Seamless

AskMeWhy Privacy Policy

Last updated on February 10, 2025


This privacy policy (the “Privacy Policy”) describes the principles according to which AskMeWhy AG (hereinafter referred to as “AskMeWhy”, “we” or “the Controller”) processes Personal Data collected via our

or otherwise in connection with our services in relation to Seamless or Guests.

In particular, it informs you about:

Personal Data (hereinafter referred to as “Personal Data”) means any information relating to an identified or identifiable natural person, such as name, address, email address, online identifier, or telephone number. The extent to which Personal Data applies depends on each individual case.

Processing refers to any handling of Personal Data, such as obtaining, saving, storing, disclosing, or deleting. This Privacy Policy applies insofar as the processing activities are not subject to other privacy notices or provided for by applicable law.

Please read this Privacy Policy carefully. By using our services, you consent to the collection and processing of your Personal Data in accordance with this Privacy Policy. If you provide us with Personal Data of other persons, please do so only if you are authorized under applicable data protection laws and only if the other person consents to their Personal Data being processed according to this Privacy Policy.


1. Who is responsible for your Personal Data / Contact Information

The legal entity responsible for the processing of Personal Data in accordance with this Privacy Policy is:

AskMeWhy AG
Industriestrasse 47
8152 Glattbrugg | Schweiz
Phone: +41 (0)44 390 14 10
E-mail: hello@askmewhy.com
Website: www.askmewhy.com

As Controller, AskMeWhy determines the purposes and means of processing your Personal Data and is responsible for its use in accordance with this Privacy Policy. If AskMeWhy processes Personal Data as a Processor on behalf of another Controller, the Privacy Policy of the respective Controller applies.

If you have a technical or general support question, please visit our services page here: https://docs.seamlesswork.com.
For requests regarding the handling of Personal Data, please contact us via email at hello@askmewhy.com or write to the address above. If your request is unrelated to Personal Data, please visit our contact page on the Website.


2. How do we process Personal Data

All Personal Data collected by AskMeWhy is processed in accordance with the provisions of the Swiss Data Protection Act and the European General Data Protection Regulation (GDPR). The GDPR is widely recognized as the global standard for strong data protection. However, whether and to what extent the GDPR applies depends on each individual case.

We collect and process Personal Data carefully and for the purposes described in this Privacy Policy. In accordance with applicable law, we may also use Personal Data in ways other than those described in this Privacy Policy. In such cases, we will generally provide specific privacy statements or notices at the time of collection and may seek your consent.

Where applicable law permits the use of Personal Data without notice or consent (e.g., if the law explicitly requires processing or if processing is necessary to protect overriding interests and is legally permitted), such rights remain reserved.

We make reasonable efforts to collect information in anonymous or pseudonymous form whenever possible, ensuring that individuals cannot be directly identified.


3. Which Personal Data we collect for which processing purposes

We collect the following Personal Data via our Website or Apps:

3.1 Automatically transmitted Personal Data

AskMeWhy collects and stores information that your browser automatically transmits to us in “server log files” when you visit our Website or our App. The data collection is based on your consent and interest to visit our Website or our App and our legitimate interests to operate them. This may include the following Personal Data:

We do not combine this Personal Data with Personal Data from other sources. They are stored by us for a short period of time until they are automatically deleted within a period of six months. This Personal Data is processed for the purpose of the proper functioning and administration of our Website or App, including:

These purposes form the legal basis for our legitimate interests (Art. 6 para. 1 lit. f GDPR) to process your Personal Data accordingly.

3.2 Personal Data provided for communication purposes

We collect Personal Data that you actively and voluntarily provide to us with your consent and/or in advance of a potential contract with us by sending a message to us via email, mail, telephone, or other communication means. This may include:

We will use this information to:

These purposes form the legal basis for our legitimate interests (Art. 6 para. 1 lit. f GDPR) and contractual obligations (Art. 6 para. 1 lit. b GDPR).

3.3 Personal Data collected and generated for the provision of our paid services

When you purchase our services, we collect and generate the following Personal Data:

Additionally, we may receive:

We process this Personal Data to:

Processing is based on contractual (Art. 6 para. 1 lit. b GDPR) and legal obligations (Art. 6 para. 1 lit. c GDPR). Data may be shared with third parties for payment, delivery, or enforcement purposes.

3.4 Personal Data processed for the proper operation of our business

We process Personal Data for our business operations, including:

This processing is based on our legitimate interests (Art. 6 para. 1 lit. f GDPR) and contractual obligations (Art. 6 para. 1 lit. b GDPR).

