Privacy Policy

Last updated: March 1, 2026

1. Introduction

CookieConsent ("we", "our", "us") is committed to protecting your personal information. This Privacy Policy explains how we collect, use, and safeguard data when you use our platform.

2. Information We Collect

We collect information you provide directly to us when you create an account, subscribe to a plan, or contact support. This includes:

  • Name and email address
  • Company name and billing details
  • Payment information (processed securely via Stripe — we do not store card numbers)
  • Support communications

We also automatically collect technical information when you use our service, including IP address, browser type, and usage data.

3. Consent Data We Process on Your Behalf

When our embed code is deployed on your website, we record end-user consent decisions on your behalf (as a data processor). This data includes:

  • IP address (for geolocation and audit purposes)
  • Consent choices (accepted/rejected categories)
  • Timestamp and session identifiers

You are the data controller for this data. Our Data Processing Agreement (available on request) governs this relationship.

4. How We Use Your Information

  • To provide and improve our service
  • To process billing and manage your subscription
  • To send transactional and service emails
  • To provide customer support
  • To comply with legal obligations

5. Data Sharing

We do not sell your personal data. We may share data with trusted third-party service providers (including Stripe for payments, and cloud infrastructure providers) under data processing agreements.

6. Data Retention

Account data is retained for the duration of your subscription and up to 90 days after account closure. Consent records are retained according to your plan's data retention policy (default: 24 months).

7. Your Rights

Under GDPR and applicable laws, you have the right to access, correct, export, or delete your personal data. To exercise these rights, contact us at privacy@cookieconsent.io.

8. Security

We implement industry-standard security measures including TLS encryption in transit, encrypted storage for sensitive fields, and access controls. We encourage you to enable two-factor authentication on your account.

9. Changes to This Policy

We may update this policy from time to time. We will notify you of significant changes by email or via an in-app notice.

10. Contact

For privacy-related questions, contact us at our contact page or email privacy@cookieconsent.io.