Dadycar connector for AI assistants: privacy
Last updated: 4 October 2026.
The Dadycar connector lets a user of the Dadycar platform link their account to an AI assistant (Anthropic's Claude, OpenAI's ChatGPT, or any assistant that supports the MCP protocol), to look up and manage their fleet in plain language. This page explains what data the connector uses, where it goes and how long we keep it. It supplements the contract between Dadycar and each of its clients.
Who is responsible
For fleet data (vehicles, drivers, trips, expenses…), the client company is the controller; Dadycar acts on its behalf, as processor, under the contract. The connector is operated by DADYCAR, a simplified joint-stock company with a capital of 1,000 euros, 36 rue Raspail, 92300 Levallois-Perret, France. Contact: dpo@dadycar.fr.
What the connector reads
It acts with the Dadycar account of the user who connected it, and only within that account's permissions: it sees only what that account sees in the platform. At the user's request, it can read vehicles and their contracts, assignments, drivers and employees (names and business contact details), trips and positions of connected vehicles, telematics alerts, expenses, fuel cards and toll badges, fines (parking fines, ANTAI offences), insurance claims, inspections, maintenance, reminders and due dates, anomalies and dashboards.
What the connector can change
At the user's request: a vehicle's status, site, driver and details, its exit from the fleet or archiving, due dates (completed or postponed), anomalies (commented, resolved, reopened), telematics alerts (acknowledged, notification re-sent to the driver), and the import of records checked beforehand. These actions are declared to the assistant as changing data: it asks the user to confirm before running them, according to its own settings.
What the connector does not read
Neither your conversations, nor the files you add to the assistant, nor its memory. The connector only receives the assistant's requests (the operation wanted and its parameters) and answers them.
Where the data goes
The connector's answers are sent to the assistant the user connected, and so to its provider (Anthropic for Claude, OpenAI for ChatGPT), which processes them under its own terms and privacy policy, including outside the European Union. Dadycar has no control over what the provider does with the data it receives.
Connecting an assistant is the choice of the user and their company; on the team and enterprise plans of these assistants, administrators decide which connectors their members may use.
The platform and the connector are hosted in France, by OVHcloud: Dadycar transfers no data outside the European Union to run the connector.
What we keep
Your Dadycar password is never passed to the assistant: you type it on our sign-in page.
The assistant's registration with our authorization server (assistant name, return address): 30 days. The authorization code: 5 minutes.
The tokens that let the assistant act without asking for your password again: 24 hours for the access token, 14 days for the refresh token, replaced at each use.
Our servers' technical logs (date, IP address, request), for security and troubleshooting: 14 days.
We keep no copy of the answers sent to the assistant.
Ending access
You can disconnect Dadycar at any time in the assistant's settings. Access also follows your account: a deactivated account, or a company whose plan no longer includes the AI assistant, can no longer read or change anything through the connector.
Your rights
For fleet data, contact your company first, as controller; Dadycar helps it answer you. For any question about the connector: dpo@dadycar.fr. You may also lodge a complaint with the CNIL.
Security
OAuth 2.1 authorization with PKCE, encrypted exchanges, account permissions checked on every call, read and write operations kept separate and declared as such.