3.5 Personal Data collected and generated for user account registration or login

We collect the following data for user registration:

Processing is based on legitimate interests (Art. 6 para. 1 lit. f GDPR) and contractual obligations (Art. 6 para. 1 lit. b GDPR). User accounts are not public and cannot be indexed by search engines.

3.6 Use of the Seamless App

We collect and process:

This data is stored in Switzerland with Microsoft Schweiz GmbH. Processing is limited to support purposes and is deleted after 90 days.

3.7 Use of the Seamless Admin Center

When using the Seamless admin center, we collect:

This information enables the use of the admin center and supports compliance with legal and regulatory requirements.

3.8 Email communication and newsletters for promotional purposes

If you sign up for our newsletter or show interest in our products, we will send you marketing material. This includes:

You can unsubscribe at any time. Data may be combined with publicly available information or obtained from third-party providers.

3.9 Personal Data collected in job applications

We collect Personal Data when you submit a job application, including:

This data is processed for:

Application data is deleted within three months unless you provide consent for retention for future vacancies.

For more details on data retention, transfers, and security, please refer to clause 7.


4. On what legal basis do we process Personal Data about you

Depending on the applicable law, data processing is only permitted if the applicable law specifically allows it. If not indicated for a specific purpose otherwise in this Privacy Policy, the processing of your Personal Data may be based on the following legal bases:

If the processing is based on your consent or our legitimate interests, you may withdraw your consent or object to this processing at any time by contacting us directly via email at hello@askmewhy.com. Please note, however, that the withdrawal of your consent does not affect the lawfulness of the processing prior to your withdrawal.


5. With whom do we share the Personal Data we collect?

We take the necessary measures to ensure that only authorized persons who have the necessary knowledge have access to your Personal Data in order to fulfill the purposes for which your Personal Data was collected. We may disclose your Personal Data to the following possible categories of recipients in accordance with the purposes and legal bases of processing described above, to the extent necessary for the intended data processing or as may be provided for by law:

We select our partners and processors carefully and only upon providing sufficient guarantees that they have appropriate technical and organizational measures in place in accordance with legal requirements. We also contractually ensure that our processors only process your Personal Data in the way that we are permitted to do. Furthermore, our processors may only process Personal Data on our documented instructions. They are all subject to confidentiality requirements and may only use your Personal Data to the extent necessary to fulfill the purpose for which your Personal Data was collected or as required by law.


6. Transfer of Personal Data to countries outside the EU/EEA

The Personal Data we collect is stored in Switzerland and the EU. Since we operate globally, we may transfer, store, and process your Personal Data at data locations around the world, for example, where our third-party vendors, service providers (especially Microsoft), or business partners are located. Therefore, we may transfer your Personal Data outside the European Economic Area (EEA) if necessary for the data processing described in this Privacy Policy. The data protection and other laws of these countries may not be as comprehensive as those in the EEA or in Switzerland. If data is transferred to countries that do not ensure an adequate level of data protection, AskMeWhy will ensure adequate data protection by taking appropriate safeguards, such as:

For more information about our security measures to ensure an adequate level of data protection, please contact us by email at hello@askmewhy.com.

For the sake of completeness, we would like to point out to users resident or domiciled in Switzerland as well as in the EU that in the USA there are surveillance measures by US authorities that generally allow the storage of all Personal Data of all persons whose data has been transferred to the USA. This is done, in principle, without differentiation, limitation, or exception based on the objective pursued and without an objective criterion that makes it possible to limit the access of the U.S. authorities to the data and their subsequent use to very specific, strictly limited purposes that are capable of justifying the intrusion associated both with the access to these data and with their use.

In addition, we would like to point out that in the USA there are no sufficient legal remedies available to data subjects from Switzerland and the EU that would allow you to obtain access to the data concerning you and to obtain its correction or deletion, or that there is no effective judicial legal protection against general access rights of US authorities. We explicitly draw your attention to this legal and factual situation in order to enable you to make an appropriately informed decision to consent to the use of your data.

We would also like to point out to users residing in a member state of the EU, the EEA, or Switzerland that, from the perspective of the European Union as well as Switzerland, the USA does not have an adequate level of data protection—among other things due to the issues mentioned in this section. Insofar as we have explained in this Privacy Policy that recipients of data (such as Microsoft or Google) are based in the USA, it will be ensured through contractual arrangements with these companies that your data is protected with our partners with an appropriate level.


