Privacy Policy

Your privacy and data security are our top priorities

1. Data We Collect

We collect the following types of data: Account Information (e.g., name, email, company affiliation, and authentication credentials); Usage Data (feature usage details, billing, and error logs); Business Data (anonymous metadata about service interactions); Feedback (bug reports, feature requests, and support communications); and Device Data (IP addresses, user agent, and approximate location for security and abuse prevention).

2. How We Use Your Data

Collected data is used to operate and maintain our Services, provide support and usage insights, enhance features and performance, and monitor or prevent abuse and security risks.

3. Data Storage & Security

We follow industry-leading security practices: all sensitive data is encrypted at rest (including passwords, private keys, and TOTP secrets); all communications are encrypted in transit using HTTPS; data is backed up daily; and peer-to-peer communication is fully encrypted between parties.

4. Access & Permissions

Only authorized team members may access user data, and only for support or debugging. Access to sensitive data is governed by Role-Based Access Control (RBAC), and internal access requires mandatory Two-Factor Authentication (2FA). We do not share data with third parties without explicit user consent.

5. User Rights

You have the right to access, export, or request deletion of your data. We retain data for the duration of the active account and for six months after account deactivation unless an earlier deletion request is made.

6. Third-Party Services

Seminode uses trusted third-party providers to enable key platform functionality, including Stripe (payments), SendGrid (transactional emails), and OpenAI (AI features). These providers receive only the data necessary for their services and maintain high security and compliance standards. Seminode uses OpenAI's enterprise-grade API, which does not retain or use user data for training. We encourage you to review their individual privacy policies.

7. Cookies & Tracking Technologies

Seminode and its service providers may use cookies, web beacons, pixels, and similar technologies to operate the Services, remember your preferences, understand usage patterns, and improve performance. Essential cookies are required for core functionality. Analytics cookies help us understand how the Services are used. You can manage cookie preferences through your browser settings; however, disabling certain cookies may affect functionality.

8. Legal Basis for Processing

Where applicable (e.g., under the EU General Data Protection Regulation), we process personal data on the following legal bases: (a) performance of a contract — to provide and operate the Services; (b) legitimate interests — to improve the Services, prevent fraud, and ensure security; (c) consent — where you have provided explicit consent, such as for marketing communications; and (d) legal obligation — to comply with applicable laws, regulations, or court orders.

9. International Data Transfers

Seminode is based in the United States. If you access the Services from outside the U.S., your data may be transferred to, stored, and processed in the United States or other jurisdictions where our service providers operate. We take appropriate safeguards (such as standard contractual clauses or equivalent mechanisms) to ensure your data receives an adequate level of protection consistent with applicable data protection laws.

10. Children's Privacy

The Services are not directed to individuals under the age of 18. We do not knowingly collect personal data from children. If we learn that we have inadvertently collected personal data from a child, we will take reasonable steps to delete it promptly. If you believe a child has provided us with personal data, please contact us using the information below.

11. Data Breach Notification

In the event of a data breach that affects your personal data, Seminode will notify affected users and applicable regulatory authorities in accordance with applicable law. Notification will include the nature of the breach, the categories of data affected, the likely consequences, and the measures taken or proposed to address the breach.

12. Automated Decision-Making

Seminode may use automated processing, including AI-powered features, to provide and improve the Services. Where automated decision-making produces legal or similarly significant effects on you, you have the right to request human review of the decision, express your point of view, and contest the outcome, to the extent required by applicable law.

13. California Privacy Rights (CCPA/CPRA)

If you are a California resident, you may have additional rights under the California Consumer Privacy Act, including the right to know what personal information we collect and how it is used, the right to request deletion, and the right to opt out of the sale or sharing of personal information. Seminode does not sell personal information. To exercise your rights, contact us at info@seminode.com.

14. Policy Updates

We will notify users of significant updates or changes to this Privacy Policy at least 14 days before they take effect via the Services or email. Continued use of the Services after the effective date constitutes acceptance of the revised policy.

15. Contact Us

For privacy-related inquiries, data access requests, or complaints, contact us at info@seminode.com or through the Contact Us page on our website.

Last updated: February 23, 2026