Last updated: December 1, 2024
AuthFlow™ Inc. ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our authentication platform-as-a-service ("Service").
Our platform is designed for innovators building real products. We support lawful business growth, responsible technical communication, and practical execution while maintaining clear safeguards for personal data.
By using our Service, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies and practices, do not use our Service.
We collect information you provide directly to us, including:
We automatically collect certain information about your use of our Service:
When you use our Service to authenticate users of your applications, we process personal information of your end users on your behalf. This may include usernames, email addresses, and authentication credentials. You are responsible for obtaining appropriate consent from your end users.
We use the information we collect to:
We will not use your personal information for purposes other than those described in this Privacy Policy without your explicit consent.
Where required by applicable law, we rely on lawful bases for processing, such as contract performance, legitimate interests, legal obligations, or consent.
We do not treat privacy and product velocity as opposites. Our goal is to provide infrastructure that lets serious teams move fast without cutting legal or security corners.
We do not sell, trade, or otherwise transfer your personal information to third parties except in the following circumstances:
We may share your information with trusted third-party service providers who assist us in operating our Service, such as cloud hosting, payment processing, and analytics providers. These providers are bound by confidentiality agreements and may only use your information to provide services to us.
We may disclose your information if required by law or in response to valid legal requests, such as subpoenas, court orders, or government investigations.
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity. We will notify you of any such change in ownership or control of your personal information.
We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.
We retain your personal information for as long as necessary to provide our Service and fulfill the purposes outlined in this Privacy Policy. Specifically:
When you delete your account, we will delete your personal information within 30 days, except where retention is required by law or for legitimate business purposes.
Depending on your location, you may have certain rights regarding your personal information:
To exercise these rights, please contact us at privacy@authflow.net. We will respond to your request within 30 days.
Customers using AuthFlow™ remain responsible for providing required notices, obtaining appropriate consent where necessary, and handling outbound communications in compliance with applicable laws, including where relevant GDPR, CAN-SPAM, LGPD, and similar privacy and electronic messaging rules.
If you are an AuthFlow™ customer, you control your campaign strategy and messaging content. You are accountable for honoring recipient rights, maintaining suppression and preference data, and responding to legally valid data rights requests in your role as controller where applicable.
We use cookies and similar tracking technologies to enhance your experience with our Service. These technologies help us:
You can control cookies through your browser settings. However, disabling cookies may limit your ability to use certain features of our Service.
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws than your country.
When we transfer your information internationally, we implement appropriate safeguards such as standard contractual clauses or adequacy decisions to ensure your information receives adequate protection.
Our Service is not intended for children. We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.
If we discover that we have collected personal information from a child, we will delete such information immediately.
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. We will notify you of any material changes by:
Your continued use of our Service after the effective date of the updated Privacy Policy constitutes acceptance of the changes.
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
AuthFlow™ Inc.
Privacy Officer
Email: privacy@authflow.net