Privacy Statement

1. Introduction

At SunBooked LLC (“SunBooked,” “we,” “us,” or “our”), we value privacy, transparency, and trust. This Privacy Policy outlines how we collect, use, store, share, and protect personal data gathered from users (“you,” “your,” or “Visitor”) of our website, www.sunbooked.ai (the “Website”), and from individuals whose data is processed through our services, including AI appointment- setting, lead generation, and campaign systems.

This Privacy Policy is crafted in compliance with applicable U.S. privacy laws (including, where relevant, the California Consumer Privacy Act “CCPA”) and reflects best practices in data privacy and ethics. By accessing or using our Website, or by otherwise engaging with our digital marketing services, you agree to this Policy.

If you do not agree to the practices described herein, please do not use our Website or submit personal information through it.

2. Who We Are

SunBooked LLC is a digital marketing and automation company headquartered in the United States:
SunBooked LLC 30 N Gould St, STE R Sheridan, WY 82801 USA

Email: [email protected]

We specialize in AI-enhanced appointment-setting, funnel optimization, lead generation, and campaign management for U.S. businesses. Our AI voice systems engage leads, qualify them, and sync appointments to clients’ calendars, often utilizing custom-built digital funnels.

This Privacy Policy governs our data practices in the context of these services and the operation of our Website.

3. Scope of This Policy

This Privacy Policy applies to:
- Data collected via our Website (www.sunbooked.ai); Information submitted through online forms, booking links, demo requests, chat interactions, or newsletter subscriptions;
- Personal information obtained through our AI voice systems or integrated lead funnels while acting on behalf of our clients;
- Analytics, cookies, and other tracking methods deployed on our Website.

It does not apply to:
- Websites or services operated by third parties, even if linked from our Website;
- Offline data collection unless directly related to Website interactions;
- Information processed under a separately executed Service Agreement with our clients, except where we act as a service provider under applicable law.

For clients and leads engaged through our AI automation services, please refer to the ServiceAgreement governing specific obligations and data handling rights.

4. Information We Collect

We collect various types of information to provide services, respond to inquiries, and improveour Website and offerings.

4.1 Information You Provide Voluntarily

When you interact with our Website or services, you may choose to provide:
- Contact Details: First and last name, email address, phone number, company name, job title.
- Business Information: Project goals, budget, audience types, and service interest areas.
- Message Content: Inquiry messages, responses to surveys, or other communication you send us.
- Calendar Scheduling Data: Dates, times, preferences collected via embedded scheduling tools.

4.2 Information Collected Automatically

We and our partners may use cookies, pixels, and analytics tools to collect:
- Technical Data: Browser type, operating system, IP address, device ID, access times.
- Usage Data: Pages viewed, clicks, referring URLs, time on site, scrolling behavior.
- Ad Interaction Data: Engagement with ads or embedded content (e.g., on Facebook orGoogle).

4.3 Lead Information Collected on Behalf of Clients

As part of our services, we may collect lead data via AI systems or funnel tools.
This can include:
- Name, contact details, expressed interest, answers to pre-qualification questions;
- Call recordings or appointment time preferences;
- CRM-linked updates or behavioral tracking across landing pages.

All such information is collected with appropriate legal authority and used solely for client campaigns.

5. How We Collect Information

We gather information in the following ways:
- Directly from You: When you fill out forms, book a call, interact with AI systems, or communicate with our team.
- Through Automated Technologies: Via cookies, tracking pixels, analytics platforms(e.g., Google Analytics, Meta Pixel).
- Via Integrated Tools: From CRMs, ad platforms, or calendar scheduling tools embedded on the Website.
- As a Service Provider for Clients: When our systems engage or capture information from leads as part of an active marketing campaign.

We also use tools such as session replays or heatmaps to better understand Website usageand improve functionality.

