プライバシーポリシー

あなたのプライバシーを最優先します

LaabamOneでは、お客様の個人情報とプライバシー権利を保護することに取り組んでいます。

最終更新日:2026年7月29日

はじめに

LaabamOne Business Solutions Pvt Ltd(「当社」「私たち」)は、LaabamOne ERPプラットフォームを運営しています。このプライバシーポリシーは、当社のサービスを利用する際に、どのように情報を収集、使用、開示、保護するかを説明します。

1. 収集する情報

1.1 個人情報

LaabamOneに登録する際、以下を収集します:

  • 氏名とメールアドレス
  • 電話番号
  • 会社名と事業詳細
  • 請求と支払い情報
  • 税識別番号(GST、PAN)

1.2 事業データ

プラットフォームの利用中、以下を保存します:

  • 顧客とベンダー情報
  • 財務記録と取引
  • 従業員と給与データ
  • 在庫と製品情報
  • 請求書、領収書、文書

1.3 利用データ

自動的に収集します:

  • IPアドレスとデバイス情報
  • ブラウザの種類とバージョン
  • 訪問ページと使用機能
  • プラットフォームでの滞在時間
  • ログデータとエラーレポート

2. 情報の使用方法

サービス提供

ERPプラットフォームと機能を提供、維持、改善するため

アカウント管理

アカウントの作成と管理、支払い処理、サブスクリプションの取り扱いのため

カスタマーサポート

お問い合わせへの対応、技術支援の提供、問題解決のため

コミュニケーション

サービスアップデート、セキュリティアラート、プロモーション資料の送信(お客様の同意がある場合)

コンプライアンス

法的義務、税務規制、GST申告要件を遵守するため

分析

利用パターンを分析し、サービスを改善するため

3. 情報の共有方法

重要な注意点

当社は、マーケティング目的で個人情報を第三者に販売、貸与、交換することはありません。

以下とデータを共有する場合があります:

  • サービスプロバイダー: 運営を支援する支払い処理業者、クラウドホスティングプロバイダー、メールサービス
  • 政府機関: 法律で要求される場合、GST申告、税務コンプライアンス、または訴訟手続きのため
  • 事業譲渡: 合併、買収、または資産売却の場合(事前通知あり)
  • お客様の同意がある場合: お客様が明示的に情報共有を承認した場合

3.1 Artificial Intelligence (AI) Features

These features are off until you allow them. Nothing is sent to an AI service unless you tap "Allow" on the notice that names exactly what will be sent.

Some optional features use AI to read a document or message you choose and fill in a form for you. When you use one, the file or text you picked is uploaded to our server and passed to OpenAI, L.L.C. (United States) — our AI processing provider — which reads it and returns the extracted values to the app.

Which features use AI, and what each one sends:

  • AI Scan on a sales invoice or quote: the image/PDF you pick, including the customer name, address, GSTIN, item lines and amounts printed on it.
  • AI Scan on a purchase bill: the image/PDF you pick, including the vendor name, GSTIN, bill number, item lines and amounts.
  • AI receipt scan on an expense: the receipt image/PDF you pick, including vendor, date, amount, tax and GSTIN.
  • AI bank-statement analysis: the statement file you pick, including every transaction line and the account number, bank, branch and IFSC printed on it.
  • AI replies in Live Chat: the messages you type and any file you attach, plus your company name and the screen you asked from.

We ask permission separately for each of these features, before anything is sent, and the request names the data that feature will send. You can withdraw permission at any time in Settings → AI features & data; the feature then stops sending anything and asks again the next time you use it. If you never use these features, no data is sent to any AI service, and every one of them has a manual alternative.

We do not keep the file or message you picked after the values have been extracted from it. It is held only for as long as that single request takes and is not saved to our servers afterwards; only the extracted values are returned to the app, and they are stored only if you choose to save the form.

OpenAI processes this data as our service provider in order to return the extracted values. Under the OpenAI API terms that govern this use, OpenAI may process the data only to return that result, is required to protect it, and does not use data submitted through the API to train its models. We do not use it for advertising and we do not share it with any other AI service.

3.2 AI Assistant Connections (ChatGPT, Claude and other MCP clients)

Nothing is connected until you authorise it. You sign in, choose exactly one company, and approve — on a screen that names the application asking and the exact address your approval will be sent to.

Separately from the features above, you can connect an outside AI assistant — such as ChatGPT or Claude — so that it can answer questions about one of your companies. This works the opposite way round from 3.1: instead of us sending a document to an AI service, the assistant you chose asks us for figures and we answer. It reaches us over a standard connector interface (the Model Context Protocol) at mcp.laabam.one.

What a connection can and cannot do:

  • Read-only: every operation an assistant can call only reads. None of them creates, edits, deletes, sends a message, or moves money.
  • One connection, one company: the company is fixed at the moment you approve, and cannot be changed afterwards — not by you, not by the assistant, and not by anything written into a conversation with it. To reach a second company you approve a second, separate connection.
  • What it can read: for that one company only — invoices, customers, products, vendors, bank balances, expenses, profit and loss, and receivables. It cannot list or reach your other companies, and it is never given the name of the database your records are held in.
  • Checked on every request: your permission to open that company is re-verified each time the assistant asks, not once when you connected. If you lose access to a company, the connection loses it at the same moment.

The assistant you connect is not our service provider, and this is the part worth reading closely. Whatever it reads is then handled by whoever operates it — OpenAI for ChatGPT, Anthropic for Claude — under their privacy policy and their terms, not ours. Once figures leave us in answer to a question you asked, they can appear in that conversation and be retained by that provider under its own rules, which may differ from ours. Connect only assistants you are content to give that visibility to.

