PRIVACY POLICYLast updated March 20, 2026

How ArtisanClo collects, uses, shares, and protects information.

This Privacy Policy is written for a production service. It explains what information we process, why we process it, when we share it, how long we retain it, and what rights may be available to users depending on applicable law.

AT A GLANCE
We use information to operate the service, not to sell a story.

We collect account, billing, technical, operational, and security data needed to provide the platform, keep it reliable, prevent abuse, and improve the product responsibly.

No ordinary sale of customer personal data.
Operational vendors may process data on our behalf.
Rights depend on your jurisdiction and applicable law.
Scope
This Privacy Policy applies to use of the public site and the platform

It describes how we collect, use, disclose, store, and otherwise process information when you visit the website, create an account, purchase services, or interact with support and operational features.

Key principle
We process data to run the service, secure it, and improve it

We do not frame privacy as an abstract promise. We process information where needed for service delivery, fraud prevention, analytics, billing, legal compliance, support, and business operations.

Important note
You must not use the platform to unlawfully process personal data

If your use case involves regulated data, end-user data, or other sensitive information, you are responsible for ensuring that your own legal basis, notices, permissions, and data governance are appropriate.

DATA WE COLLECT

Categories of information we may process

Information you provide directly
Account registration information, such as name, email address, username, password, and account preferences.
Billing and transaction information, including subscription selections, invoices, payment status, and related support communications.
Data you enter into the service, such as flow names, notes, filters, destinations, presets, support messages, and operational metadata.
Information collected automatically
Technical and device information, such as IP-related data, browser type, operating system, language, timestamps, request headers, pages visited, and interactions with the service.
Usage and performance information, including account activity, click logs, routing outcomes, diagnostics, crash data, metrics, and audit events generated through platform use.
Security and anti-abuse information, including login attempts, session data, suspicious activity indicators, rate-limit events, and fraud-prevention telemetry.
Information from third parties
Payment processors, hosting providers, analytics tools, communications vendors, and other service providers may supply operational or transaction-related data to us.
If you sign in, purchase, or interact with us through an external service, we may receive limited data associated with that interaction as allowed by that provider and by applicable law.
DETAILED TERMS

Detailed legal explanation of our privacy practices

USE

How we use personal information

We use personal information to provide, maintain, operate, support, secure, and improve the service. This includes account administration, access management, subscription handling, payment reconciliation, support requests, abuse prevention, diagnostics, feature development, analytics, communications, and legal compliance.

We may also use information to investigate suspected misconduct, enforce our Terms, prevent unauthorized activity, protect users and third parties, and defend our legal rights or respond to lawful requests by competent authorities.

Where permitted by law, we may use aggregated, de-identified, or otherwise non-personal information for analytics, product planning, benchmarking, business reporting, service optimization, security research, or commercial strategy.

Service delivery and account managementBilling, invoicing, and payment operationsSecurity monitoring, fraud prevention, and abuse responseProduct improvement, analytics, and internal business operations
LEGAL-BASIS

Legal bases for processing

Where applicable law requires a legal basis for processing, we generally rely on one or more of the following: performance of a contract with you, compliance with legal obligations, our legitimate interests in operating and protecting the business, and your consent where consent is required.

Legitimate interests may include improving the service, maintaining account and network security, preventing misuse, supporting customers, measuring product performance, enforcing contractual rights, and conducting ordinary business operations consistent with reasonable user expectations.

Where consent is the basis, you may withdraw consent at any time, but doing so will not affect the lawfulness of processing already performed and may limit our ability to provide some features or communications.

Contract necessity for account and subscription functionsLegitimate interests for security and service improvementLegal obligations where records or disclosures are requiredConsent where specifically requested by law
COOKIES

Cookies and similar technologies

We may use cookies, local storage, pixels, session identifiers, and similar technologies to keep users signed in, remember preferences, measure usage, protect the service, understand performance, and support product analytics or communications workflows.

Some technologies are necessary for the operation of the site or platform. Others support convenience, analytics, diagnostics, or performance measurement. Blocking all cookies may affect functionality, security controls, or the availability of certain account features.

Where applicable law requires consent for non-essential technologies, we will seek that consent through the user interface or through other compliant mechanisms.

Essential technologies for login and session continuityAnalytics and diagnostics for performance measurementSecurity technologies to reduce fraud and abuse risk
SHARING

How we share information

We do not sell personal information in the ordinary sense of transferring customer data to unrelated third parties for their independent commercial use. However, we may disclose information to service providers, contractors, advisors, corporate affiliates, payment processors, infrastructure vendors, analytics providers, communications vendors, and other parties acting on our instructions or for legitimate business purposes.

