Privacy Policy

Version

1.0

Dec 8, 2025

1. Introduction

ProspectPirate ("Service," "we," "us," or "our") is operated by [Your Company Name]. This Privacy Policy explains how we collect, use, disclose, and protect information when you use our Service.

By using ProspectPirate, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide



Data Type

Examples

Account Information

Name, email address, company name, password

Billing Information

Payment method, billing address (processed by our payment provider)

Profile Information

Avatar, job title, team role

Configuration Data

Geographies, services, competitor rules, blocked domains

Communications

Support requests, feedback, emails you send us





2.2 Information Collected Automatically



Data Type

Examples

Usage Data

Features used, searches run, exports created, pages visited

Device Information

Browser type, operating system, device identifiers

Log Data

IP address, access times, referring URLs

Cookies & Tracking

Session cookies, analytics cookies (see Section 6)





2.3 Information from Third Parties



Source

Data

Authentication Providers

If you sign in via Google or other OAuth providers, we receive your name and email

Payment Processors

Transaction status and billing details (we do not store full payment card numbers)





3. How We Use Your Information

We use the information we collect to:



Purpose

Legal Basis (GDPR)

Provide and operate the Service

Contract performance

Process payments and manage subscriptions

Contract performance

Send transactional emails (receipts, alerts, notifications)

Contract performance

Provide customer support

Contract performance / Legitimate interest

Improve and develop new features

Legitimate interest

Analyze usage patterns and performance

Legitimate interest

Detect and prevent fraud or abuse

Legitimate interest

Send marketing communications (with consent)

Consent

Comply with legal obligations

Legal obligation





4. Data Obtained Through the Service

ProspectPirate enables you to discover publicly available information about businesses, including:

  • Business names and website URLs

  • Publicly listed contact information (emails, phone numbers, addresses)

  • Third-party software detected on websites

  • Google Business profile data (ratings, reviews, location)

Important:

  • This data is derived from publicly accessible sources

  • We do not scrape private or password-protected content

  • You are responsible for how you use data obtained through the Service

  • You must comply with all applicable laws when using this data (see our Terms of Service)

We retain aggregated, anonymized insights from searches to improve our detection algorithms, but we do not sell individual prospect data to third parties.

5. How We Share Your Information

We do not sell your personal information. We may share information with:

5.1 Service Providers



Provider Type

Purpose

Cloud hosting (e.g., Vercel, AWS, Supabase)

Infrastructure and data storage

Payment processors (e.g., Stripe)

Billing and subscriptions

Analytics (e.g., PostHog, Google Analytics)

Usage analysis

Email services (e.g., Resend, Postmark)

Transactional and marketing emails

Search APIs (e.g., SerpAPI)

Web search functionality





These providers are contractually obligated to protect your data and use it only for the services they provide to us.

5.2 Legal Requirements

We may disclose information if required to:

  • Comply with a legal obligation, subpoena, or court order

  • Protect our rights, property, or safety

  • Investigate potential violations of our Terms of Service

  • Protect against legal liability

5.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred. We will notify you of any such change.

5.4 With Your Consent

We may share information for other purposes with your explicit consent.

6. Cookies and Tracking Technologies

6.1 Types of Cookies We Use



Cookie Type

Purpose

Duration

Essential

Authentication, security, preferences

Session / Persistent

Analytics

Usage patterns, feature adoption

Persistent

Functional

Remember settings, improve UX

Persistent





6.2 Managing Cookies

You can control cookies through your browser settings. Note that disabling essential cookies may affect Service functionality.

6.3 Do Not Track

We currently do not respond to "Do Not Track" browser signals, as there is no consistent industry standard for compliance.

7. Data Retention



Data Type

Retention Period

Account data

Duration of account + 30 days after deletion

Billing records

7 years (legal/tax requirements)

Usage logs

12 months

Support communications

3 years

Prospect/search data

Duration of account + 30 days





After the retention period, data is deleted or anonymized.

8. Data Security

We implement industry-standard security measures, including:

  • Encryption in transit (TLS/HTTPS)

  • Encryption at rest for sensitive data

  • Access controls and authentication

  • Regular security assessments

  • Secure cloud infrastructure with SOC 2 compliant providers

However, no method of transmission or storage is 100% secure. We cannot guarantee absolute security.

9. Your Rights

9.1 All Users

You have the right to:

  • Access your personal data

  • Correct inaccurate data

  • Delete your account and associated data

  • Export your data in a portable format

  • Withdraw consent for marketing communications

9.2 European Economic Area (EEA) Residents — GDPR

If you are in the EEA, you have additional rights under GDPR:

  • Right to restriction of processing

  • Right to object to processing based on legitimate interest

  • Right to data portability

  • Right to lodge a complaint with your local Data Protection Authority

Data Controller: [Your Company Name], [Your Address]

Legal Basis for Processing: See Section 3 above.

9.3 California Residents — CCPA/CPRA

If you are a California resident, you have the right to:

  • Know what personal information we collect and how it's used

  • Delete your personal information

  • Opt-out of the sale of personal information (we do not sell personal information)

  • Non-discrimination for exercising your privacy rights

To exercise these rights, contact us at privacy@prospectpirate.com.

9.4 Other Jurisdictions

We comply with applicable privacy laws in other jurisdictions. Contact us if you have questions about your specific rights.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your own, including the United States. We ensure appropriate safeguards are in place, such as:

  • Standard Contractual Clauses (SCCs) approved by the European Commission

  • Data Processing Agreements with service providers

11. Children's Privacy

ProspectPirate is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children. If we learn we have collected data from a child, we will delete it promptly.

12. Third-Party Links

The Service may contain links to third-party websites. We are not responsible for the privacy practices of those sites. We encourage you to review their privacy policies.

13. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on our website

  • Sending an email to your registered address

  • Displaying a notice within the Service

Your continued use after changes take effect constitutes acceptance of the revised policy.

14. Contact Us

If you have questions about this Privacy Policy or wish to exercise your rights, contact us at:

[Your Company Name]

Email: privacy@prospectpirate.com

Address: [Your Address]

For GDPR-related inquiries, you may also contact our Data Protection Officer at: dpo@prospectpirate.com

Summary Table



What We Collect

Why

Your Rights

Account info

Provide the Service

Access, correct, delete

Usage data

Improve the Service

Access, object

Billing info

Process payments

Access, delete (after retention)

Cookies

Analytics, functionality

Manage via browser