Privacy Policy
CommandOne ("we," "us," or "our") respects your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and services at commandone.app (the "Service"). Please read it carefully. By using the Service, you consent to the practices described here.
Last updated: March 2025.
1. Information We Collect
We collect information you provide directly and information we obtain automatically when you use the Service.
Information you provide
- Account data: email address, password (hashed), and any profile or workspace details you add.
- Content you create: projects, goals, links, metrics, and other data you enter into the Service.
- Payment data: billing details are processed by our payment provider (e.g., Stripe). We do not store full card numbers on our servers.
- Communications: messages you send to us (e.g., support or contact forms).
Information we collect automatically
- Usage data: how you use the Service (e.g., pages visited, features used, and general analytics).
- Device and log data: IP address, browser type, device type, and similar technical information.
- Cookies and similar technologies: we use cookies and similar technologies to operate the Service and analyze usage (see Section 8).
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service.
- Process payments and manage your subscription.
- Authenticate you and manage your account.
- Send you service-related notices (e.g., account or billing updates).
- Respond to your requests and support inquiries.
- Analyze usage to improve our product and user experience.
- Comply with legal obligations and protect our rights.
3. Sharing of Your Information
We may share your information in the following circumstances:
- Service providers: we use third parties to operate the Service (e.g., hosting, databases, payment processing, analytics). They process data on our behalf and under our instructions.
- Legal: when required by law, court order, or government request, or to protect our rights, safety, or property.
- Business transfers: in connection with a merger, sale, or other transfer of assets, your information may be transferred as part of that transaction.
We do not sell your personal information to third parties.
4. Data Retention
We retain your information for as long as your account is active or as needed to provide the Service and fulfill the purposes described in this policy. After you delete your account or request deletion, we may retain certain data where required by law or for legitimate business purposes (e.g., fraud prevention, resolving disputes). We will delete or anonymize personal data when it is no longer needed for those purposes.
5. Security
We use industry-standard measures to protect your information, including encryption in transit and at rest, access controls, and secure infrastructure. No method of transmission or storage is 100% secure; we cannot guarantee absolute security but we work to protect your data.
6. Your Rights and Choices
Depending on where you live, you may have the right to:
- Access: request a copy of the personal data we hold about you.
- Correction: request correction of inaccurate or incomplete data.
- Deletion: request deletion of your personal data (subject to legal or contractual exceptions).
- Portability: request a portable copy of your data in a structured format.
- Object or restrict: object to certain processing or request restriction of processing.
- Withdraw consent: where we rely on consent, you may withdraw it at any time.
You can manage your account and many preferences from the Service (e.g., profile, billing). To exercise other rights or ask questions, contact us via Support. If you are in the European Economic Area or UK, you have the right to lodge a complaint with your local data protection authority.
7. International Data Transfers
We operate from and may use service providers in various countries. Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards (e.g., standard contractual clauses or adequacy decisions) where required by applicable law.
8. Cookies and Similar Technologies
We use cookies and similar technologies to provide the Service (e.g., authentication, preferences) and to analyze usage (e.g., analytics). You can control cookies through your browser settings; disabling certain cookies may affect the functionality of the Service.
9. Children
The Service is not intended for individuals under 16. We do not knowingly collect personal information from children under 16. If you believe we have collected such information, please contact us and we will delete it.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will post the updated policy on this page and update the "Last updated" date. If changes are material, we may notify you by email or through the Service. Your continued use of the Service after changes constitutes acceptance of the updated policy.
11. Contact Us
For privacy-related questions or to exercise your rights, contact us via Support or at the contact details provided there.