Privacy Policy
Privacy Policy
DRAFT — pending legal review. This document will be replaced with finalized legal copy from QuantumMind's counsel before public launch.
1. Information We Collect
We collect information directly from you when you create an account, complete a purchase, or use the Service:
- Account information: name, email address, company name, password (stored as a salted hash, never in plain text).
- Diagnostic input: financial figures, business operations data, and qualitative responses you provide while completing assessments.
- Payment information: handled by Stripe; we do not store full payment card numbers. We do retain Stripe customer and subscription identifiers necessary to manage your account.
- Usage data: log records of your interactions with the Service (page views, feature usage, IP address, user agent), used for security and product improvement.
2. How We Use Your Information
We use your information to:
- Provide and operate the Service, including generating diagnostic scores, recommendations, and reports.
- Authenticate you, secure your account, and prevent abuse.
- Communicate with you about your account, the Service, and product updates.
- Process payments and manage subscriptions.
- Improve the Service through aggregated, de-identified analysis.
- Comply with legal obligations and protect our rights.
We do not sell your personal information.
3. Information Sharing
We share information only as necessary to operate the Service:
- Service providers: payment processing (Stripe), email delivery (SendGrid), hosting (AWS), analytics, and similar vendors. Each operates under contractual confidentiality and data-protection obligations.
- Legal requirements: when required by law, court order, or to protect our rights or the safety of users.
- Business transfers: in connection with a merger, acquisition, or sale of assets, subject to confidentiality protections.
4. Your Rights
Depending on your jurisdiction, you may have rights to:
- Access the personal information we hold about you.
- Request correction of inaccurate information.
- Request deletion, subject to legal-retention requirements.
- Object to or restrict certain processing.
- Receive a portable copy of your information.
- Withdraw consent where processing is based on consent.
To exercise these rights, contact us at the address in Section 6 of our Data Policy.
5. Data Retention
We retain your information for as long as your account is active and as necessary to provide the Service. After account deletion, we retain certain information (e.g., audit logs, financial records) only as required for legal, accounting, or fraud-prevention purposes, then permanently delete or anonymize it.
6. Cookies and Tracking
We use cookies and similar technologies to:
- Maintain your authenticated session (HttpOnly cookie, SameSite=Lax).
- Remember your preferences.
- Analyze aggregate usage.
You can control cookies through your browser settings. Disabling essential cookies may break functionality such as staying logged in.
7. Children's Privacy
The Service is not directed to anyone under the age of 18. We do not knowingly collect personal information from children. If we learn we have collected such information, we will promptly delete it.
8. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated through the Service or via email. The "Last updated" date below reflects the most recent revision.
Last updated: May 2, 2026.
