Privacy Policy
How Attiver handles personal data across our website and service.
1. Who we are
Attiver is a digital marketing orchestration service operated by Kodex Bilgi Teknolojileri Anonim Şirketi (“Kodex”, “Attiver”, “we”, “us”). Our registered address is Altınşehir Mah. 228. Sok. No:44, 16230 Nilüfer/Bursa, Türkiye. MERSİS: 0574094840500001.
You can contact us at hello@attiver.com. Formal electronic notices may also be sent to kodexbilgi@hs01.kep.tr.
2. Scope
This Privacy Policy explains how we process personal data when you visit attiver.com, create or use an Attiver account at app.attiver.com, communicate with us, or connect supported marketing, analytics, product, billing, or other third-party systems to Attiver.
Third-party services you connect to Attiver have their own privacy terms. This policy does not replace those terms.
3. Data we may process
Account and business information
We may process your name, work email, organization, role, workspace information, account settings, and information you provide while configuring Attiver.
Connected service data
When you authorize an integration, Attiver may receive data made available under the permissions you grant, such as campaign structure, spend, performance metrics, funnel events, analytics measurements, attribution information, and related business data. We design integrations to request only the access needed for the enabled feature.
Website and device data
Depending on your consent choices, we may process page views, interactions, referring pages, campaign attribution parameters, approximate location, browser/device information, and similar diagnostic or analytics data.
Support and communications
If you contact us, we process the content of your message and related contact information so we can respond and maintain a record of the request.
4. Why we use personal data
- Provide, secure, maintain, and improve Attiver.
- Authenticate users and manage workspaces, permissions, approvals, and guardrails.
- Connect and operate integrations that you explicitly authorize.
- Generate product insights, diagnoses, recommendations, workflows, and actions you configure or approve.
- Measure website performance and acquisition when you permit analytics or marketing technologies.
- Respond to support requests, prevent abuse, and comply with applicable legal obligations.
5. Legal bases
Where laws such as the GDPR require a legal basis, we may rely on performance of a contract, our legitimate interests in operating and securing the service, compliance with legal obligations, and consent where required — particularly for optional analytics or marketing technologies. Where Türkiye’s Personal Data Protection Law (KVKK) applies, processing is carried out under the applicable conditions for processing personal data and, where required, explicit consent.
6. Cookies and similar technologies
Essential storage is used for site operation and privacy preferences. Optional analytics and marketing technologies are disabled until the relevant consent is granted. You can change your choices at any time using Cookie settings. See our Cookie Policy for details.
7. Service providers and recipients
We may use infrastructure, security, analytics, communications, payment, and integration providers to operate Attiver. These providers may process data on our behalf or under their own terms depending on the service. Examples may include hosting infrastructure, Google Analytics 4 when analytics consent is enabled, and Meta measurement technologies when marketing consent is enabled.
We do not sell personal data. We may disclose information where necessary to comply with law, protect rights or security, complete a corporate transaction, or provide a service you request.
8. International transfers
Attiver may use service providers located outside the country where you live. Where transfer restrictions apply, we use an appropriate legal mechanism required by applicable law and assess the relevant provider and processing context before production use.
9. Retention
We keep personal data only for as long as reasonably necessary for the purpose for which it was collected, to provide the service, maintain security and audit records, resolve disputes, and meet legal obligations. Retention can differ by data category, workspace configuration, connected provider, and applicable law. When data is no longer required, we delete or de-identify it where appropriate.
10. Security
We use technical and organizational safeguards intended to protect Attiver data, including access controls, separation of credentials from ordinary application data, auditability, and permission boundaries. No system can guarantee absolute security, and you are responsible for securing your own accounts, credentials, and connected third-party services.
11. Your rights and choices
Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or obtain a copy of your personal data, and to withdraw consent. You may also have the right to complain to a competent data protection authority. To submit a request, contact hello@attiver.com. We may need to verify your identity before completing a request.
12. Children
Attiver is a business-oriented service and is not directed to children. We do not knowingly offer the service to children where parental authorization would be required.
13. Changes
We may update this policy as Attiver, our providers, or applicable requirements change. Material updates will be identified by a new “Last updated” date and, where appropriate, additional notice.