Thunzi AI
PlatformSolutionsIndustriesPricingResourcesAboutContact
View PricingStart a Free Trial
Thunzi AI

Thunzi AI

Reputation intelligence, sentiment analysis, AI visibility, and voice agents for African markets.

Platform

Brand MonitoringSentiment AnalysisAI VisibilityVoice Agents

Industries

SMEsAgenciesMunicipalitiesPublic Sector

Resources

InsightsReportsGuidesCase Studies

Company

AboutContactSecurityPrivacy
© 2026 Thunzi AI. All rights reserved.
PrivacyTermsData Processing

Legal

Privacy Policy for Thunzi AI

Last Updated: July 28, 2026

1. Introduction

Thunzi AI is an artificial intelligence-powered reputation intelligence, media monitoring, customer experience and digital presence management platform operated by Bakoena Technologies LLC, trading as Thunzi AI ("Thunzi AI," "we," "our," or "us").

Thunzi AI helps individuals, professionals, brands, organisations and their authorised representatives monitor, understand and manage their digital presence.

This Privacy Policy explains how we collect, access, use, store, protect, disclose, transfer and delete personal information when you visit our website, create an account, use Thunzi AI, connect a third-party account or otherwise interact with us.

It also explains our specific practices relating to information received through Google APIs and LinkedIn APIs.

By using Thunzi AI, you acknowledge the practices described in this Privacy Policy. Where consent is required, we will request it separately and expressly.

  • Media, web, social and review monitoring
  • Reputation and sentiment analysis
  • Narrative and issue detection
  • Crisis and risk alerts
  • Customer feedback and complaint analysis
  • Professional digital presence analysis
  • Review management
  • AI-generated summaries, insights and recommendations
  • Reporting and dashboards
  • Voice-agent, transcription and customer engagement services
  • User-authorised integrations with third-party platforms

2. Who Is Responsible for Your Information?

Bakoena Technologies LLC is generally the data controller for information collected directly from users of Thunzi AI.

Where an organisation uses Thunzi AI to process information about its customers, employees, stakeholders or other individuals, that organisation may be the data controller and Thunzi AI may act as its data processor or service provider. In those circumstances, the organisation determines why and how the information is processed, and its own privacy notice may also apply.

Enterprise customers must have the necessary authority and legal basis to submit information to Thunzi AI, connect organisational accounts and authorise Thunzi AI to process information on their behalf.

3. Information We Collect

3.1 Account and Registration Information

When you create or manage a Thunzi AI account, we may collect account information. We do not store passwords in plain text.

  • Full name
  • Email address
  • Telephone number
  • Job title
  • Organisation or brand name
  • Country or region
  • Profile photograph
  • Account preferences
  • Workspace membership and user role
  • Authentication identifiers
  • Password hashes, where password-based authentication is used
  • Subscription, billing and account status information

3.2 Business, Brand and Monitoring Information

You may provide information necessary to configure your reputation monitoring.

  • Brand, organisation, product or individual names
  • Keywords, topics and search terms
  • Competitor names
  • Executive or spokesperson names
  • Website domains
  • Social media handles
  • Industry and location information
  • Campaign information
  • Customer feedback
  • Complaints and support records
  • Documents, reports or content uploaded by you
  • Monitoring, alerting and reporting preferences

3.3 Information From Publicly Available Sources

Where permitted by applicable law and platform terms, Thunzi AI may collect or analyse publicly available information.

We do not treat information as freely usable merely because it is publicly visible. We apply access restrictions, platform terms, privacy rights and applicable legal requirements to our processing.

We do not use unauthorised scraping to obtain LinkedIn data. LinkedIn information accessed by Thunzi AI is obtained only through authorised LinkedIn APIs or information independently submitted by the user.

  • News articles
  • Public websites and blogs
  • Public reviews
  • Public social media posts
  • Public comments and discussions
  • Publicly accessible professional or organisational information
  • Publication dates, authorship and source information
  • Public engagement information
  • Other publicly available references to monitored brands, organisations, topics or individuals

3.4 Communications and Support Information

  • Email and message content
  • Support requests
  • Feedback
  • Survey responses
  • Meeting notes
  • Correspondence history
  • Information necessary to investigate and resolve an issue

3.5 Voice, Call and Transcription Data

Where you use voice-agent or call-analysis functionality, and subject to applicable notice and consent requirements, we may process voice and call information.