7. How long do we retain Personal Data?

We will retain your Personal Data for as long as necessary to fulfill the purposes for which your Personal Data was collected. For this reason, we will delete or anonymize Personal Data as soon as it is no longer necessary to achieve the purposes, but subject to:

  1. Applicable legal or regulatory requirements to retain Personal Data for a longer period of time (e.g., for tax or accounting reasons).
  2. If we have an overriding interest (e.g., an interest for evidentiary reasons to establish, exercise, and/or defend actual or potential legal claims, investigations, or similar proceedings, including legal processes we may enforce to preserve relevant information, or where we have an interest in non-personal analysis).

On this basis, we generally process Personal Data in compliance with the following rules and obligations:

Information collected by using the App

CategoryIn-System RetentionTotal Retention
Audit Logs30 days30 days
Application Telemetry90 days90 days
Application SettingsUntil deleted by the customerUntil deleted by the customer

Information collected via other means than engaging with our App

CategoryIn-System RetentionTotal Retention
Physical Correspondence1 year1 year or 10 years, depending on applicable regulations
Electronic Correspondence5 years5 years
Accounting Records11 years11 years
ContractsData is kept as long as it is marked as activeData is kept for an additional 5 years from the date of de-registration
Job Applications3 months if applicant is unsuccessful in the selection process3 months if applicant is unsuccessful in the selection process

We may rectify, replenish, or remove incomplete or inaccurate information at any time and at our own discretion.


8. Cookies, Services of Google and Social Media Plug-Ins

When you access or use our Website or our Apps, we may place so-called cookies - small text files - or similar tools on your computer. We use these cookies to recognize you as a user of the Website or App, to customize content, to improve the performance of the Website or App and to enhance your user experience.

a. Categories of cookies we use

Depending on their function and purpose, the cookies we use can be divided into the following categories:

Necessary cookies Cookies may be absolutely necessary for the operation of a website and to provide you with the essential features of our services (e.g., sign-in, service health, or for security reasons).

Functional cookies These cookies serve a variety of purposes related to the presentation, functionality, and performance of a website, enhancing visitors’ experience. They allow a website to remember information already provided (e.g., username, location, or language selection) and provide enhanced, more personalized functionality. Functional cookies cannot track your movement on other websites.

Performance cookies These cookies collect information about how a website is used - for example, how visitors arrived at our website, which pages a visitor opens most often, and whether they receive error messages. These cookies monitor website activity and improve performance.

Marketing and personalization cookies These cookies are used for tracking user interests or behavior and creating user profiles. This process, known as “tracking,” helps in displaying personalized content and advertisements. Advertising cookies enable personalized ads and track the effectiveness of advertising campaigns.

Temporary cookies Temporary cookies (session cookies) are deleted after a user leaves the website and closes the browser.

Permanent cookies Permanent cookies remain stored even after the browser is closed. They save login statuses, preferences, and other relevant settings. These cookies may be placed by us or third parties. Below are links to privacy policies of third-party services we currently use:

b. Responsible Google Company

We use various Google services operated by Google LLC, Mountain View, California, USA. For users in the European region, the responsible company is Google Ireland Limited, Dublin, Ireland.

1. Website Analysis with Google Analytics

Google Analytics uses cookies to analyze website usage. Data collected may include:

Google processes this data on our behalf for evaluation purposes. We have activated IP anonymization, ensuring IP addresses are shortened within the European Region before transmission to the USA. You can refuse cookie usage by adjusting your browser settings or using Google’s opt-out tool: Google Opt-Out.

Further details on Google Analytics can be found here.

2. Google Fonts

We use locally integrated Google Fonts on our website to improve visual appearance. No personal data is transmitted to Google.

c. Website analysis with Microsoft Clarity

Microsoft Clarity helps us analyze user interactions on our website. Data collected may include:

Data is used to improve usability. We process this data based on our legitimate interest in website optimization.

d. Administration of Cookies

If you do not wish to accept cookies, you can refuse their use in the cookie banner or adjust your browser settings. Instructions for managing cookies in different browsers:

e. Social Media Plug-Ins

We use social media plug-ins to enhance engagement. These plug-ins may collect user data and transfer it to their respective platforms. Data processing is based on user consent.

1. LinkedIn

LinkedIn plug-ins allow users to share content. When interacting with the LinkedIn button, LinkedIn collects various data, including IP address, access time, and browser information. More information can be found in LinkedIn’s Privacy Policy.

2. Instagram

Instagram plug-ins connect our website with Instagram. Interaction with the Instagram button allows data transfer to Meta Platforms, Inc. Further details can be found in Instagram’s Privacy Policy.

