Legal
Privacy Policy
Last updated: January 2025
Introduction
Privacy Gecko ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and protect your information when you use our services.
Information We Collect
Information You Provide
When you use our services, we may collect:
- Email address (for account creation and communication)
- Name (optional, for personalization)
- Payment information (processed securely through Stripe)
Automatically Collected Information
We collect minimal anonymized usage statistics through Plausible Analytics, a privacy-friendly analytics service:
- Page views and navigation patterns (no personal identifiers)
- Device type and browser (aggregated, not linked to you)
- Geographic location (country-level only)
How We Use Your Information
We use your information to:
- Provide and improve our services
- Process payments and manage subscriptions
- Send important service updates
- Respond to support requests
Data Retention & Deletion
Account Data
- Email addresses: Retained while account is active + 30 days after deletion request
- Payment information: Never stored by us (processed by Stripe per their retention policy)
- Usage statistics: Anonymized via Plausible, retained 24 months maximum
Contact Form Submissions
- Contact messages: Retained for 90 days to provide support, then permanently deleted
- Email addresses from contact form: Deleted with message after 90 days
Product-Specific Retention
GeckoShare Files
- Encrypted files: Deleted immediately upon expiration (24hr free tier, custom for Pro)
- Access logs: Retained 7 days for abuse prevention, then permanently deleted
- File metadata: Deleted with file
GeckoAdvisor Scans
- Scan results: Stored locally on your device only
- Anonymized scan metadata: Retained 90 days to improve recommendations
- Raw scan data: Never uploaded to our servers
Data Deletion Requests
Request deletion at privacy@privacygecko.com. We will:
- Confirm your identity (to prevent abuse)
- Delete all associated data within 30 days
- Provide confirmation email upon completion
Data Storage Location
- Primary servers: Hosted by Vercel (US-based, GDPR-compliant)
- Analytics: Plausible Analytics (EU-based)
- Payments: Stripe (US-based, Privacy Shield certified)
What We Don't Do
We will never:
- Sell your personal data to third parties
- Use tracking cookies or fingerprinting
- Share your data with advertisers
- Use your data for purposes beyond providing our services
Data Security
We implement industry-standard security measures to protect your data. All sensitive data is encrypted in transit and at rest. Products like GeckoShare use end-to-end encryption, meaning we cannot access your files even if we wanted to.
Your Rights
You have the right to:
- Access your personal data
- Request deletion of your data
- Export your data
- Opt-out of communications
Contact Us
For privacy-related questions or requests, contact us at: privacy@privacygecko.com