← Back to home

Privacy Policy

Last updated: March 2026

1. What Data We Collect

We collect information you provide when creating an account and configuring your firm, including your firm name, email address, logo, and service offerings. We also collect prospect data submitted through your white-labeled intake forms, including company name, website, contact information, and industry details.

2. How We Use Your Data

Your data is used to operate the PreSec service, including generating AI-powered threat briefing reports, managing your account, processing payments, and sending transactional emails related to your account and service usage.

3. Data Sharing

We do not sell your data or share it with third parties for marketing purposes. We share data only with service providers necessary to operate PreSec, including:

  • Supabase (database hosting)
  • Clerk (authentication)
  • Anthropic (AI report generation)
  • Firecrawl (website data collection)
  • Vercel (application hosting)
  • Stripe (payment processing)
  • Resend (transactional email)

4. Data Retention

Your firm data, reports, and prospect data are retained while your account is active. After account cancellation, your data is retained for a 30-day grace period during which you may export or request your data. After 30 days, all data is permanently deleted from our systems.

5. Security

All data is encrypted in transit using TLS and at rest using AES-256 encryption. We implement industry-standard security practices to protect your data, including row-level security policies that ensure data isolation between firms.

6. Prospect Data Isolation

Data submitted through a firm's intake form is isolated to that firm's account. Prospect data is never accessible to other firms on the platform and is never used to train AI models.

7. Contact

For privacy-related inquiries, contact us at diego.rodriguez@presec.io.