Legal
Privacy Policy
Last updated: 22 May 2025
Your privacy matters to us. This policy explains what data we collect, why we collect it, and how we protect it. We never sell your personal data.
1. Information We Collect
We collect the following types of information:
- Account Information: When you create an account, we collect your name, email address, and profile information provided through Supabase authentication (including social login providers like Google).
- Usage Data: We collect information about how you use the Service — including which URLs you audit, audit frequency, feature usage, and session data.
- Payment Information: If you subscribe to a paid plan, payment details are handled by our payment provider. We do not store full credit card details on our servers. We retain billing history and subscription status only.
- Technical Data: IP address, browser type, device type, operating system, and referring URLs to help diagnose issues and improve the Service.
- URLs Submitted for Audit: The URLs you submit are processed to generate reports. These are stored securely and associated with your account.
2. How We Use Your Information
We use your information to:
- Provide, operate, and maintain the UXAuditX Service
- Generate UX audit reports for the URLs you submit
- Send transactional emails (account confirmation, reports, billing receipts)
- Send product update emails (you may unsubscribe at any time)
- Detect and prevent fraud, abuse, and security incidents
- Improve the accuracy and quality of our AI analysis
- Comply with legal obligations
We do not use your data to train third-party AI models or sell data to advertisers.
3. Data Sharing & Third Parties
We share data with trusted third-party service providers only as necessary to operate the Service:
- Supabase — Authentication, database, and backend infrastructure
- Anthropic — AI analysis for generating audit reports
- Cloudflare R2 — Secure storage for audit screenshots and report assets
All third-party providers are contractually obligated to handle your data securely and in accordance with applicable laws. We do not sell, trade, or rent your personal information to any third party.
4. Cookies & Tracking
We use essential cookies to:
- Maintain your authentication session
- Remember your preferences
- Ensure the security of your account
We do not use third-party advertising cookies. You can disable cookies in your browser settings, but this may affect your ability to use the Service. We may collect aggregate, anonymised usage statistics to improve the product. No personally identifiable information is used in these insights.
5. Data Retention
We retain your data for as long as your account is active. If you delete your account:
- Your personal information is deleted within 30 days
- Audit reports associated with your account are deleted within 30 days
- Billing records may be retained for up to 7 years for legal and accounting compliance
- Anonymised, aggregated usage data may be retained indefinitely
You may request deletion of your data at any time by contacting us at [email protected].
6. Data Security
We implement industry-standard security measures to protect your data:
- All data is encrypted in transit using TLS
- Databases are encrypted at rest
- Access to production systems is restricted to authorised personnel only
- We conduct regular security reviews
Despite these measures, no method of electronic transmission or storage is 100% secure. We encourage you to use a strong, unique password and enable two-factor authentication.
7. Your Rights
Depending on your location, you may have the following rights:
- Right to access — request a copy of the data we hold about you
- Right to rectification — request correction of inaccurate data
- Right to erasure — request deletion of your personal data
- Right to restrict processing — ask us to limit how we use your data
- Right to data portability — receive your data in a structured format
- Right to object — object to our processing of your data
To exercise any of these rights, contact us at [email protected]. We will respond within 30 days.
8. Children's Privacy
UXAuditX is not intended for use by children under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it immediately.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email or by posting a prominent notice in the app. Your continued use of the Service after changes are posted constitutes your acceptance of the updated policy.
10. Contact Us
If you have questions about this Privacy Policy or how we handle your data, please contact us:
Email: [email protected]
Website: https://uxauditx.com