1. Introduction
XAXO ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website (getxaxo.com) and desktop/mobile applications (collectively, the "Service").
By using our Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, do not use our Service.
2. Information We Collect
2.1 Personal Information
We collect information you provide directly:
- Full name and email address (during registration)
- Company name (optional)
- Payment information (processed securely via Stripe)
- License key and device identifiers
2.2 Automatically Collected Information
- Device information (operating system, hardware identifiers)
- Usage data (features used, task execution logs)
- IP address and approximate location
- Browser type and version
3. How We Use Your Information
We use the collected information for:
- Providing and maintaining the Service
- Processing payments and managing subscriptions
- License key validation and device management
- Sending important updates and notifications
- Improving our Service and developing new features
- Detecting and preventing fraud or abuse
- Complying with legal obligations
4. Data Storage and Security
Your data is stored securely using industry-standard encryption. We use:
- Supabase (EU region) for user authentication and database storage
- Stripe for payment processing (PCI DSS compliant)
- Vercel for website hosting (SOC 2 Type 2 certified)
- HTTPS encryption for all data transmission
- Hashed license keys (original keys never stored)
5. GDPR Rights (EU Users)
If you are in the European Union, you have the following rights under GDPR:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate personal data
- Right to Erasure: Request deletion of your personal data
- Right to Portability: Receive your data in a portable format
- Right to Object: Object to processing of your personal data
- Right to Restrict Processing: Request limitation of processing
To exercise any of these rights, contact us at: privacy@getxaxo.com
6. Data Sharing
We do not sell your personal information. We may share data with:
- Service Providers: Stripe (payments), Supabase (database), Vercel (hosting)
- Legal Requirements: When required by law or to protect our rights
- Business Transfers: In connection with a merger or acquisition
7. Data Retention
We retain your personal data only as long as necessary for the purposes outlined in this policy, unless a longer retention period is required by law. When you cancel your subscription, we will delete or anonymize your data within 30 days, except where we are legally required to retain it.
8. Cookies
We use essential cookies for authentication and session management. We do not use tracking cookies or third-party advertising cookies. By using our Service, you consent to our use of essential cookies.
9. Children's Privacy
Our Service is not intended for children under 16. We do not knowingly collect personal information from children. If you believe we have collected such information, please contact us immediately.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date. Your continued use of the Service after any changes constitutes acceptance of the updated policy.
11. Contact Us
If you have any questions about this Privacy Policy, please contact us:
- Email: privacy@getxaxo.com
- Website: https://getxaxo.com