Last updated: 2 October 2026
Orbiio respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, store and protect information when you use the Orbiio application, website and associated services.
For the purposes of applicable data protection law, including the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, the data controller is:
Trading as Orbiio
Depending on how Orbiio is used, we may process the following categories of information:
Account information
Support and communications data
Integration data
Where you connect third-party services such as Google Gmail, we may receive information necessary to provide the integration, including authorised account identifiers and access permissions.
Technical information
We only collect information that is reasonably necessary to provide and improve the Orbiio service.
Orbiio may connect to Google services, including Gmail, where authorised by the user or organisation.
Where Gmail access is enabled, Orbiio may access email information for the purpose of:
Orbiio only accesses Google account information that has been expressly authorised through Google's OAuth consent process.
Orbiio's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
We do not sell Google user data or use Gmail content for advertising purposes.
We may use information to:
We do not use personal information for purposes that are incompatible with the purposes for which it was collected.
Orbiio may use artificial intelligence and automated processing to assist with functions such as:
Automated systems may occasionally produce inaccurate results. Where appropriate, users should review automatically generated information before relying upon it for significant decisions.
Orbiio does not use customer communications to train general-purpose artificial intelligence models unless this has been separately and explicitly agreed.
Where UK GDPR applies, we may rely on one or more of the following legal bases:
Where Orbiio processes information on behalf of an organisation using the service, that organisation may be the data controller and Orbiio may act as a data processor.
We may share information with trusted third-party service providers where necessary to operate Orbiio.
These may include providers of:
These providers are only permitted to process information for authorised purposes and are subject to appropriate contractual and security requirements.
We may also disclose information where required by law, regulation, court order or lawful request from a competent authority.
We do not sell personal information.
Some service providers used by Orbiio may process data outside the United Kingdom.
Where personal information is transferred internationally, we take reasonable steps to ensure appropriate safeguards are in place in accordance with applicable data protection laws.
These safeguards may include recognised adequacy arrangements, contractual protections or approved international data transfer mechanisms.
We retain personal information only for as long as reasonably necessary for the purposes described in this Privacy Policy.
Retention periods may vary depending on:
Customers may be able to delete certain information through Orbiio or request deletion by contacting us.
We use reasonable technical and organisational measures designed to protect information against:
These measures may include encryption, authentication controls, access restrictions, monitoring and secure infrastructure.
No internet-based system can be guaranteed to be completely secure, but we continually review our security practices.
Where Orbiio connects to third-party services using OAuth, authentication credentials and access tokens are handled securely and are used only for providing the authorised integration.
Users may revoke Orbiio's access to third-party services at any time through the relevant third-party account settings or by disconnecting the integration within Orbiio where that functionality is available.
Depending on applicable law, you may have rights including the right to:
In the United Kingdom, you may raise concerns with the Information Commissioner's Office (ICO).
Requests relating to personal data can be sent to: privacy@orbiio.co.uk
Where Orbiio is provided to you through your employer or another organisation, that organisation may control your account and determine how information is processed within Orbiio.
Questions relating to information controlled by your organisation should normally be directed to that organisation.
Orbiio is intended for business and professional use and is not designed for children.
We do not knowingly collect personal information from children through the service.
Orbiio may contain integrations with or links to third-party services.
Those services operate under their own terms and privacy policies, and Orbiio is not responsible for the privacy practices of third-party providers.
We may update this Privacy Policy from time to time to reflect changes to Orbiio, legal requirements or our data-processing practices.
The latest version will be made available through the Orbiio website or application.
Where material changes are made, we may provide additional notice where appropriate.
If you have questions about this Privacy Policy or how Orbiio processes personal information, contact:
Orbiio
Email: privacy@orbiio.co.uk