1. Introduction
Welcome to COMPANY_NAME. We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services, including our website, Chrome extension, and related applications.
By using our services, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our services.
2. Information We Collect
We collect several types of information from and about users of our services:
2.1 Personal Information
We may collect personally identifiable information that you voluntarily provide to us, including but not limited to:
- Account Information: Name, email address, phone number, and password
- Profile Information: Professional title, organization, and profile picture
- Payment Information: Billing address and payment method details (processed securely through third-party payment processors)
- Communication Data: Information you provide when contacting our support team
2.2 Usage Information
We automatically collect certain information about your device and how you interact with our services:
- Device Information: IP address, browser type, operating system, device identifiers
- Usage Data: Pages visited, features used, time spent, click patterns, and referring URLs
- Performance Data: Error logs, crash reports, and performance metrics
2.3 Chrome Extension Data
Our Chrome extension may collect specific information to provide its functionality:
- Browser Activity: URLs visited, tab information, and browsing patterns (only as necessary for extension functionality)
- Extension Settings: User preferences and configuration
- Synchronization Data: Data synced across your devices through our services
Note: We only collect browser data necessary for the extension to function. We do not track your general browsing history beyond what is required for our service.
3. How We Use Your Information
We use the information we collect for various purposes, including:
- Service Delivery: To provide, maintain, and improve our services
- Account Management: To create and manage your account, authenticate users, and enable core functionality
- Communication: To send administrative information, updates, security alerts, and support messages
- Personalization: To customize your experience and provide personalized content and recommendations
- Analytics: To understand how users interact with our services and identify areas for improvement
- Security: To detect, prevent, and address technical issues, fraud, and unauthorized access
- Legal Compliance: To comply with legal obligations and protect our rights and the rights of others
- Marketing: To send promotional communications (with your consent, where required)
4. Data Storage and Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction.
4.1 Storage Location
Your data is stored on secure servers located in [TODO: SPECIFY REGION/COUNTRY]. We use industry-standard cloud infrastructure providers with SOC 2 Type II certification and ISO 27001 compliance.
4.2 Security Measures
Our security measures include:
- Encryption: Data in transit is protected using TLS/SSL encryption; sensitive data at rest is encrypted
- Access Controls: Role-based access control (RBAC) and principle of least privilege
- Authentication: Multi-factor authentication options for user accounts
- Monitoring: Continuous security monitoring and regular security audits
- Incident Response: Procedures for detecting and responding to security incidents
While we strive to protect your information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.
4.3 Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law.
When you delete your account, we will delete or anonymize your personal information within 30 days, except where we are required to retain it for legal, regulatory, or legitimate business purposes.
5. Third-Party Services
We use third-party services to help us operate our business and provide our services. These providers have access to your personal information only to perform specific tasks on our behalf and are obligated not to disclose or use it for other purposes.
5.1 Categories of Service Providers
- Infrastructure Providers: Cloud hosting and database services (e.g., Vercel, Supabase)
- Analytics: Usage analytics and performance monitoring (e.g., PostHog, Sentry)
- Payment Processors: Secure payment processing (e.g., Stripe)
- Communication: Email delivery and customer support tools (e.g., SendGrid, Intercom)
- Authentication: Identity verification and authentication services
[TODO: Update this list to reflect your actual third-party services]
5.2 Data Sharing
We do not sell, trade, or rent your personal information to third parties. We may share your information in the following circumstances:
- Service Providers: With trusted third-party service providers who assist in operating our services
- Legal Requirements: When required by law, regulation, legal process, or governmental request
- Business Transfers: In connection with a merger, acquisition, or sale of assets
- Protection of Rights: To enforce our terms, protect our rights, or ensure user safety
- With Consent: When you have given explicit consent for a specific purpose
7. Chrome Extension Specific Permissions
Our Chrome extension requires specific permissions to function. Here is what we access and why:
7.1 Required Permissions
- Storage: To save your preferences and settings locally and sync them across devices
- Active Tab: To interact with the current tab and provide context-specific features
- Host Permissions: To access specific websites where our extension provides functionality
- Identity: To authenticate your account and sync data securely
[TODO: Update this list based on your actual extension permissions in manifest.json]
7.2 Optional Permissions
Some features require additional permissions that you can grant or revoke at any time:
- Notifications: To send you alerts and updates about important events
- Clipboard: To enable copy-paste functionality for specific features
You can review and revoke permissions at any time through Chrome's extension settings (chrome://extensions/).
8. Your Rights and Choices
Depending on your location, you may have certain rights regarding your personal information:
8.1 GDPR Rights (EU/EEA Users)
If you are located in the European Union or European Economic Area, you have the following rights:
- Right to Access: Request access to your personal data
- Right to Rectification: Request correction of inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data ("right to be forgotten")
- Right to Restriction: Request restriction of processing your personal data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing of your personal data
- Right to Withdraw Consent: Withdraw consent at any time (where processing is based on consent)
8.2 CCPA Rights (California Users)
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to Know: Request information about the personal information we collect, use, and disclose
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: Opt-out of the sale of your personal information (Note: We do not sell personal information)
- Right to Non-Discrimination: Not receive discriminatory treatment for exercising your rights
8.3 Exercising Your Rights
To exercise any of these rights, please contact us at privacy@company.com. We will respond to your request within 30 days (or as required by applicable law).
You may also access, update, or delete certain information directly through your account settings.
9. Children's Privacy
Our services are not intended for children under the age of 13 (or 16 in the EU/EEA). We do not knowingly collect personal information from children under these ages.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us at privacy@company.com. We will delete such information from our systems promptly.
10. International Data Transfers
Your information may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ from those in your jurisdiction.
If you are located outside [TODO: YOUR COUNTRY] and choose to provide information to us, please note that we transfer the data, including personal data, to [TODO: YOUR COUNTRY] and process it there.
For EU/EEA users, we ensure that appropriate safeguards are in place, such as Standard Contractual Clauses approved by the European Commission, to protect your personal data.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.
We will notify you of any material changes by:
- Posting the updated policy on this page
- Updating the "Last Updated" date at the top of this policy
- Sending you an email notification (for significant changes that materially affect your rights)
We encourage you to review this Privacy Policy periodically for any changes. Your continued use of our services after changes are posted constitutes your acceptance of the updated policy.
12. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
[TODO: Add additional contact methods such as phone, postal address, or data protection officer contact if applicable]