Privacy Policy

Your business data deserves serious protection

Last updated: December 30, 2025

You Call the Shots

Toggle any data sharing on or off from your dashboard—no hoops to jump through.

Not for Sale. Period.

We make money from subscriptions, not from selling your business intelligence.

Your Data, Protected

AES-256 encryption for sensitive data, secure password hashing, and rate-limited APIs.

1. Information We Collect

We collect information you provide directly, including:

  • Account information (name, email, company, phone number)
  • Uploaded documents and data files for AI analysis
  • Usage data and interaction logs to improve our services
  • Payment information processed securely through Stripe
  • Communications with our support team

2. How We Use Your Information

  • Powering Your Business: Running your dashboards, generating insights, and delivering the intelligence features you use daily
  • Platform Improvement (opt-in): When you enable this option, anonymized patterns from your usage help us sharpen our algorithms and surface better recommendations across the platform
  • Keeping You Informed: Account updates, billing notices, and occasional product announcements that help you get more value from Xpherium
  • Understanding Usage: Aggregate analytics (no personal identifiers) help us know which features resonate and where we should focus development
  • Protecting the Platform: Monitoring for unusual activity to keep your account and data secure

You're in the Driver's Seat: Every data-sharing option in Xpherium is controlled through clear toggles in your Privacy Settings. Want to contribute to platform improvements? Great. Prefer to keep everything private? That works too. Your business, your rules.

3. Data Security

We implement the following security measures:

  • AES-256 encryption for sensitive data fields
  • HTTPS/TLS encryption for all data in transit
  • Secure password hashing with bcrypt
  • Two-factor authentication (2FA) option
  • Role-based access controls for team management
  • Rate limiting to prevent abuse
  • JWT-based session management

4. Who Sees Your Data

We don't sell your data. Our business model is subscriptions, not advertising.

The only times your data may be shared:

  • Service Providers: Cloud hosting and payment processing partners who help us run the platform
  • Legal Requirements: When required by law or valid legal process
  • Business Transfers: If Xpherium is acquired, your data protection rights remain intact
  • Your Integrations: When you explicitly connect third-party services

5. What You Can Do

No legal degree required—here's what you can do with your data:

  • Download Everything: One click gets you a complete export of your account data
  • Fix Mistakes: Edit your profile info whenever you spot something wrong
  • Delete Your Account: We'll wipe your data within 30 days of your request
  • Turn Off Emails: Unsubscribe from marketing with a single toggle
  • Take Your Data: Export in JSON format to move or analyze elsewhere
  • Limit Usage: Restrict how we process your data beyond essentials

All of this lives in Settings → Security & Privacy. No support tickets needed.

6. Data Retention

We retain your data for as long as your account is active or as needed to provide services. When you delete your account:

  • We delete your personal data and uploaded files
  • Anonymized, aggregated analytics may be retained
  • Billing records may be retained as required by law
  • You can export your data before deletion via Settings

7. International Data Transfers

Your data may be processed on servers located in the United States. We take steps to protect your data including:

  • Using reputable cloud providers with their own security certifications
  • Encrypting data in transit and at rest
  • Providing data export and deletion tools to support your privacy rights

Contact Us

For privacy-related questions, data requests, or to exercise your rights:

📧 Email: privacy@xpherium.com

🌐 Privacy Center: xpherium.com/privacy

We aim to respond to all privacy inquiries within 48 hours.