6. Use of Personal Information

We use the information we collect for the following business and operational purposes:
- Service Provisioning: To deliver and manage AI-powered appointment-setting, lead scoring, funnel performance, or campaign targeting services.
- Communication: To respond to inquiries, schedule demos, confirm appointments, or provide requested information.
- Client Reporting: To track conversions, impressions, and deliver campaign analytics to clients.
- Security & Fraud Prevention: To protect against unauthorized access, cyber threats, or fraudulent activities.
- Legal Compliance: To fulfill legal obligations or respond to regulatory inquiries.
- Internal Analytics: To audit our business operations, measure campaign success, and refine our service strategies.
- Marketing (Consent-Based): To send newsletters, service updates, or promotional content where legally permitted and with opt-out rights preserved.

We do not sell personal information to third parties. Any sharing of information is limited toservice delivery and legal compliance as detailed in Section 8.

7. Legal Bases for Processing

Under applicable U.S. laws and where relevant under the General Data Protection Regulation (GDPR), we rely on the following legal bases:
- Consent: When you affirmatively opt in (e.g., to receive marketing or submit a contact form).
- Contractual Necessity: When data processing is necessary to fulfill a contract (e.g.,client onboarding).
- Legitimate Interest: When we have a business reason to process your data, and yourrights do not override this (e.g., analytics, fraud prevention).
- Legal Obligation: When processing is necessary to comply with a legal requirement(e.g., law enforcement, subpoenas).


You can withdraw your consent at any time by contacting us at [email protected] (customizable alias).

8. Sharing & Disclosure of Personal Data

We share data only with trusted parties necessary to operate our business and provide services:

8.1 Service Providers & Vendors

We contract with vetted third parties to support our business, including:
- Hosting providers and IT vendors;
- CRM, scheduling, and ad tech platforms;
- Analytics and automation software vendors;
- AI infrastructure and call-processing systems.

These vendors are subject to contractual obligations, including confidentiality, limited use, and data security.

8.2 Clients (in B2B Campaigns)

Lead data gathered through funnels or AI systems may be shared with the relevant client for the purpose of follow-up, sales tracking, or campaign reporting.

8.3 Legal Disclosures


We may disclose personal data to comply with lawful requests by public authorities, including:
- Subpoenas or court orders;
- Government agency requests;
- Enforcement of our legal rights, or to protect the rights or safety of others.

8.4 Corporate Transactions

In the event of a merger, acquisition, or sale of business assets, user information may be transferred as part of the business continuity process, subject to this Policy’s standards. We never disclose data to unaffiliated third parties for their independent marketing use.

9. Data Retention

We retain data only as long as necessary to fulfill the purposes outlined in this Policy or as required by law.

- Lead & campaign data: Retained for the duration of the engagement with the client plus 12 months, unless a shorter period is contractually agreed.
- Form submissions: Retained for up to 12 months for internal analytics or follow-up.
- Analytics & tracking data: Retained according to the third-party provider’s standard (usually 14 to 26 months).
- Emails & correspondence: Retained based on relevance to legal, contractual, or operational obligations.

Data that is no longer required is securely deleted, anonymized, or aggregated for non-identifiable benchmarking.

11. Data Security Measures

SunBooked LLC employs industry-standard technical and organizational measures to ensure the confidentiality, integrity, and availability of personal information under our control.

These include, but are not limited to:
- TLS encryption for data in transit;
- Secure access protocols and authentication systems;
- Periodic vulnerability scanning and penetration testing;
- Role-based access controls and internal data segregation;
- Data anonymization where feasible for reporting purposes;
- Regular security training for staff handling personal information.

Despite our efforts, no system can be guaranteed 100% secure. You acknowledge that any transmission of information is at your own risk, and SunBooked disclaims liability for security breaches outside its reasonable control, including those caused by third-party service providers, internet disruptions, or malware.

12. AI Systems and Automated Processing

SunBooked’s core services include the deployment of automated systems — notably AI voice agents — to engage leads, qualify them, and book calendar appointments.

12.1 Nature of AI Interaction

- Our AI agents may interact with users via telephone, SMS, or VoIP;
- These systems may record, transcribe, or interpret responses to qualify leads;
- AI workflows follow predefined scripts customized per client campaign and are not designed to make legally significant decisions autonomously.

12.2 Automated Decision-Making


SunBooked does not employ fully autonomous decision-making processes that produce legal orsimilarly significant effects on individuals. Users interacting with our AI agents may request ahuman review or opt-out of further contact at any time.