We may also disclose information where reasonably necessary to comply with law, respond to legal process, protect rights or safety, investigate fraud or abuse, enforce agreements, collect debts, or support a corporate transaction such as a merger, acquisition, financing, asset sale, or business restructuring.

If ownership or control of the service changes, relevant data may be transferred as part of that transaction subject to applicable law and standard transaction confidentiality protections.

Operational vendors and subprocessorsProfessional advisors and affiliated entitiesAuthorities or counterparties where disclosure is legally required or justifiedSuccessors or acquirers in connection with a corporate transaction
TRANSFERS

International transfers

The service may be operated using infrastructure, vendors, personnel, or service providers located in multiple countries. As a result, personal information may be transferred to, stored in, or accessed from jurisdictions other than the one in which you are located.

Where required, we will use appropriate legal mechanisms for cross-border transfers. However, legal regimes differ by country, and you understand that local laws in some jurisdictions may not provide the same level of protection as those in your home jurisdiction.

By using the service, you acknowledge that such international processing may occur as necessary to provide the platform and related operations.

Cross-border hosting and vendor support may occurTransfer mechanisms may be used where legally requiredUsers should evaluate jurisdiction-specific obligations for their own data use cases
RETENTION

Retention and deletion

We retain personal information for as long as reasonably necessary to provide the service, maintain account history, satisfy legitimate business needs, enforce agreements, resolve disputes, comply with legal obligations, and preserve security or accounting records.

Retention periods vary depending on the type of information, the nature of the relationship, operational needs, legal requirements, backup cycles, fraud prevention considerations, and the possibility of restoring data after accidental deletion or service issues.

When information is no longer needed, we may delete, anonymize, aggregate, or otherwise de-identify it. Residual copies may remain in backups, archives, logs, or disaster recovery systems for a limited period consistent with operational requirements.

Retention depends on account status, legal duties, and operational necessityDeletion may not be instantaneous across backups and archivesCertain records may be retained for fraud prevention, finance, and dispute handling
RIGHTS

Your privacy rights

Depending on your location and applicable law, you may have rights to access, correct, update, delete, restrict, object to, or port certain personal information. You may also have the right to withdraw consent where processing relies on consent and the right to lodge a complaint with a supervisory authority.

We may need to verify your identity before acting on a request and may deny or limit a request where an exemption applies, where the request is manifestly unfounded or excessive, where another person’s rights would be affected, or where applicable law permits or requires us to retain the data.

To exercise rights, use account settings where available or contact us through the official support or contact channels provided by the service.

Access, correction, deletion, and portability rights may applyIdentity verification may be required before fulfillmentSome requests may be limited by legal or operational exceptions
CHILDREN

Children’s privacy and sensitive data

The service is not directed to children and is not intended to be used by individuals who are not legally capable of entering a binding agreement in their jurisdiction. We do not knowingly collect personal information directly from children through the platform for consumer use.

You must not submit highly sensitive personal data, special-category data, health data, payment card data outside approved payment workflows, or other regulated information unless the service explicitly supports that category and your use is lawful.

If you believe prohibited or inappropriate data has been submitted, contact us promptly so that we can review the issue and take appropriate action.

Not intended for childrenDo not upload unnecessary sensitive or regulated dataReport accidental submission of prohibited data promptly
SECURITY

Data security

We use technical and organizational safeguards intended to protect personal information against unauthorized access, loss, misuse, alteration, or disclosure. These safeguards may include access controls, logging, encrypted transport, monitoring, environment restrictions, and other measures described in our Security page.

Despite these efforts, no system can be guaranteed to be perfectly secure. You therefore acknowledge that transmission and storage risk can never be fully eliminated and that you are also responsible for securing your own devices, networks, and credentials.

For more details about our baseline operational safeguards, please review the public Security page linked in the site footer.

Security measures are risk-based and may change over timeAbsolute confidentiality or uninterrupted availability cannot be guaranteedUsers share responsibility for credential and endpoint security
PRIVACY REQUESTS

How privacy requests are typically handled

01Step
Submit your request

Use in-product account controls when available, or contact us through the official support channel associated with your account.

02Step
Verification

We may need to verify identity, authority, and the scope of the request before changing or disclosing any information.

03Step
Review and response

We review the request under applicable law, operational realities, and security constraints, then respond within the legally required or reasonably practical timeframe.

CHANGES TO THIS POLICY

We may update this policy

We may modify this Privacy Policy from time to time to reflect changes in legal requirements, product features, vendor relationships, security practices, or business operations.

The updated version becomes effective when posted unless a later effective date is stated. Continued use of ArtisanClo after an update means you acknowledge the revised policy.

If applicable law requires additional notice or consent for a material change, we will provide it through the service, by email, or through another communication channel reasonably associated with your account.