Privacy Policy
1. Introduction
Welcome to PromptRank (“we,” “us,” or “our”). We operate a Software as a Service (SaaS) platform providing AI Visibility Optimization services and AI mention tracking (the “Service”).
This Privacy Policy explains how we collect, use, disclose, and protect information that applies to our Service, and your choices about the collection and use of your information. By accessing or using our Service, you signify that you have read, understood, and agree to our collection, storage, use, and disclosure of your personal information as described in this Privacy Policy.
2. Information We Collect
We collect several types of information from and about users of our Service, including information that may be considered “Personal Data” under GDPR and “Personal Information” under CCPA/CPRA.
A. Information You Provide Directly to Us
- Account Registration (via Clerk): When you register for an account, we use Clerk as our user authentication service. Clerk collects and provides us with information such as your full name, email address, and password hash (or credentials from third-party sign-in services).
- Payment Processing (via Stripe): When you purchase a subscription, payment is processed by our third-party payment processor, Stripe. We do not store sensitive payment details (like full credit card numbers) on our servers. Stripe collects and processes information necessary to complete the transaction, which may include your billing address, payment card type, last four digits of the card, and payment history.
- Communication: Information you provide when contacting us through our contact form or directly via email, which may include your name, email address, company name, and the content of your message.
B. Information Collected Automatically (Cookies and Tracking)
When you access our Service, we and our third-party analytics provider, Google Analytics 4 (GA4), automatically collect certain information about your device and usage:
| Category of Data | Purpose and Tool |
| Usage Data | How you interact with the Service (pages viewed, time spent, mouse clicks). Used for performance monitoring and feature development. |
| Technical Data | IP address, browser type, operating system, device identifiers, and location data (derived from the IP address). Used by GA4. |
| Tracking Technology | Cookies and similar technologies used by GA4 to recognize your device and track activity over time. |
3. How We Use Your Information
We use the information we collect for the following business and commercial purposes:
- To Provide and Maintain the Service: To process your registration (via Clerk), manage your subscription, and fulfill your orders (via Stripe).
- To Process Payments: To charge you for services and manage billing and invoices using Stripe.
- To Communicate: To respond to your inquiries submitted through our contact form and to send you service-related, technical, or administrative communications.
- To Improve the Service (via GA4): To monitor and analyze usage, trends, and activities to improve the functionality and user experience of our Service.
- Security: To detect, prevent, and address technical issues or fraudulent activities.
- Compliance: To meet legal obligations and enforce our terms and policies.
4. How We Share Your Information
We only share your information with the following categories of recipients:
- Service Providers: We share necessary data with key third-party providers who perform services on our behalf:
- Clerk (Authentication): For managing user accounts and authentication.
- Stripe (Payment Processing): For processing billing and subscription payments.
- Google Analytics 4 (Analytics): For monitoring and analyzing website usage and performance.
- Legal Requirements: When required by law or subpoena, or if we believe that such action is necessary to comply with the law, protect the security or integrity of our Service, or protect our rights or the rights of our users.
- Business Transfers: In connection with a merger, sale of assets, or acquisition of all or a portion of our business.
5. International Data Transfers (GDPR)
Since we are a global SaaS service, your Personal Data may be stored and processed in any country where we have facilities or where we engage service providers (such as Stripe and Google), including the United States.
When transferring Personal Data out of the European Economic Area (EEA), we rely on legally provided mechanisms such as Standard Contractual Clauses (SCCs) to ensure an adequate level of data protection.
6. Your Rights Under GDPR (EEA Residents)
If you are a resident of the European Economic Area (EEA) or the UK, you have the following rights regarding your Personal Data:
- Right of Access (Art. 15): The right to request copies of the Personal Data we hold about you.
- Right to Rectification (Art. 16): The right to request that we correct any information you believe is inaccurate or incomplete.
- Right to Erasure (‘Right to be Forgotten’) (Art. 17): The right to request that we erase your Personal Data, under certain conditions.
- Right to Restrict Processing (Art. 18): The right to request that we restrict the processing of your Personal Data, under certain conditions.
- Right to Data Portability (Art. 20): The right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.
- Right to Object (Art. 21): The right to object to our processing of your Personal Data, under certain conditions (e.g., direct marketing).
- Right to Lodge a Complaint: You have the right to lodge a complaint with a supervisory authority.
7. Your Rights Under CCPA/CPRA (California Residents)
If you are a California resident, the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA), grants you the following rights regarding your Personal Information:
- Right to Know: You have the right to request disclosure of the categories and specific pieces of Personal Information we have collected about you, the sources of that information, and the purpose for collecting or selling it.
- Right to Delete: You have the right to request the deletion of your Personal Information, subject to certain exceptions.
- Right to Correct: You have the right to request correction of inaccurate Personal Information.
- Right to Opt-Out of Sale/Sharing: We do not sell your Personal Information in the traditional sense (exchange for monetary compensation). However, we may “share” or process personal information for cross-context behavioral advertising using GA4. You have the right to opt-out of this sharing.
- Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA/CPRA rights.
To exercise your CCPA/CPRA rights, please contact us using the information in Section 9.
8. Data Security and Retention
We implement commercially reasonable technical and organizational measures to protect your Personal Data from loss, misuse, and unauthorized access or disclosure. However, no electronic transmission over the internet can be guaranteed to be 100% secure.
We retain the Personal Data we collect for as long as is necessary to provide the Service or for other essential purposes such as complying with our legal obligations (e.g., retaining payment records via Stripe) and resolving disputes.
9. Contact Information
If you have questions about this Privacy Policy or wish to exercise your rights, please contact us at:
PromptRank.ai
Email: info@promptrank.ai
