated by email or notice on the platform with at least 15 days' prior notice. The date of the last update is always shown at the top of this document.

13. Contact and Privacy Channel

To exercise your rights or clarify questions about this Policy, contact our data privacy team:

Email: contato@regulabio.com.br
Suggested subject: "Data Privacy — [your request]"

You may also file complaints with the Brazilian National Data Protection Authority (ANPD): www.gov.br/anpd