We do not use voice data to create biometric identity profiles unless we provide a separate notice and obtain any consent required by law.

  • Audio recordings
  • Call metadata
  • Telephone numbers
  • Call duration and timestamps
  • Transcriptions
  • Sentiment and topic classifications
  • Customer requests or complaints
  • Agent actions, outcomes and escalation records

3.6 Technical and Usage Information

  • Internet Protocol address
  • Browser and device type
  • Operating system
  • Device identifiers
  • Login timestamps
  • Pages and features used
  • Referring pages
  • Application events
  • Error and diagnostic information
  • Security logs
  • Approximate location derived from an IP address
  • Cookie and similar technology identifiers

4. Information Received From Google

4.1 Google Account Information

When you choose to sign in with Google or connect a Google account, Thunzi AI may request access to the minimum information necessary for the selected feature.

Thunzi AI does not receive your Google password. You can decline a requested permission, although the feature requiring that permission may not function.

  • Your Google account name, email address, profile photograph, and Google account or user identifier
  • Authentication and authorisation tokens
  • Google Business Profile accounts and locations
  • Business names, addresses, categories and profile information
  • Reviews and review replies
  • Business engagement or performance information
  • Other information clearly described on the Google authorisation screen

4.2 How We Use Google User Data

Google user data is used only to provide or improve clearly visible, user-facing Thunzi AI functionality that you request.

  • Authenticating your identity
  • Creating or linking your Thunzi AI account
  • Connecting an authorised business profile
  • Displaying connected account information
  • Monitoring and analysing reviews
  • Generating reputation, sentiment and customer experience insights
  • Preparing dashboards and reports
  • Allowing authorised users to manage or respond to reviews
  • Troubleshooting connected-account functionality
  • Protecting the security of your account
  • Complying with legal obligations

4.3 Google API Limited Use Disclosure

Thunzi AI's use and transfer to any other application of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Google user data, including raw, derived, aggregated or anonymised data obtained through Google APIs, will not be used to train general-purpose AI models. Where artificial intelligence is used to analyse connected information, it is used only to produce the specific, user-facing analysis requested through Thunzi AI.

  • Google user data is used only for user-facing features requested by the user
  • We request only the minimum permissions necessary
  • We do not sell Google user data
  • We do not transfer Google user data to advertising platforms, data brokers or information resellers
  • We do not use Google user data for targeted, personalised, retargeted or interest-based advertising
  • We do not use Google user data to determine creditworthiness or eligibility for lending
  • We do not use Google user data for surveillance
  • We do not use Google Workspace API data to develop, improve or train generalised or non-personalised artificial intelligence or machine-learning models
  • We do not permit our service providers to use Google user data for their own independent purposes

4.4 Human Access to Google User Data

Thunzi AI personnel do not manually read Google user data except in limited circumstances.

  • You have expressly authorised us to access specific information to provide support
  • Access is necessary to investigate fraud, abuse, a vulnerability or a security incident
  • Access is required by applicable law
  • Information has been aggregated and de-identified for legitimate internal operational purposes permitted by law and Google's policies

5. Information Received From LinkedIn

5.1 LinkedIn Member and Page Data

When you connect your LinkedIn account or authorise access through a LinkedIn Data Portability API, Thunzi AI may access information made available through the relevant LinkedIn API and expressly authorised by you.

Thunzi AI does not collect or request your LinkedIn password.

  • Name and professional profile information
  • Profile photograph
  • LinkedIn member or application-specific identifier
  • Employment and professional experience
  • Education
  • Skills, qualifications and certifications
  • Professional biography or headline
  • Content, posts or professional activity included in the authorised portability data
  • Organisation or LinkedIn Page information
  • Page content and activity
  • LinkedIn OAuth access tokens
  • Other portability data identified during the LinkedIn authorisation process

5.2 How We Use LinkedIn Data

LinkedIn data may be used to provide user-authorised functionality. Before accessing LinkedIn data, we will explain the categories of information requested, why it is requested, whether access is one-time or recurring, how it will be used and disclosed, how consent may be withdrawn and how deletion may be requested.

We obtain access only after a clear affirmative action by the LinkedIn member or authorised Page administrator.

