SaaSCortex Privacy Policy Document
This page is intended to provide clear information about our data practices. If you need a signed Data Processing Addendum (DPA), security questionnaires, or enterprise compliance documents, please contact our team using the details in Section 15.
1. Introduction
Welcome to SaaSCortex. We build and operate enterprise-grade AI software designed for secure, high-performance, and business-critical workflows. This Privacy Policy describes how we collect, process, disclose, and safeguard information that can be used to identify, contact, or locate an individual or organization.
This Policy applies when you visit our websites, create an account, integrate third-party systems, use SaaSCortex applications, communicate with our team, or otherwise interact with our services. It also applies to trial, paid, and enterprise environments unless a separate written agreement states otherwise.
By accessing or using SaaSCortex, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, you should discontinue use of our services and contact us for clarification before proceeding.
- We prioritize transparency in how and why data is processed.
- We align internal controls with security and compliance best practices.
- We design data handling processes around least-privilege principles.
- We regularly review and update safeguards as legal and technical standards evolve.
2. Information We Collect
We collect information directly from you, automatically from your use of our services, and in some cases from authorized third parties. The types of information collected depend on your account configuration, subscription tier, and the features you enable.
Information may include account registration details, organizational billing data, product usage activity, device and browser metadata, support requests, and integration credentials required to connect with external platforms.
We make reasonable efforts to limit collection to information that is relevant, proportionate, and necessary to provide, improve, and secure SaaSCortex. In enterprise agreements, additional categories may be documented in contract-specific privacy exhibits.
- Account Data: name, business email, role, company name, and authentication settings.
- Transaction Data: subscription plan, invoicing records, and payment processor references.
- Usage Data: session logs, feature interactions, performance telemetry, and error events.
- Device Data: browser type, IP address, operating system, and approximate region.
- User Content: files, prompts, outputs, and workspace materials submitted by authorized users.
- Support Data: tickets, chat logs, troubleshooting diagnostics, and feedback submissions.
3. How We Use Your Information
We use collected information to provide core platform functionality, maintain system reliability, deliver customer support, and fulfill contractual obligations with organizations that use SaaSCortex.
We also use information to monitor service health, detect anomalies, improve user experience, develop new features, and understand aggregate product performance patterns. Where required by law, we rely on lawful processing bases such as consent, contract performance, and legitimate interests.
We do not use personal information in ways that are materially different from what is described in this Policy without first updating this Policy and, where applicable, notifying users or requesting additional consent.
- Provide, operate, and maintain SaaSCortex services and account access.
- Authenticate users, prevent unauthorized access, and enforce security controls.
- Process billing events, subscriptions, and account administration requests.
- Communicate platform notices, release updates, and service announcements.
- Investigate abuse, misuse, policy violations, fraud, and security incidents.
- Comply with legal obligations, lawful requests, and contractual commitments.
5. Analytics
SaaSCortex uses analytics mechanisms to better understand usage trends, adoption patterns, operational reliability, and product opportunities across teams and workflows.
Whenever possible, analytics data is aggregated, de-identified, or pseudonymized before broader internal reporting. Analytics insights help us improve platform performance, prioritize roadmap decisions, and reduce friction in core experiences.
We do not sell personal information to data brokers. Any analytics data sharing with authorized partners is performed under contractual confidentiality, security, and processing restrictions.
- Measure feature reliability, latency, and system performance over time.
- Evaluate onboarding success and identify product friction points.
- Support release quality checks and controlled rollout analysis.
- Generate internal dashboards for service planning and capacity management.
- Conduct aggregate insights analysis without repurposing data for unrelated use.
7. Data Security
SaaSCortex maintains administrative, technical, and physical safeguards designed to protect personal information against unauthorized access, disclosure, misuse, destruction, or alteration.
Security measures include encryption in transit, controlled access permissions, activity monitoring, secure development practices, and incident response protocols. We continuously evaluate controls to align with evolving risk profiles.
No internet-based service can guarantee absolute security. However, we are committed to responsible security governance and timely incident handling in line with legal and contractual obligations.
- Encryption of data in transit using modern TLS standards.
- Logical access controls and role-based authorization models.
- Ongoing monitoring for suspicious access patterns and anomalies.
- Routine patching, vulnerability management, and hardening procedures.
- Security incident detection, escalation, and containment workflows.
- Employee confidentiality obligations and security awareness training.
8. Data Retention
We retain personal information for as long as needed to fulfill the purposes described in this Policy, provide contracted services, resolve disputes, and comply with legal, regulatory, and accounting obligations.
Retention periods vary by data category, relationship type, and operational requirements. When retention is no longer necessary, we delete, anonymize, or securely isolate information in accordance with our data lifecycle controls.
