Privacy Policy
Last updated: March 7, 2026
1. Information We Collect
Account Information
When you create an account, we collect your name, email address, phone number, company name, and billing information.
Usage Data
We automatically collect information about how you use the Service, including pages visited, features used, click patterns, and session duration. This data is collected through PostHog analytics.
Session Recordings
We may record user sessions (mouse movements, clicks, scrolls) to understand how users interact with our platform. These recordings do not capture passwords or sensitive form data.
Error Data
We collect error reports and crash data through Sentry to identify and fix bugs. This includes browser information, device type, and the sequence of actions leading to an error.
Customer Data
Data you input about your customers (names, addresses, phone numbers, job details) is stored securely and is only accessible to your team.
2. How We Use Your Information
- To provide and improve the Service
- To process payments and manage subscriptions
- To send transactional communications (invoices, notifications)
- To analyze usage patterns and optimize performance
- To provide customer support
- To detect and prevent fraud or abuse
3. Third-Party Services
We use the following third-party services that may process your data:
- Stripe — Payment processing
- Sentry — Error tracking and monitoring
- PostHog — Product analytics and session recordings
- Google Analytics — Web traffic analytics
- Twilio — SMS messaging
- SendGrid — Email delivery
- Railway — Cloud hosting infrastructure
4. Cookies
We use cookies and similar technologies for:
- Essential cookies — Authentication, session management
- Analytics cookies — Usage tracking (PostHog, Google Analytics)
You can manage cookie preferences through the consent banner shown on your first visit. Essential cookies cannot be disabled as they are required for the Service to function.
5. Data Retention
We retain your account data for as long as your account is active. After account cancellation, data is retained for 90 days before permanent deletion. You may request immediate deletion by contacting us.
6. Data Security
We implement industry-standard security measures including encryption in transit (TLS), secure password hashing (bcrypt), and access controls. However, no system is 100% secure.
7. Your Rights
For All Users
- Access your data at any time through the Service
- Export your data in CSV format
- Request deletion of your account and data
- Opt out of analytics tracking
California Residents (CCPA)
You have the right to know what personal information we collect, request deletion, and opt out of the sale of personal information. We do not sell personal information.
EU/EEA Residents (GDPR)
You have rights to access, rectify, erase, restrict processing, data portability, and to object to processing. Our legal basis for processing is contract performance and legitimate interest.
8. Children's Privacy
The Service is not intended for users under 18. We do not knowingly collect data from children.
9. Changes to This Policy
We may update this policy at any time. We will notify you of material changes via email or in-app notification.
10. Contact
For privacy questions or to exercise your rights, contact us at privacy@apxhaul.com.