  • Creating or enriching your professional reputation profile
  • Helping you understand your professional digital presence
  • Displaying your authorised LinkedIn information within your dashboard
  • Identifying incomplete, inconsistent or outdated professional information
  • Generating personalised reputation and professional positioning insights
  • Analysing authorised professional content or activity
  • Preparing reports requested by you
  • Supporting identity and entity matching
  • Allowing authorised Page administrators to access or analyse their Page portability information

5.3 Restrictions on Our Use of LinkedIn Data

LinkedIn data is used only for the authorised Thunzi AI feature and is kept identifiable and segregated where necessary to support selective deletion.

Thunzi AI is an independent service and is not sponsored, endorsed or operated by LinkedIn.

  • We do not sell, rent or license LinkedIn member data
  • We do not use LinkedIn data for advertising, advertising targeting, mass marketing, surveillance, unlawful discrimination, or general-purpose AI model training
  • We do not make LinkedIn data available through a standalone API
  • We do not obtain LinkedIn usernames or passwords
  • We do not obtain LinkedIn data through unauthorised scraping, crawling or similar methods
  • We do not claim that LinkedIn verified imported data or imply that LinkedIn sponsors, endorses or operates Thunzi AI
  • We do not use LinkedIn data to determine eligibility for employment, credit, housing, insurance or similar high-impact decisions unless expressly permitted by LinkedIn under separate written terms

6. How We Use Personal Information

We may send promotional communications where permitted by law. You can unsubscribe from marketing communications without affecting necessary service or security messages.

  • Provide, maintain and operate Thunzi AI
  • Create and administer accounts
  • Authenticate users
  • Connect authorised third-party accounts
  • Configure monitoring projects
  • Collect and analyse relevant mentions
  • Generate reputation, sentiment, narrative and customer experience insights
  • Identify emerging issues and potential crises
  • Generate alerts, summaries and reports
  • Enable review and response management
  • Operate AI voice agents and communication workflows
  • Provide technical and customer support
  • Process payments and manage subscriptions
  • Protect accounts, users and systems
  • Detect fraud, misuse and security incidents
  • Monitor service reliability
  • Improve user-facing functionality
  • Enforce our agreements
  • Comply with legal obligations
  • Communicate administrative, security and service-related information

7. Artificial Intelligence and Automated Processing

Thunzi AI uses artificial intelligence and machine-learning systems for sentiment analysis, topic and narrative classification, entity matching, summarisation, trend identification, risk and severity assessment, reputation scoring, suggested responses, voice transcription, complaint classification and recommendation generation.

AI-generated results may be incomplete or inaccurate and should be reviewed in context. Unless expressly stated otherwise, Thunzi AI insights are advisory and are not intended to make decisions that produce legal or similarly significant effects concerning an individual.

We do not use connected Google or LinkedIn data to train general-purpose AI models, build datasets for sale or licensing, create advertising audiences, determine creditworthiness, make employment, housing, insurance or lending decisions, conduct surveillance, or facilitate discrimination based on protected characteristics.

Where third-party AI infrastructure is used, the provider acts only as a contracted service provider. We do not authorise the provider to use connected Google or LinkedIn data for its independent purposes or to train its general models.

8. Legal Bases for Processing

8.1 Performance of a Contract

Processing is necessary to create your account, provide requested features, administer your subscription and fulfil our agreement with you.

8.2 Consent

We rely on consent when you connect a Google, LinkedIn or other third-party account, authorise particular API permissions, agree to call recording where consent is required, choose to receive optional marketing communications, or authorise a use that requires separate permission.

You may withdraw consent at any time. Withdrawal does not affect processing that lawfully occurred before withdrawal.

8.3 Legitimate Interests

Where permitted, we process information for legitimate interests such as operating and improving Thunzi AI, protecting accounts and systems, preventing fraud and misuse, understanding service performance, providing business reputation intelligence, responding to support requests, and establishing, exercising or defending legal claims.

We balance these interests against the rights and reasonable expectations of affected individuals.

8.4 Legal Obligations

We may process information to comply with laws, court orders, lawful regulatory requests, taxation requirements, accounting obligations and other legal responsibilities.

9. How and With Whom We Share Information

Thunzi AI does not sell or rent personal information, Google user data or LinkedIn data. We do not share personal information for cross-context behavioural advertising.

