1. Introduction
GeoApex ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our GeoApex Engine platform and related services (the "Service").
By using the Service, you consent to the data practices described in this policy. If you do not agree with this policy, please do not use the Service.
Your Rights: You have the right to access, correct, delete, or export your personal data at any time. See Section 8 for details.
2. Information We Collect
2.1 Information You Provide
We collect information you provide directly when you:
- • Create an account: Name, email address, password, company name
- • Subscribe to a plan: Billing information, payment method details (processed by Stripe)
- • Use the Service: Microsite content, settings, preferences, uploaded files
- • Contact us: Support inquiries, feedback, correspondence
2.2 Information Collected Automatically
When you use the Service, we automatically collect:
- • Usage data: Pages viewed, features used, time spent, interactions
- • Device information: Browser type, operating system, device identifiers
- • Location data: IP address, general geographic location
- • Cookies and similar technologies: See Section 3 for details
2.3 Information from Third Parties
We may receive information about you from third-party services you connect to our platform:
- • OAuth providers: Google (if you sign in with Google)
- • Payment processors: Stripe (payment and billing information)
- • Analytics services: PostHog, Vercel Analytics
3. Cookies and Tracking Technologies
We use cookies, web beacons, and similar tracking technologies to collect information and improve the Service.
3.1 Types of Cookies We Use
Essential Cookies
Required for the Service to function. These enable core features like authentication and security. You cannot opt out of these cookies.
Analytics Cookies
Help us understand how users interact with the Service. We use PostHog and Vercel Analytics to track usage patterns, feature adoption, and performance metrics.
Marketing Cookies
Used to show you relevant advertisements and measure campaign effectiveness. These cookies may be set by third-party advertising networks.
3.2 Managing Cookies
You can manage cookie preferences through our cookie consent banner or your browser settings. Note that disabling certain cookies may impact Service functionality.
4. How We Use Your Information
We use collected information for the following purposes:
4.1 Service Delivery
- • Provide, operate, and maintain the Service
- • Process your subscriptions and transactions
- • Generate microsites and AI-powered content
- • Enable collaboration features
- • Provide customer support
4.2 Improvement and Development
- • Analyze usage patterns to improve features
- • Develop new products and services
- • Conduct research and analytics
- • Fix bugs and optimize performance
4.3 Communication
- • Send account updates and notifications
- • Respond to inquiries and support requests
- • Send marketing communications (with your consent)
- • Notify you of changes to our policies
4.4 Security and Compliance
- • Prevent fraud and abuse
- • Enforce our Terms of Service
- • Comply with legal obligations
- • Protect our rights and property
5. How We Share Your Information
We do not sell your personal information. We may share your information in the following circumstances:
5.1 Service Providers
We share information with trusted third-party service providers who perform services on our behalf:
- • Stripe: Payment processing and billing
- • Resend: Transactional email delivery
- • PostHog: Analytics and product insights
- • Vercel: Hosting and infrastructure
- • Supabase: Database and authentication
- • OpenAI/Anthropic: AI content generation
5.2 Legal Requirements
We may disclose information if required by law, court order, or government regulation, or if we believe disclosure is necessary to:
- • Comply with legal obligations
- • Protect our rights or property
- • Prevent fraud or abuse
- • Respond to emergencies involving personal safety
5.3 Business Transfers
If GeoApex is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change.
6. Data Security
We implement industry-standard security measures to protect your information:
- • Encryption: Data is encrypted in transit (TLS/SSL) and at rest
- • Access controls: Limited employee access on a need-to-know basis
- • Secure infrastructure: Hosted on secure cloud platforms (Vercel, Supabase)
- • Regular audits: Periodic security assessments and updates
- • Password protection: Passwords are hashed using bcrypt
While we strive to protect your information, no security system is impenetrable. We cannot guarantee absolute security of your data.
7. Data Retention
7.1 Active Accounts. We retain your information for as long as your account is active or as needed to provide the Service.
7.2 Deleted Accounts. When you delete your account, we will delete or anonymize your personal information within 30 days, except where retention is required by law.
7.3 Legal Requirements. We may retain certain information longer if required for legal, tax, or regulatory purposes (e.g., transaction records for 7 years).
7.4 Backup Copies. Backup copies may persist for up to 90 days after deletion before being permanently removed.
8. Your Privacy Rights
Depending on your location, you may have the following rights:
8.1 Access and Portability
You have the right to request a copy of your personal data in a machine-readable format. You can export your data through your account settings or by contacting us.
8.2 Correction
You can update your account information at any time through your account settings. If you believe any information is inaccurate, please contact us to correct it.
8.3 Deletion
You have the right to request deletion of your personal data. You can delete your account through your settings or contact us for assistance. Note that some information may be retained as described in Section 7.
8.4 Objection and Restriction
You can object to certain data processing activities or request restricted processing. Contact us at privacy@geoapex.io to exercise these rights.
8.5 Withdraw Consent
Where we rely on your consent to process data, you can withdraw consent at any time. This will not affect the lawfulness of processing before withdrawal.
8.6 Marketing Opt-Out
You can opt out of marketing emails by clicking "unsubscribe" in any marketing email or updating your email preferences in your account settings.
9. GDPR and CCPA Compliance
9.1 GDPR (European Union)
If you are in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):
- • Legal basis for processing: Consent, contract performance, legitimate interests
- • Data protection officer contact: privacy@geoapex.io
- • Right to lodge a complaint with your local supervisory authority
- • International data transfers comply with GDPR requirements
9.2 CCPA (California)
If you are a California resident, you have rights under the California Consumer Privacy Act (CCPA):
- • Right to know what personal information we collect, use, and share
- • Right to delete personal information (with exceptions)
- • Right to opt-out of the "sale" of personal information (we do not sell data)
- • Right to non-discrimination for exercising CCPA rights
To exercise CCPA rights, contact us at privacy@geoapex.io. We will respond within 45 days.
10. Children's Privacy
The Service is not intended for users under 18 years of age. We do not knowingly collect personal information from children under 18. If you believe we have collected information from a child, please contact us immediately at privacy@geoapex.io, and we will delete it.
11. International Data Transfers
Your information may be transferred to and processed in the United States or other countries where our service providers operate. These countries may have different data protection laws than your country.
We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy and applicable laws, including the use of Standard Contractual Clauses for transfers from the EEA.
12. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any information.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- • Posting the updated policy on this page
- • Updating the "Last Updated" date
- • Sending an email notification (for significant changes)
Your continued use of the Service after changes become effective constitutes acceptance of the updated policy.
14. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your personal data:
GeoApex Privacy Team
Email: privacy@geoapex.io
General Support: hello@geoapex.io
Website: geoapex.io
We will respond to all requests within 30 days (or sooner as required by applicable law).
Your Privacy Matters: We take data protection seriously and are committed to transparency. If you have any concerns about how we handle your information, please don't hesitate to reach out to our privacy team.