For details regarding data transfers outside the EU, please refer to section 6.


9. No Automated Individual Decision-Making, Including Profiling with Legal Effects

We will not make any decision about you which is based solely on automated processing – including profiling – and which produces legal effects concerning you or similarly significantly affects you.


10. How Do We Safeguard and Transfer Your Information?

We have taken various technical and organizational measures to protect Personal Data against accidental or unlawful destruction, loss, alteration, unauthorized use, disclosure, or access, in particular where the processing involves the transmission of data over a network, and against all other unlawful forms of processing and misuse.

The infrastructure of our platform admin.seamlesswork.com is operated on servers in Microsoft’s Swiss data centers that have ISO 27001 certification and have implemented high security standards. We are committed to using our reasonable efforts, in accordance with market best practices, to ensure the security, confidentiality, and integrity of the Personal Data you choose to provide us. Access to the Personal Data is based on the ‘least to know’ concept together with role-based access control systems, ensuring only authorized access to the Personal Data.

To protect the privacy of any Personal Data you may have provided, we are using data hosts (redundant setup Microsoft Azure PaaS services, storing and processing data globally, inside and outside of the EU) who implement market best practice security measures, including encryption for data-at-rest and data-in-transit. Furthermore, we already take the protection of Personal Data into account during the development or selection of hardware, software, as well as procedures in accordance with the principle of data protection, through technology design and through data protection-friendly default settings.

This website uses SSL/TLS encryption for security reasons and to protect the transmission of confidential content, such as requests that you send to us as the site operator. You can recognize an encrypted connection by the fact that the address line of the browser changes from http:// to https:// and by the lock symbol in your browser line. If SSL or TLS encryption is activated, the data you transmit to us cannot be read by third parties.

AskMeWhy may use third parties as processors to collect and process your Personal Data. The data processors we use will only process your Personal Data in accordance with our instructions and are required by law to take strict security precautions when handling Personal Data. Unfortunately, the transmission of information over the Internet (e.g., when communicating by email) is not completely secure. Although we have taken appropriate measures, we cannot guarantee the security of your data transmitted via the Internet; complete protection of data against access by third parties without the use of email encryption, such as PGP or S/MIME, is not possible and is at your own risk.


11. Privacy Policies of Third Parties

Please note that if you click on the link to a third-party website (e.g., Google or other websites), you will be redirected to a website that we do not control, and our privacy policy will no longer apply. Your browsing and interaction on another website are subject to the terms of use and privacy policies of those third-party websites. In addition, we also cannot guarantee the accuracy or timeliness of these links.

We encourage you to carefully read the terms of use and privacy policies of other websites before submitting any Personal Data through this website. We are not responsible or liable for the information content on such third-party websites.


12. What Are Your Rights?

You can request information from AskMeWhy as to whether Personal Data about you is being processed. In addition, you have the right to request the correction, destruction, or restriction of Personal Data about yourself and to object to the processing of Personal Data. Where processing is based on your consent or our legitimate interests, you may withdraw consent or object to such processing at any time by contacting us directly by email at hello@askmewhy.com.

In certain cases, you have the right to obtain Personal Data arising from the use of online services in a structured, common, and machine-readable format that allows further use and transmission. Requests in this regard should be addressed to AskMeWhy at the following email address: hello@askmewhy.com. To protect your privacy and security, we will take appropriate steps to verify your identity before granting access or making changes to your Personal Data.

AskMeWhy reserves the right to limit your rights under applicable law and, for example, not to disclose comprehensive information or to delete data (e.g., due to document retention obligations). If we reject your request or you are not satisfied with our processing, you also have the right to file a complaint with the relevant supervisory authority and seek a remedy.

For users located in Switzerland, the competent authority is the Federal Data Protection and Information Commissioner in Switzerland. For users located in EU countries, you can find a list of supervisory authorities at this link.


13. Changes to Our Privacy Policy

This Privacy Policy may be changed from time to time and without prior notice as part of our continuous improvement process, in particular to remain compliant with legal regulations in the future. Your rights as a data subject remain unaffected by such changes.

Any changes to this Privacy Policy will be effective when posted on the website unless otherwise stated. We encourage you to review this Privacy Policy regularly for any changes.

Last updated on February 10, 2025

Ready to dive in?

Test all Seamless features for 30 days for free.

M365 Global Admin required!
No credit card required

Want to learn more?

Looking for a guided tour instead of diving right in?

© Seamless | Provided by AskMeWhy
Imprint Privacy policy Cookies