We provide transparency regarding AI use during outreach, and any call recordings are securely stored and only accessed by authorized personnel.

13. Third-Party Links and Integrations

Our Website may include links to third-party websites, services, or content providers, including embedded booking tools, CRMs, and advertising platforms.

SunBooked is not responsible for the privacy practices or content of such external sites or vendors. We encourage you to review the privacy policies and terms of those third parties before engaging with their services.

We disclaim all liability for damages, data loss, or harm resulting from your use of or reliance onthird-party websites or technologies not directly controlled by SunBooked.

14. Children’s Privacy

SunBooked does not knowingly collect or solicit personal information from children under the age of 18. The Website is not intended for use by minors, and no part of our services is structured to attract children.

If we learn that we have collected personal information from a child without verified parental consent, we will promptly delete that data. Parents or guardians who believe their child has provided information to us may contact [email protected] to request removal.

15. Your Privacy Rights (California & Other U.S. Residents)

If you are a resident of California or a U.S. state with comparable privacy laws, you may have specific rights under state law, including the California Consumer Privacy Act (“CCPA”) and its amendment under the California Privacy Rights Act (“CPRA”).

Subject to verification, you may request to:
- Access the categories and specific pieces of personal information we hold;
- Delete your personal information;
- Correct inaccurate information;
- Know the business purposes for which data is used;
- Opt-out of the sale or sharing of your personal data (we do not sell data).

To submit a request, please email [email protected] with the subject line “Privacy RightsRequest.” We may request additional information to verify your identity before fulfilling certain requests. You have the right not to be discriminated against for exercising your privacy rights.

16. International Users

Our Website and services are directed exclusively to businesses and users located in theUnited States. If you access the Website from outside the U.S., you do so at your own risk and are responsible for compliance with local laws.

Users in the European Economic Area (EEA), United Kingdom (UK), or other jurisdictions with specific privacy regulations should be aware that:
- SunBooked does not target or market services to non-U.S. entities;
- Data may be processed and stored in the U.S., which may not have the same data protection laws as your jurisdiction.

If you are an international user and submit personal information through the Website, you consent to the collection, processing, and transfer of that data in accordance with this PrivacyPolicy.

17. Data Transfers

SunBooked may transfer, store, or process personal information outside of your state, province, or country, including in jurisdictions that may not offer the same level of privacy protection as your own.

Where such transfers involve international data movement:
- We rely on standard contractual clauses, data processing addenda, or other recognized legal mechanisms to safeguard your data;
- We ensure that any transfer complies with applicable laws governing cross-border data exchanges.

Personal information collected on behalf of clients may also be subject to the client’s own data transfer safeguards and regional compliance obligations.

18. Updates to This Policy

We reserve the right to revise or update this Privacy Policy from time to time to reflect changesin our practices, technology, legal requirements, or service offerings.
- Material changes will be posted prominently on the Website and/or communicated via email (where possible);
- Your continued use of the Website after any such changes constitutes your acceptance of the updated Policy.

We encourage you to review this Privacy Policy periodically.

19. How to Contact Us

If you have any questions about this Privacy Policy, your personal information, or your rights, you may contact our privacy team at:

SunBooked LLC Attn: Privacy Officer 30 N Gould St, STE R Sheridan, WY 82801 USA
Email: [email protected]

We aim to respond to all privacy-related inquiries within 30 days of receipt, unless applicablelaw requires a different timeframe. 20. Supplemental Notices

20.1 California Addendum

Pursuant to the CCPA/CPRA, SunBooked provides the following additional disclosures for California residents:
- We collect identifiers, internet activity, and geolocation data;
- This data is used for business operations, marketing, and analytics;
- You may request deletion or correction as outlined in Section 15;
- We do not sell personal data as defined under California law.

20.2 State-Specific Rights

Additional privacy rights may apply to residents of states like Virginia, Colorado, Utah, or Connecticut. SunBooked will honor verifiable consumer requests in compliance with those laws tothe extent applicable.

Copyright 2025 | All Rights Reserved