We may disclose information only in limited circumstances, including to authorised Bakoena Technologies personnel, contracted service providers and subprocessors, your organisation and workspace administrators, user-authorised integrations, professional advisers, legal and safety recipients, and parties involved in corporate transactions.

  • Service providers receive only the information reasonably necessary to perform the contracted service and must protect confidentiality, restrict access, notify us of relevant security incidents, and refrain from selling, advertising with, independently exploiting or training general models with connected Google or LinkedIn data.
  • A current list of relevant subprocessors may be requested by contacting [email protected].
  • Where Google API data is involved in a corporate transaction, we will obtain explicit prior consent where required by Google's Limited Use requirements before transferring that information.

9.8 What We Do Not Do

  • We do not disclose connected Google or LinkedIn user data to advertising networks, data brokers, information resellers, credit-reporting services, lenders, unauthorised employers or recruiters, unauthorised government surveillance programmes, or general-purpose AI training datasets.

10. Data Security and Protection Mechanisms

We maintain technical and organisational measures designed to protect personal information and sensitive connected-account information against unauthorised access, alteration, disclosure, loss, misuse or destruction.

No method of electronic transmission or storage is completely secure. We cannot guarantee absolute security, but we maintain controls proportionate to the nature and sensitivity of the information processed.

  • Encryption of information in transit and sensitive information at rest, including OAuth tokens and credentials where appropriate
  • Role-based access controls, least-privilege access, strong authentication, environment separation and access reviews
  • Firewalls, secure infrastructure configuration, credential segregation, vulnerability protections, malware and abuse prevention, backups and disaster recovery
  • Security and application logging, suspicious activity monitoring, authentication monitoring, error and incident detection, audit trails and investigation procedures
  • Code review, change control, dependency updates, vulnerability remediation, testing and secure handling of secrets
  • Confidentiality obligations, personnel restrictions, vendor due diligence, data-processing agreements and documented incident-response procedures

11. Security Incidents

We maintain an incident-response process for investigating, containing, remediating and documenting suspected security incidents.

Where required, we will notify affected users, enterprise customers, relevant regulators, law-enforcement authorities and applicable platform providers.

Where an incident may affect LinkedIn API data, LinkedIn services or LinkedIn members, we will notify LinkedIn within the period required under the applicable LinkedIn API terms.

12. Data Retention

We retain information only for as long as reasonably necessary for the purposes described in this Privacy Policy, subject to legal, security and contractual requirements.

  • Account and workspace information is ordinarily retained while the account remains active and for up to 30 days following closure, unless a longer period is required for legal, fraud-prevention or dispute-resolution purposes.
  • Google user data is retained only while the applicable integration remains connected, the user-facing feature requires the data, and we have a valid legal basis to process it. When you disconnect Google, close your account or request deletion, future API access is stopped, tokens are revoked or deleted, and associated Google user data is deleted from active systems without undue delay and ordinarily within 30 days.
  • LinkedIn member or Page portability data is stored only with the relevant authorisation and for as long as we have the necessary rights to retain it. When deletion is required, LinkedIn OAuth access tokens and member tokens are immediately revoked or deleted and LinkedIn data is immediately deleted or rendered permanently inaccessible in active systems.
  • Monitoring results and reports are retained according to the customer's subscription, workspace settings and contractual requirements. Unless otherwise agreed, they may be deleted within 90 days after termination of the relevant service.
  • Support communications may be retained for up to 24 months after resolution.
  • Security and access logs may be retained for up to 12 months, or longer where necessary to investigate an incident or comply with law.
  • Invoices, payment records, contracts and legally required business records may be retained for up to seven years or for the period required under applicable law.
  • Encrypted backups are retained on a limited rolling schedule and are protected against routine access. Deleted information may remain temporarily in backups until the relevant backup is securely overwritten.
  • We may retain information beyond an ordinary retention period where required by law, a valid legal hold, litigation, investigation or regulatory obligation.

13. Disconnecting Accounts and Revoking Access

You may disconnect a third-party integration through your Thunzi AI account settings where that functionality is available. You may also revoke Thunzi AI's access through the security or connected-app settings of the relevant Google or LinkedIn account.

Revoking access stops future collection through the relevant integration, does not automatically delete information that was lawfully collected before revocation unless deletion is also requested, and may prevent the connected feature from operating.

