Privacy Policy
Last updated: May 2026 · Applies to all Relay Services
The Basics
Who we are. Aether Digital operates Relay — a professional multi-channel notification infrastructure platform designed to help engineering teams deliver reliable, high-throughput product notifications across Email, WhatsApp, SMS, Telegram, Slack, and more through a single, unified API. Our platform is accessible at relay-notify.com.
This Privacy Policy explains what personal data we collect, why we collect it, how we use and protect it, and what rights and choices you have regarding your data. It applies to all visitors to our website and all users of the Relay platform.
If you have questions about your privacy, want to exercise any of the rights described below, or need to contact our data protection team, please reach out at aetherdigital.contact@gmail.com. We commit to responding to all data-related inquiries within five (5) business days.
This Privacy Policy is part of and should be read alongside our Terms of Service. We recommend reviewing both documents periodically, as they may be updated to reflect changes in our practices or applicable law.
Our Role: Controller and Processor
Data protection law distinguishes between two types of parties: a controller, who determines why and how personal data is processed, and a processor, who handles personal data solely on the controller's behalf and in accordance with their instructions.
When you visit our website or create a Relay account, Aether Digital acts as a controller. We determine the purposes for which data is collected and processed in those contexts.
When you use Relay to send notifications to your own end-users or customers, Aether Digital acts as a processor. In this case, you (as our customer) are the controller of your end-users' personal data, and we process that data solely to deliver the Services you have requested. See Section 5 for more details on our role as a processor.
We take both roles seriously. In each scenario, we apply appropriate safeguards and operate with full respect for applicable data protection regulations, including the GDPR where applicable.
Definitions & Key Terms
Throughout this Privacy Policy, the following terms carry the meanings set out below:
- "Personal Data" — Any information that identifies or can reasonably be used to identify a natural person, directly or indirectly. This includes names, email addresses, IP addresses, device identifiers, and online behavioural data.
- "Services" — The Relay platform, APIs, SDKs, documentation, dashboard, and all associated products made available by Aether Digital.
- "User" — Any individual or organization that creates an account on the Relay platform or otherwise accesses the Services.
- "End-User" — A downstream recipient of notifications sent via the Relay platform by one of our customers.
- "Visitor" — Any individual who visits the Relay website at relay-notify.com without necessarily creating an account.
- "Controller" — The party that determines the purposes and means of processing personal data.
- "Processor" — The party that processes personal data on behalf of a controller, following the controller's instructions.
Legal Bases for Processing
Certain jurisdictions, particularly those subject to the EU General Data Protection Regulation ("GDPR"), require that every act of personal data processing must rest on a valid legal basis. Aether Digital only processes personal data where a legal basis has been established. The legal bases we rely upon include:
- Performance of a contract: Processing necessary to fulfill our obligations to you under our Terms of Service, such as creating and managing your account or delivering the Services you have subscribed to.
- Legitimate interests: Processing in our or a third party's legitimate interests, provided those interests are not overridden by your rights. This includes improving our platform, preventing fraud, and ensuring security.
- Consent: Where we rely on your consent (for example, for certain marketing communications), you always have the right to withdraw that consent at any time.
- Legal obligation: Processing required to comply with applicable laws, regulations, court orders, or lawful government requests.
Where specific legal bases apply to a particular processing activity, we identify them in the relevant sections below.
Personal Data We Process as a Processor
When our customers use Relay to send notifications to their end-users, we process personal data about those end-users solely on behalf of the customer and according to their instructions. In these circumstances, we are a processor and the customer is the controller of that data.
The personal data we may process in our capacity as a processor can include: full name, email address, phone number, device tokens for push notifications, and any additional metadata supplied by the customer through our API for the purpose of personalizing notification content.
If you are an end-user of one of our customers and have questions about how your personal data is used, or wish to exercise your privacy rights, you should contact the customer directly — they are the controller of your data and are responsible for responding to such requests.
A Data Processing Agreement ("DPA") is available to our customers upon request. The DPA governs the terms under which we process end-user data and outlines our respective obligations. Contact aetherdigital.contact@gmail.com to request a copy.
Personal Data We Collect as a Controller
The following describes the personal data we collect directly from Visitors and Users, why we collect it, how we use it, and the legal basis for doing so.
6.1 Website Visitors
Contact form submissions: When you reach out via our contact form or sign up for our newsletter, we collect the information you provide (name, company, email, message content). We use this information to respond to your inquiry or to send you product updates you have opted into. Legal basis: performance of a contract / legitimate interests.
Browsing and activity data: We automatically collect technical data when you visit our site, including your IP address, browser type, pages visited, time spent on each page, and referring URLs. This data is used for analytics, security monitoring, and to improve the user experience. Legal basis: legitimate interests.
6.2 Registered Users
Registration data: To create an account, we collect your full name and email address. If you register using a third-party provider (e.g. GitHub or Google), we also receive basic profile information from that provider such as your username, email, and profile photo. We use registration data to create and manage your account, protect platform security, and communicate with you about the Services. Legal basis: performance of a contract.
Platform usage data: We collect data about how you interact with the Relay dashboard and API, including features used, configuration changes, and notification throughput. This data is used to maintain platform stability, prevent abuse, and improve our product offering. Legal basis: legitimate interests.
