This Privacy Policy explains how CompanyCard ("CompanyCard", "we", "us") collects, uses and protects your information when you use the CompanyCard website (company-card.com) and the CompanyCard mobile and web application (together, the "Service"). By using the Service you agree to this policy.
Information we collect
Information you provide
- Account details — your email address and password (passwords are stored only as secured hashes by our authentication provider), and profile information you add.
- Card content — the information you put on your digital business cards, such as your name, job title, company, phone, email, links, social profiles and photo.
- Contacts you save or scan — details of people you connect with or business cards you scan using the app.
- Team & directory data — if an administrator connects a Google Workspace or Microsoft 365 directory, we import employee profile details to create their cards, with the administrator's consent.
- Payment information — if you upgrade, billing is handled by our payment processor; we do not store full card numbers.
Information collected automatically
- Usage & analytics — basic events such as card views and saves, device type and general location, used to provide analytics and improve the Service.
- Technical data — IP address, browser/app version and similar data needed to operate and secure the Service.
How we use your information
- To create, host and share your digital business cards and enable contact exchange.
- To provide account, team-management, analytics, email-signature and video-background features.
- To operate, secure, maintain and improve the Service.
- To communicate with you about your account and important changes.
- To comply with legal obligations.
How we share information
We do not sell your personal information. We share it only:
- Service providers that help us run the Service — including our authentication and database provider (Supabase), hosting provider (Netlify), and, where you enable it, Google/Microsoft directory services. They process data only on our behalf.
- Cards you choose to share — information on a card is, by design, visible to anyone you share that card with.
- Legal reasons — where required by law or to protect our rights and users.
Data retention
We keep your information while your account is active. You can delete cards or your account at any time; we then delete or de-identify associated personal data, except where we must retain it for legal or security reasons.
Your rights
Depending on your location, you may have the right to access, correct, export or delete your personal data, and to object to or restrict certain processing. To exercise these rights, contact us using the details below. You can edit or delete most data directly in the app.
Security
We use industry-standard measures including encryption in transit (HTTPS) and secured, access-controlled storage. No method of transmission or storage is completely secure, but we work to protect your information.
Children's privacy
The Service is intended for professional use and is not directed to children under 16. We do not knowingly collect data from children.
International users
Your information may be processed on servers located outside your country. We take steps to ensure it remains protected in line with this policy.
Changes to this policy
We may update this policy from time to time. Material changes will be posted on this page with a new "Last updated" date.
Contact us
Questions about this policy or your data? Send us a message and choose “Privacy or data request” — it reaches us directly and we reply to every one.