CertifiedData.io
Legal

Privacy Policy

Last updated: January 2025Effective: January 1, 2025

1. Overview

CertifiedData is committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, and your rights.

By using the Platform, you agree to the collection and use of information as described here.

2. Information We Collect

Account information: name, email address, and payment information when you register or subscribe.

Usage data: generation job parameters, template selections, row counts, format preferences, and API activity logs.

Certificate metadata: dataset hashes, timestamps, and certificate identifiers are logged to the public transparency log as part of the certification process.

Technical data: IP addresses, browser type, and access timestamps for security and abuse prevention.

3. We Do Not Store Your Raw Data

CertifiedData does not retain copies of generated datasets after they are delivered to you. Datasets are generated, delivered, and then deleted from our systems.

If you upload a schema or sample dataset to assist generation, it is used only to complete your request and is not retained.

4. Public Transparency Log

Certificate metadata — including dataset SHA-256 fingerprints, issuance timestamps, and certificate identifiers — is logged to the public transparency log.

This is an intentional design feature. Certificates are meant to be publicly verifiable. The transparency log does not contain your personal data, dataset contents, or generation parameters.

5. How We Use Your Information

To deliver generation and certification services you request.

To process payments and manage your subscription.

To improve the Platform and develop new features.

To communicate with you about your account, updates, and security notices.

To comply with legal obligations.

6. Information Sharing

We do not sell your personal information.

We share information with service providers that help operate the Platform (payment processing, email delivery, infrastructure). These providers are contractually bound to protect your data.

We may disclose information when required by law or to protect the rights and safety of our users.

7. Security

We implement industry-standard security measures including encryption in transit, access controls, and audit logging.

Cryptographic signing keys are stored securely and are used only to sign certificates in the course of legitimate certification operations.

8. Your Rights

You may access, correct, or delete your account information by contacting us at [email protected].

Residents of the EU/EEA have rights under the GDPR including the right to access, portability, and erasure where applicable.

Note: certificate records in the public transparency log are immutable by design. Deletion of your account does not remove published certificate records from the log.

9. Cookies

We use session cookies for authentication and functional cookies to remember your preferences. We do not use third-party advertising cookies.

10. Changes to This Policy

We may update this Privacy Policy. We will notify registered users of material changes via email or in-app notice.

Legal contact

Questions about these terms or our policies? Contact us at [email protected]