PrivacyTodayFlows OÜUpdated 07.2026
Privacy, in plain English.
We sell systems that respect data rules, so this policy follows the same standard we pitch: short, specific, and honest about what we do and don’t collect.
The data controller is TodayFlows OÜ, registered in Estonia, European Union, reg. 17288241. For anything in this policy, write to contact@todayflows.com.
This site is a static website and sets no cookies. For visitor numbers we use Cloudflare Web Analytics, a privacy-first tool that counts page views and referrers in aggregate, with no cookies, no fingerprinting, and no personal data collected. It tells us how many people visited and which pages, never who you are.
Booking links on this site go to Calendly. Calendly collects the details you enter (name, email, notes) to schedule the call and shares them with us. Calendly processes that data under its own privacy policy. We use your booking details to prepare for and hold the call, nothing else.
The partner application form collects what you type into it: your name, agency, email, country, and message. We use it to evaluate the application and reply; nothing else. The form is delivered to our inbox by Resend, a US-based email provider, which processes it under its own privacy policy. Applying does not put you on a mailing list.
We keep your email and its contents so we can reply and keep context for the conversation you started. We don’t add you to a mailing list, and we don’t sell or share your details with anyone.
We process the data above to take the steps you asked for before entering a contract, and on our legitimate interest in answering people who contact us (GDPR Art. 6(1)(b) and (f)). We keep correspondence and booking records only as long as the conversation or engagement is live, plus what Estonian accounting law requires for invoices.
Under the GDPR you can ask us for a copy of your data, ask us to correct or delete it, restrict or object to processing, and take your data elsewhere. Email contact@todayflows.com and we’ll act on it. You can also complain to the Estonian Data Protection Inspectorate (AKI) or your local supervisory authority.
Data we touch while building or running a system for a client is governed by that engagement’s contract and data processing terms, not by this page. For organizations with strict data rules, systems deploy fully self-hosted on the client’s own infrastructure.
If how this site works changes, analytics, forms, embedded widgets, this policy changes with it, and the date above moves.