Enterprise customers may request custom retention terms under applicable agreements. Such terms may supersede default periods where contractually documented.
- Account information is retained while your account remains active.
- Billing and transaction records are retained for financial compliance periods.
- Support records may be retained to improve service continuity and quality.
- Security logs may be retained to support audit and incident investigation needs.
- Upon valid deletion requests, data is removed unless legal exceptions apply.
9. Your Privacy Rights
Depending on your location and applicable law, you may have rights related to personal information, including the right to access, correct, delete, transfer, or restrict certain processing activities.
To protect privacy and account security, we may require identity verification before completing requests. We respond within timelines required by applicable regulations and will notify you if additional information is needed.
If you believe your rights have been violated, you may contact us directly and, where legally available, lodge a complaint with a supervisory authority.
- Right to know what personal information we collect and how it is used.
- Right to request correction of inaccurate or incomplete personal data.
- Right to request deletion, subject to legal and contractual exceptions.
- Right to object to or restrict specific processing in eligible circumstances.
- Right to data portability where technically feasible and legally required.
- Right to withdraw consent where processing is based on consent.
10. Marketing Communications
We may send marketing updates about product capabilities, events, thought leadership, and service announcements where permitted by law and your communication preferences.
You can opt out of promotional emails at any time using unsubscribe mechanisms in those communications or by contacting us directly. Operational messages related to account security, billing, and service status may still be sent when necessary.
Preference updates may require a reasonable processing period. We honor suppression requests in accordance with applicable law.
- Promotional messages are subject to your opt-in/opt-out preferences.
- Transactional and service-critical notices may continue as required.
- You may request communication preference updates through support channels.
- We do not authorize third parties to send unsolicited marketing on our behalf.
11. Third-Party Links
Our website or services may include links to third-party websites, integrations, and resources that are not operated by SaaSCortex. Those services maintain independent privacy and security practices.
We are not responsible for the content, policies, or data handling activities of third-party properties. We encourage you to review their privacy notices before providing information or enabling integrations that involve personal data.
Linking to an external service does not imply endorsement of that service’s privacy standards, legal terms, or security posture.
- Review third-party privacy policies before submitting personal information.
- Evaluate third-party terms for data usage, storage, and transfer practices.
- Disable integrations you do not use or no longer trust.
- Contact third-party providers directly regarding their privacy practices.
12. Children's Privacy
SaaSCortex is intended for business and professional users. Our services are not directed to children, and we do not knowingly collect personal information from children under the age required by applicable law.
If you believe a child has provided personal information to SaaSCortex without appropriate authorization, please contact us immediately. We will take reasonable steps to investigate and delete the information where required.
Parents, guardians, educators, and administrators who have concerns about child-related data can reach us via the contact details below.
- We do not knowingly solicit children’s personal information.
- We will investigate and address verified child-data concerns promptly.
- Data removal actions are handled in line with legal requirements.
13. International Data Transfers
SaaSCortex may process and store information in countries where we or our service providers maintain facilities. Data protection laws in those jurisdictions may differ from laws in your location.
Where required, we implement recognized transfer safeguards and contractual protections designed to ensure personal information receives an adequate level of protection. These safeguards may include standard contractual clauses and additional technical or organizational controls.
By using our services, you acknowledge that data transfers may occur as part of routine service delivery, support operations, and enterprise system reliability processes.
- International transfers are assessed for legal and security compatibility.
- Contractual safeguards are applied where required by data protection laws.
- Vendor relationships include confidentiality and handling obligations.
- Transfer mechanisms are periodically reviewed and updated as regulations evolve.
14. Changes to This Privacy Policy
We may revise this Privacy Policy periodically to reflect product updates, legal obligations, security practices, and operational improvements.
When we make material changes, we will update the “Last Updated” date and provide additional notice where required, such as in-product messaging or direct communication channels.
Your continued use of SaaSCortex after updates become effective indicates acknowledgment of the revised Policy. If you do not agree with the updated terms, you should discontinue use and contact us regarding your options.
- The most current version will always be available on this page.
- Material updates may include prominent service notices.
- Historical versions may be provided upon reasonable request.
15. Contact Us
If you have any questions about this Privacy Policy, our data handling practices, or your privacy rights, please contact us using the details below.
We review inquiries promptly and may request additional context to verify identity and ensure secure handling of your request. Enterprise customers may also contact their account representative for policy and compliance support.
- Email: [YOUR EMAIL]
- Phone: [YOUR PHONE]
- WhatsApp: [YOUR WHATSAPP]
- Address: [YOUR ADDRESS]
For immediate return to the main website experience, use the “Back to Home” button in the top navigation.