1. Scope & definitions
“Noviqe”, “we”, “our”, or “us” means Noviqe, Inc. and its affiliates. “Services” means our websites, apps, APIs, and related offerings. This Policy applies where we determine the purposes and means of processing your personal data (“controller”). For data we process on behalf of our customers (e.g., their end users), we are a “processor”.
2. Data we collect
- Account data — name, email, password (hashed), profile photo, workspace details.
- Billing data — billing email, country, VAT/GST info. Card data is handled by Stripe.
- Usage data — plan, features used, events (e.g., membership.created), logs.
- Device & tech data — IP address, browser, device type, pages viewed, UTM parameters.
- Support data — messages, attachments, and metadata you send to support channels.
- Integrations — provider IDs and tokens with your permission (e.g., Discord server ID).
3. How we use data
- Provide, secure, and maintain the Services.
- Process payments and manage subscriptions.
- Send transactional notices (e.g., receipts, security alerts).
- Measure performance and improve features.
- Comply with legal obligations and enforce terms.
- With consent: send product updates and educational content. You can opt out anytime.
4. Legal bases (GDPR)
- Contract — to provide the Services you request.
- Legitimate interests — to secure and improve the Services (balanced with your rights).
- Consent — for non‑essential cookies and marketing communications.
- Legal obligation — for tax, accounting, and regulatory requirements.
6. Payments
Payments are processed by Stripe. Stripe acts as an independent controller for certain activities. We receive limited billing details (e.g., last4, brand, expiry) and never store full primary account numbers on our servers.
8. Data retention
We retain personal data for as long as necessary to provide the Services, comply with our legal obligations, resolve disputes, and enforce agreements. When we no longer need data, we take steps to delete or anonymize it.
9. Security
We implement technical and organizational measures appropriate to the risk, including encryption in transit, least‑privilege access, secrets management, audit logs, and regular backups. No method of transmission or storage is 100% secure.
10. International transfers
Where data is transferred internationally, we use appropriate safeguards such as Standard Contractual Clauses, adequacy decisions, and additional technical measures where required.
11. Your rights
Depending on your location, you may have rights to access, correct, delete, port, or restrict processing of your personal data, and to object to certain processing. To exercise rights, email privacy@noviqe.pro. You can also manage marketing preferences using unsubscribe links.
12. California privacy (CCPA/CPRA)
We do not “sell” personal information as defined by the CCPA. We may “share” for cross‑context behavioral advertising only with your consent. California residents can exercise rights to know, delete, correct, and opt‑out by contacting us.
13. Children
Our Services are not directed to children under 13 (or older as required by local law). We do not knowingly collect personal data from children. If you believe a child provided personal data to us, contact us to delete it.
14. Changes to this policy
We may update this Policy from time to time. We will post the updated version with a new “Effective date” and, where appropriate, notify you by email or in‑app notice.
15. Contact us
Noviqe, Inc.123 Example Street, Suite 100
San Francisco, CA 94105, USA
Email: privacy@noviqe.pro
Appendix: Sub‑processors
We use certain third parties to process data on our behalf. This section lists our core processors. We will update this list as changes occur.
- Cloud hosting provider (infrastructure)
- Stripe (payments)
- Email service provider (transactional email)
- Product analytics platform
- Error monitoring and logging