Privacy Policy
Last updated: December 1, 2024
1. Introduction
Cohorts ("we," "us," "our," or "Company") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services.
2. Information We Collect
2.1 Information You Provide
We collect information you voluntarily provide to us, including:
- Account registration information (name, email, password)
- Profile information (organization details, preferences)
- Payment information (processed securely through third-party providers)
- Communications with our support team
- Form submissions and survey responses
- Any other information you choose to provide
2.2 Information Collected Automatically
When you use our services, we automatically collect:
- Device information (IP address, browser type, device type)
- Usage data (pages visited, time spent, clicks)
- Log data (access times, referring URLs, error messages)
- Cookies and similar tracking technologies
- Location information (if you consent)
2.3 Third-Party Sources
We may receive information about you from third parties, including payment processors, analytics providers, and marketing partners.
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our services
- Process transactions and send related information
- Communicate with you about updates, security alerts, and support
- Respond to your inquiries and provide customer support
- Monitor and analyze usage patterns and trends
- Detect and prevent fraudulent transactions and other illegal activities
- Personalize your experience and deliver content relevant to your interests
- Comply with legal obligations and enforce our agreements
- Send promotional communications (with your consent)
4. Data Sharing and Disclosure
4.1 Service Providers
We may share your information with third-party service providers who assist us in operating our website and conducting our business, including:
- Stripe and Xendit (payment processing)
- Supabase (data hosting and authentication)
- Analytics and monitoring services
- Customer support platforms
4.2 Legal Requirements
We may disclose your information if required by law or if we believe in good faith that such disclosure is necessary to:
- Comply with legal obligations, court orders, or government requests
- Protect the rights, privacy, safety, or property of Cohorts, you, or others
- Enforce our Terms of Service and other agreements
- Detect, prevent, or address fraud, security, or technical issues
4.3 Business Transfers
In the event of a merger, acquisition, bankruptcy, or sale of assets, your information may be transferred as part of that transaction.
4.4 Aggregated Data
We may share aggregated, anonymized data that cannot identify you personally with third parties for research, marketing, and analytics.
5. Data Security
We implement comprehensive security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- SSL/TLS encryption for data in transit
- Secure password storage and authentication
- Regular security audits and assessments
- Access controls and role-based permissions
- Employee confidentiality agreements
However, no method of transmission over the internet is completely secure. While we strive to protect your information, we cannot guarantee its absolute security.
6. Your Rights and Choices
6.1 Access and Correction
You have the right to access and update your personal information at any time through your account settings or by contacting us.
6.2 Data Deletion
You may request deletion of your account and personal information. We will honor such requests subject to legal obligations and legitimate business purposes.
6.3 Cookie Preferences
You can control cookie preferences through your browser settings. Note that disabling certain cookies may affect functionality.
6.4 Marketing Communications
You can opt out of promotional emails by clicking the unsubscribe link in any message or updating your preferences in your account.
6.5 Regional Rights
If you are located in the EU, California, or other jurisdictions with specific data protection laws, you may have additional rights including data portability and automated decision-making restrictions. Contact us to exercise these rights.
7. Data Retention
We retain your personal information for as long as necessary to provide our services, fulfill the purposes outlined in this policy, and comply with legal obligations. You can request deletion of your account at any time, after which we will delete or anonymize your information within 30 days, except where we must retain it for legal compliance.
8. Third-Party Links
Our website may contain links to third-party websites and services that are not operated by Cohorts. This Privacy Policy does not apply to third-party services, and we are not responsible for their privacy practices. We encourage you to review the privacy policies of any third-party services before providing your information.
9. Children's Privacy
Our services are not directed to children under 13 years of age. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal information, we will promptly delete such information and terminate the child's account.
10. Changes to This Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. The date of the most recent update will be indicated at the top of this page. Your continued use of our services following notification of changes constitutes your acceptance of the updated Privacy Policy.
11. Contact Us
If you have questions about this Privacy Policy, your personal information, or our privacy practices, please contact us at:
Cohorts Privacy Team
Email: privacy@cohorts.io
Website: cohorts.io
We will respond to your inquiry within 30 days or as required by applicable law.
12. Additional Information for Specific Jurisdictions
12.1 European Union (GDPR)
If you are located in the EU, you have the rights outlined in the General Data Protection Regulation (GDPR), including the right to access, rectification, erasure, and data portability. We process your data on the basis of your consent, contract performance, legal obligation, or legitimate interests. You have the right to lodge a complaint with your local data protection authority.
12.2 California (CCPA)
If you are a California resident, you have the right to know what personal information is collected, the right to delete such information, and the right to opt-out of the sale of your personal information. You also have the right to non-discrimination for exercising your CCPA rights.