Privacy Policy
What we collect, why we collect it, how long we keep it, and the rights you have over your data. Your code and runtime data are never used to train our models.
This Privacy Policy explains how LaunchSafe, Inc. ("LaunchSafe", "we", "us") collects, uses and shares personal data when you visit launchsafe.com, contact us, or use our products.
It helps to separate two very different things. Website and account data is personal data about you: your name, work email, and how you use our site. Customer data is the code, configuration, findings and runtime telemetry your organisation sends to the platform. Customer data is processed on your instructions under your agreement with us and the Data Processing Agreement. This policy governs the first kind.
What we collect
- What you give us. Name, work email, company and message when you fill in a form, request a demo or email us. Account details when you or your administrator create a user.
- What we collect automatically. IP address, browser and device type, pages viewed, referring page, and approximate location derived from IP. See the Cookie Policy for how.
- What we get from others. Sign-in details from your identity provider when you use SSO, and business contact details from customers and partners.
We do not ask for special-category data such as health, biometric or political information. Please do not send it to us.
Why we use it
- To provide, secure and support the platform, and to authenticate users.
- To answer enquiries and send you what you asked for.
- To operate and improve the website, measure aggregate usage and diagnose faults.
- To send product and company updates where you have opted in or where we may lawfully do so. Every message carries an unsubscribe link.
- To meet legal, tax and accounting obligations, and to establish or defend legal claims.
Where the GDPR applies, our legal bases are performance of a contract, our legitimate interests in running and securing the business, your consent for non-essential cookies and marketing, and compliance with legal obligations.
We do not train on your data
We do not use customer code, configuration, findings or runtime telemetry to train or fine-tune our models. We do not sell personal data and we do not share it for cross-context behavioural advertising. See AI / Responsible Use.
Who we share it with
- Sub-processors who host and support the service: cloud infrastructure, model inference, email delivery, support tooling and payment processing. Each is bound by a written contract with confidentiality and security obligations. The current list is in the Data Processing Agreement.
- Professional advisers such as auditors, lawyers and accountants, under duties of confidence.
- Authorities, where we are legally required to disclose. We tell affected customers unless the law forbids it.
- A successor, in a merger, acquisition or sale of assets, subject to this policy.
International transfers
We are based in the United States and use sub-processors in the United States and the European Union. Where personal data leaves the UK, EEA or Switzerland we rely on the European Commission's Standard Contractual Clauses together with the UK Addendum, and we carry out transfer risk assessments. Enterprise customers can pin platform processing to a single region or run it inside their own VPC.
How long we keep it
- Enquiries and contact-form messages: 24 months from last contact.
- Account and billing records: for the life of the account, then as long as tax and audit law requires.
- Security and application logs: 12 months.
- Website analytics: 14 months, aggregated thereafter.
Customer data retention is set by your agreement and is deleted or returned on termination as described in the DPA.
Your rights
Depending on where you live you may ask us for a copy of your personal data, or to correct it, delete it, restrict or object to how we use it, or port it elsewhere. You can withdraw consent at any time. You may also complain to your local supervisory authority.
If you are a California resident you have the rights to know, delete, correct, and to opt out of sale or sharing. We do not sell or share personal data as the CCPA defines those terms, and we will not discriminate against you for exercising a right.
To exercise a right, email hello@launchsafe.com. We answer within 30 days and may ask for enough information to confirm who you are. If your data is held by one of our customers as part of their use of the platform, we will refer you to them and support their response.
Children
The service is for organisations. It is not directed at anyone under 16 and we do not knowingly collect their data.
Changes
We post changes here and update the date at the top. If a change is material we give notice by email or in the product before it takes effect.
Contact
LaunchSafe, Inc. — hello@launchsafe.com. To report a security issue, see the Vulnerability Disclosure Policy.