Billing data: If you subscribe to a paid plan, payment information is collected and processed by our third-party payment provider. We do not store complete payment card details on our servers. We receive transaction confirmation and billing metadata for account management purposes. Legal basis: performance of a contract.
Our Marketing Activities
We may use your contact information to send you product updates, feature announcements, and informational newsletters about Relay and the notification infrastructure space. We aim to keep marketing communications relevant, infrequent, and genuinely useful.
How to opt out: You can unsubscribe from marketing emails at any time by clicking the "Unsubscribe" link found in the footer of any marketing email, or by contacting us directly at aetherdigital.contact@gmail.com. Opting out of marketing communications will not affect transactional or service-related messages, which we may still need to send you as part of providing the Services (for example, billing receipts, security alerts, or critical platform notices).
International Data Transfers
Aether Digital and some of our service providers operate across jurisdictions, which may result in your personal data being processed in countries outside your country of residence, including countries outside the European Economic Area ("EEA").
Where we transfer personal data internationally, we implement appropriate safeguards to ensure your data receives a level of protection consistent with this Privacy Policy and applicable data protection law. These safeguards may include:
- Transferring data to countries that have been recognized by the relevant authority (e.g. the European Commission) as providing an adequate level of data protection.
- Executing Standard Contractual Clauses (SCCs) approved by the European Commission with recipients of personal data outside the EEA.
- Applying supplementary technical and organizational security measures where the circumstances require.
To learn more about the specific mechanisms used for any particular international transfer of your data, please contact us at aetherdigital.contact@gmail.com.
Security
The security of your personal data is a fundamental priority for us. Relay applies industry-standard technical and organizational security measures to protect your data against unauthorized access, accidental loss, destruction, or disclosure. These measures include data encryption in transit (TLS) and at rest, access controls based on the principle of least privilege, secure API key management, and regular security reviews of our systems and processes.
While we invest significantly in securing the platform, no system can guarantee absolute security. The overall security of your data also depends on the precautions you take on your own side — such as keeping your account credentials confidential, using strong and unique passwords, and securing the devices you use to access the Services. We strongly recommend enabling two-factor authentication on your account where available.
If you discover or suspect a security vulnerability in the Relay platform, please disclose it responsibly by contacting us immediately at aetherdigital.contact@gmail.com. We treat all security reports with urgency and confidentiality.
Your Rights
Depending on the laws that apply to you, you may have certain rights over your personal data. Below is a summary of common rights, particularly those granted under the GDPR. To exercise any of these rights, contact us at aetherdigital.contact@gmail.com. We may ask for reasonable evidence of your identity before processing your request.
Right of Access
You may request a copy of the personal data we hold about you and information about how we use it.
Right to Rectification
You may request that we correct any inaccurate or incomplete personal data we hold about you.
Right to Erasure
You may request deletion of your personal data where there is no longer a compelling reason for us to retain it. Note that certain data may need to be retained to comply with legal obligations.
Right to Restrict Processing
You may request that we pause processing of your personal data in certain circumstances, for example while we verify the accuracy of data you dispute.
Right to Data Portability
Where processing is based on consent or contract, you may request a structured, machine-readable export of the personal data you provided to us.
Right to Object
You may object to processing based on our legitimate interests, including processing for direct marketing purposes. We will stop such processing unless we can demonstrate compelling legitimate grounds that override your interests.
Right to Withdraw Consent
Where processing is based on your consent, you may withdraw that consent at any time. Withdrawal does not affect the lawfulness of processing carried out before withdrawal.
Right to Lodge a Complaint
If you are located in the EU or UK, you have the right to submit a complaint to your local data protection authority. We would appreciate the opportunity to address your concerns first.
Data Retention
We retain personal data only for as long as is necessary to fulfill the purposes for which it was collected, including satisfying legal, regulatory, or reporting requirements. When a retention period has expired, we securely delete or anonymize the relevant data.
The specific retention periods we apply vary depending on the type of data and the purpose for which it was collected. Factors we consider when setting retention periods include the sensitivity of the data, the potential risk of harm from unauthorized disclosure, the purpose for which it was originally collected, and whether we can achieve the same purpose by retaining less data.
Please note that our service providers and sub-processors maintain their own independent data retention policies. To obtain details about the specific retention periods applicable to particular types of personal data we process, contact us at aetherdigital.contact@gmail.com.
Children's Privacy
The Relay platform is designed for professional use by businesses and developers and is not directed at children under the age of sixteen (16). We do not knowingly collect personal data from individuals under this age. If you become aware that a minor has created an account or provided us with personal data without appropriate parental consent, please notify us immediately at aetherdigital.contact@gmail.com and we will take steps to delete such data promptly.
Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our data practices, legal requirements, or the features of the Services. When we make material changes, we will update the "Last updated" date at the top of this document and, where appropriate, notify you by email or via a prominent notice within the platform.
We encourage you to review this Privacy Policy from time to time to stay informed about how we are protecting your data. Your continued use of the Services after any update to this Policy constitutes your acknowledgment of the changes and, where required by law, your consent to the updated practices.
© 2026 Aether Digital · Relay Protocol · All rights reserved.