For LinkedIn portability data, a disconnection or deletion request will trigger the deletion requirements described in Section 12. To request complete deletion, contact [email protected] or use the available in-product deletion controls.

14. Your Privacy Rights

Depending on where you live, you may have rights to request access, obtain a copy, correct inaccurate information, request deletion, restrict or object to processing, withdraw consent, request portability, opt out of certain disclosures or targeted advertising, appeal certain privacy-request decisions, request information about recipients, request review of certain automated decisions, and lodge a complaint with an applicable data-protection authority.

You will not be discriminated against for exercising a privacy right. To submit a request, email [email protected] with the subject line Privacy Rights Request.

We may need to verify your identity and authority before completing the request. We will respond within the period required by applicable law. Where Thunzi AI processes information solely on behalf of an enterprise customer, we may refer your request to that customer or assist the customer in responding.

15. Deletion Requests

You may request deletion of your Thunzi AI account, information you submitted, imported Google information, imported LinkedIn information, connected-account tokens, uploaded documents, reports associated with your account, and other personal information linked to your account.

Deletion requests may be submitted through an available account-deletion feature, by disconnecting an integration and selecting deletion where offered, or by emailing [email protected].

We may retain limited information where necessary to comply with law, prevent fraud or abuse, resolve disputes, enforce agreements, maintain security, or establish or defend legal claims. This exception does not permit continued use of information for unrelated commercial purposes.

LinkedIn API data will be deleted immediately when required by LinkedIn's applicable terms, except where deletion would violate a legal obligation imposed by a competent authority.

16. Sensitive Personal Information

Thunzi AI does not intentionally request sensitive personal information unless it is necessary for a clearly disclosed feature and permitted by law.

Sensitive information may include information concerning health, race or ethnicity, religion, political opinions, trade-union membership, sexual orientation, gender identity, disability, immigration status, government identifiers, financial account information or biometric identifiers.

Public content analysed by the platform may incidentally contain sensitive information. We do not use connected Google or LinkedIn data to infer sensitive traits for discriminatory targeting, eligibility decisions or surveillance.

Users should avoid uploading sensitive information unless it is necessary, lawful and authorised.

17. Cookies and Similar Technologies

Thunzi AI may use cookies, local storage and similar technologies to maintain secure login sessions, remember preferences, prevent fraud, measure website and product performance, diagnose errors, and understand how features are used.

Where required, non-essential cookies will be used only after consent. Connected Google and LinkedIn user data is not combined with cookie information to create advertising audiences or deliver targeted advertising.

Browser settings may allow you to block cookies, although some Thunzi AI functionality may no longer work correctly.

18. International Data Transfers

Thunzi AI and its service providers may process information in the United States, Zimbabwe and other countries in which our infrastructure providers or authorised subprocessors operate. Those countries may have privacy laws different from the laws of your jurisdiction.

Where required, we use legally recognised transfer safeguards, which may include adequacy decisions, standard contractual clauses, contractual data-protection commitments, transfer-risk assessments, and additional technical and organisational controls.

19. Children's Privacy

Thunzi AI is intended for businesses and persons aged 18 or older.

We do not knowingly collect personal information directly from children under 18. If you believe a child has provided information to Thunzi AI without appropriate authorisation, contact [email protected] so that we can investigate and delete the information where required.

20. Third-Party Services

Google, LinkedIn and other third-party services operate independently from Thunzi AI. Their own privacy notices and terms govern information they collect directly from you and their operation of their platforms.

Connecting a third-party account does not make that third party responsible for Thunzi AI's privacy practices, and it does not mean the third party sponsors or endorses Thunzi AI.

21. Changes to This Privacy Policy

We may update this Privacy Policy to reflect product changes, new integrations, legal or regulatory developments, security improvements, or changes to our data-processing practices.

We will update the Last Updated date when changes are made. Where a change materially affects how connected Google or LinkedIn data is collected, used or disclosed, we will provide appropriate notice and obtain renewed consent where required before applying the new use.

22. Contact Us

Questions, complaints and privacy requests may be directed to the Privacy Team, Thunzi AI / Bakoena Technologies LLC.

Email: [email protected]

Website: thunzi.co

When contacting us about a privacy request, provide sufficient information for us to identify your account and understand the request. Do not send passwords or unnecessary sensitive information by email.