Privacy Policy
Last updated: 7 February 2026
1. Who we are?
“We”, “us”, “our” or SomaScan.ai means Lithuanian Limited Liability Company AI Sensus, legal entity code 307169109, registered at Laisvės al. 85E-5, LT-44297 Kaunas, Republic of Lithuania.
Your privacy is important to us, therefore we've developed this Privacy Policy, which sets out how we collect, disclose, transfer and use (“process”) the personal data that you share with us, as well as which rights you have. Please take a moment to read through this Privacy Policy. We only process personal data in accordance with this Privacy Policy. SomaScan.ai acts both as a “data controller” and in some cases as a “data processor” of personal data.
SomaScan.ai will process your personal data in strict adherence to the prevailing legal norms of the European Union and Lithuania, inclusive of the Regulation (EU) No 2016/679 (General Data Protection Regulation, the “GDPR”).
Questions? Reach us at: privacy@somascan.ai
2. How and for which purpose do we collect your personal data?
| Purpose | Information Collected | Legal Basis | Retention |
|---|---|---|---|
| Products & Services info | Name, email, purchase history | Consent (Art. 6(1)(a) GDPR) | 5 years |
| Queries & Requests | Name, contact details, query content | Legitimate interest (Art. 6(1)(f) GDPR) | 10 years |
| Social Network Mgmt | Name, comments, reactions, picture | Consent (Art. 6(1)(a) GDPR) | 10 years |
| AI Solutions Delivery | Profile photo, name, public social data | Contract & Legitimate interest | Contract + 10 years |
| Payment Processing | Billing info, card details, history | Legal & Contractual obligation | 10 years |
3. How we process personal data from publicly available information?
When providing our AI and analytics solutions services, we process not only the personal data of the individual who ordered a report but also those personal data which is available in public information sources (e.g., Facebook, LinkedIn, Instagram, Google).
In compliance with Article 14(5)(a-b) of the GDPR, this notice serves as public disclosure where direct notification would involve disproportionate effort.
4. Google API Services: Limited Use Disclosure
SomaScan strictly complies with Google API Services User Data Policy and Limited Use requirements. Your data is never sold, shared, or used for advertising.
- We access attendee names/emails solely from active events.
- No persistent storage of Google Calendar data on our servers.
- Data is never used to train or improve our AI/ML models.
5. Who do we share information about you with?
We share information with staff, intermediaries, and service providers (hosting, payments, legal) only when necessary. Data transfers outside the EU/EEA are conducted using appropriate safeguards under GDPR stipulations.
8. What data subject rights do you have?
Information & Access
Request a copy of your personal data.
Rectification
Correct inaccurate or incomplete information.
Erasure
The right to be forgotten under certain conditions.
Object & Withdraw
Object to processing or withdraw consent at any time.