On our side we store the credential the connection uses, which single company it is fixed to, which of your logins approved it, and when. We do not store your conversations with the assistant, the questions it asks us, or the answers we return.

That credential lasts until you revoke it or it expires, whichever comes first. Nothing about the connection survives revocation except the record that it once existed.

You can see every AI assistant you have authorised, across all of your companies, in Settings → Security → AI Connections, and revoke any of them from there. Revoking takes effect immediately rather than waiting for expiry, and the assistant must ask for your approval again before it can read anything further. Removing a person from a company also ends the connections that person authorised for it.

4. プライバシー権利

アクセス権

当社が保持するすべての個人データのコピーを請求する権利

訂正権

不正確な情報を更新または修正する権利

削除権

個人データの削除を請求する権利(法的要件に従う)

制限権

特定の状況でデータの使用を制限する権利

権利を行使するには、 以下までご連絡ください: privacy@laabam.one または電話 +91 73056 41462

5. データセキュリティ

業界標準のセキュリティ対策を実施して情報を保護します:

🔒

SSL暗号化

転送中のデータに対する256ビットSSL暗号化

🛡️

データベース暗号化

保存データに対するAES-256暗号化

🔐

アクセス制御

2FA付きの役割ベースアクセス

💾

毎日のバックアップ

30日間保持の自動バックアップ

🚨

侵入検知

24/7監視とアラート

ISO/IEC 27001:2022 (ISMS/24M04105)

認定セキュリティ管理

6. データ保持

アカウントがアクティブな間、またはサービス提供に必要な期間、個人データと事業データを保持します。アカウント削除後:

  • 個人データは30日以内に削除
  • 財務記録は7年間保持(インド税法に従う)
  • バックアップコピーは90日以内に消去
  • 匿名化された分析データは無期限に保持される場合があります

7. クッキーとトラッキング

クッキーと類似技術を使用して:

  • サインイン状態を維持
  • 設定を記憶
  • サイトトラフィックと利用状況を分析
  • パーソナライズされた機能を提供

ブラウザ設定でクッキーを制御できます。クッキーを無効にするとプラットフォーム機能が制限される場合があります。

8. 子供のプライバシー

LaabamOneは事業用途向けに設計されており、18歳未満の子供を対象としていません。未成年者からの情報を故意に収集することはありません。誤ってそのようなデータを収集したと思われる場合は、直ちに当社に連絡してください。

privacyPage.mobileApp.title

privacyPage.mobileApp.description

privacyPage.mobileApp.dataCollection.title

privacyPage.mobileApp.dataCollection.description

  • privacyPage.mobileApp.dataCollection.items.0
  • privacyPage.mobileApp.dataCollection.items.1
  • privacyPage.mobileApp.dataCollection.items.2
  • privacyPage.mobileApp.dataCollection.items.3
  • privacyPage.mobileApp.dataCollection.items.4
  • privacyPage.mobileApp.dataCollection.items.5
  • privacyPage.mobileApp.dataCollection.items.6

privacyPage.mobileApp.permissions.title

privacyPage.mobileApp.permissions.description

📷

privacyPage.mobileApp.permissions.camera.title

privacyPage.mobileApp.permissions.camera.description

📁

privacyPage.mobileApp.permissions.storage.title

privacyPage.mobileApp.permissions.storage.description

🔔

privacyPage.mobileApp.permissions.notifications.title

privacyPage.mobileApp.permissions.notifications.description

🌐

privacyPage.mobileApp.permissions.internet.title

privacyPage.mobileApp.permissions.internet.description

📍

privacyPage.mobileApp.permissions.location.title

privacyPage.mobileApp.permissions.location.description

privacyPage.mobileApp.thirdPartySDKs.title

privacyPage.mobileApp.thirdPartySDKs.description

  • privacyPage.mobileApp.thirdPartySDKs.items.0
  • privacyPage.mobileApp.thirdPartySDKs.items.1
  • privacyPage.mobileApp.thirdPartySDKs.items.2
  • privacyPage.mobileApp.thirdPartySDKs.items.3

privacyPage.mobileApp.tracking.title

privacyPage.mobileApp.tracking.description

privacyPage.accountDeletion.title

privacyPage.accountDeletion.description

privacyPage.accountDeletion.howTo.title

  • 1
    privacyPage.accountDeletion.howTo.steps.0
  • 2
    privacyPage.accountDeletion.howTo.steps.1
  • 3
    privacyPage.accountDeletion.howTo.steps.2
  • 4
    privacyPage.accountDeletion.howTo.steps.3

privacyPage.accountDeletion.dataDeleted.title

  • privacyPage.accountDeletion.dataDeleted.items.0
  • privacyPage.accountDeletion.dataDeleted.items.1
  • privacyPage.accountDeletion.dataDeleted.items.2
  • privacyPage.accountDeletion.dataDeleted.items.3
  • privacyPage.accountDeletion.dataDeleted.items.4

privacyPage.accountDeletion.retentionNote.title

privacyPage.accountDeletion.retentionNote.content

9. 国際データ転送

お客様のデータは主にインドの安全なデータセンターに保存されます。国際的にデータを転送する場合、以下を含む適切な保護措置を確保します:

  • 標準契約条項(SCC)
  • データ処理契約(DPA)
  • GDPRおよび適用されるデータ保護法への準拠

10. ポリシーの変更

このプライバシーポリシーは随時更新される場合があります。重要な変更はメールまたはプラットフォームを通じて通知します。変更後のサービス継続利用は、更新されたポリシーの受諾を示します。

お問い合わせ

このプライバシーポリシーまたはデータ慣行について質問や懸念がある場合:

📧
📞
📍

住所

LaabamOne Business Solutions Pvt Ltd マドゥライ、タミル・ナードゥ州、インド