Legal

Privacy Policy

Last updated: February 28, 2026

At Upquirk, we take your privacy seriously. This Privacy Policy describes how we collect, use, disclose, and protect your information when you use our website, application, API, and related services (the "Service"). By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree with this policy, please do not use the Service.

01

Information We Collect

Account Information

When you create an account, we collect your name, email address, password (stored in hashed form), and billing information. If you sign up through a third-party authentication provider (such as Google), we receive your name and email from that provider.

Payment Information

We use third-party payment processors (such as Stripe) to handle transactions. We do not store your full credit card number, CVV, or bank account details on our servers. Our payment processors are PCI-DSS compliant and maintain their own privacy and security policies.

Usage Data

We automatically collect information about how you interact with the Service, including pages visited, features used, timestamps, frequency of access, IP address, browser type, device information, operating system, and referring URLs.

Communication Data

When you contact us through email, our contact form, or other channels, we collect the content of your messages along with your name and email address.

Integration Data

If you connect third-party services (such as Slack, CRM tools, or email platforms), we collect the minimum data necessary to deliver leads to those integrations, such as webhook URLs and channel identifiers. We do not access the content of your messages or contacts within those platforms.

02

How We Use Your Information

We use the information we collect for the following purposes:

To provide, maintain, and improve the Service, including delivering Lead Data to your account, Slack, or email.

To process transactions, send billing confirmations, and manage your Subscription.

To communicate with you about your account, respond to support requests, and send service-related announcements.

To send marketing communications (only with your consent, and you can opt out at any time).

To monitor usage patterns, analyze trends, and improve the performance and reliability of the Service.

To detect, prevent, and address fraud, abuse, security incidents, and technical issues.

To comply with legal obligations, enforce our Terms of Service, and protect our rights and the rights of our users.

03

Lead Data and Public Information

Upquirk provides Lead Data that is derived exclusively from publicly available sources. This includes publicly posted job listings on freelancing platforms, publicly accessible company websites and "About" pages, publicly available LinkedIn profiles, publicly listed domain registration records (WHOIS where available), and other publicly indexed web content.

We do not access private accounts, scrape login-protected data, or intercept private communications to generate Lead Data. All enrichment is performed through analysis of information that is freely accessible on the public internet.

Lead Data may include company names, individual names, job titles, business email addresses, company domains, LinkedIn profile URLs, company size estimates, industry classifications, and technology stack information. This data is generated through automated processes including AI analysis and may contain inaccuracies.

You are solely responsible for ensuring that your use of Lead Data complies with all applicable privacy, data protection, and anti-spam laws in your jurisdiction, including but not limited to GDPR, CCPA, CAN-SPAM, CASL, and any other applicable legislation.

04

Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, we process your personal data based on the following legal grounds:

Contract Performance

Processing your account information and payment data is necessary for the performance of our contract with you (providing the Service under your Subscription).

Legitimate Interests

We process usage data and analytics based on our legitimate interest in improving the Service, ensuring security, and preventing fraud. We balance these interests against your privacy rights.

Consent

We process your data for marketing communications based on your explicit consent. You may withdraw consent at any time by clicking the unsubscribe link in any marketing email or by contacting us.

Legal Obligation

We may process your data to comply with applicable legal obligations, such as tax reporting, responding to lawful government requests, or complying with court orders.

05

Information Sharing and Disclosure

We do not sell your personal information to third parties. We may share your information in the following limited circumstances:

Service Providers

We share data with third-party vendors who perform services on our behalf, such as payment processing (Stripe), email delivery, cloud hosting (AWS/Vercel), analytics, and customer support tools. These providers are contractually obligated to use your data only for the purposes we specify and in accordance with this Privacy Policy.

Legal Requirements

We may disclose your information if required to do so by law, regulation, legal process, or governmental request, or if we believe disclosure is necessary to protect our rights, your safety, or the safety of others, investigate fraud, or respond to a government request.

Business Transfers

If Upquirk is involved in a merger, acquisition, reorganization, bankruptcy, or sale of assets, your personal information may be transferred as part of that transaction. We will notify you via email or a prominent notice on our website before your information becomes subject to a different privacy policy.

With Your Consent

We may share your information for other purposes if you provide explicit consent.

06

Data Retention

We retain your account information for as long as your account is active or as needed to provide the Service. If you cancel your Subscription, we retain your data for a period of 90 days to allow for reactivation, after which it is scheduled for deletion.

We retain billing and transaction records for a minimum of 7 years to comply with tax and accounting obligations.

Usage data and analytics logs are retained in anonymized or aggregated form and are not linked to individual accounts after 12 months.

You may request deletion of your personal data at any time by contacting privacy@upquirk.com. We will process your request within 30 days, subject to any legal retention obligations.

07

Data Security

We implement industry-standard technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include:

Encryption of data in transit using TLS 1.2+ and encryption of sensitive data at rest using AES-256.

Regular security assessments, vulnerability scanning, and penetration testing.

Access controls and role-based permissions for internal systems, with access limited to personnel who require it for their job functions.

Hashed and salted password storage using bcrypt.

Monitoring and logging of access to sensitive systems.

While we take reasonable precautions, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security, and you use the Service at your own risk.

08

International Data Transfers

Your data may be processed and stored in the United States or other countries where our service providers operate. If you are located outside the United States, your data will be transferred to and processed in the United States.

For transfers from the EEA, UK, or Switzerland to countries not deemed to provide an adequate level of data protection, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission, or other legally recognized transfer mechanisms.

By using the Service, you consent to the transfer of your information to the United States and other jurisdictions as described in this policy.

09

Your Privacy Rights

Depending on your location and applicable law, you may have the following rights regarding your personal data:

Right of Access

You may request a copy of the personal data we hold about you.

Right to Rectification

You may request that we correct inaccurate or incomplete personal data.

Right to Erasure

You may request that we delete your personal data, subject to certain exceptions (such as legal retention requirements).

Right to Restriction

You may request that we restrict the processing of your personal data in certain circumstances.

Right to Data Portability

You may request a copy of your personal data in a structured, commonly used, and machine-readable format.

Right to Object

You may object to the processing of your personal data for direct marketing purposes or processing based on legitimate interests.

Right to Withdraw Consent

Where processing is based on consent, you may withdraw your consent at any time without affecting the lawfulness of prior processing.

To exercise any of these rights, please contact us at privacy@upquirk.com. We will respond to your request within 30 days (or within the time frame required by applicable law). We may ask you to verify your identity before processing your request.

10

CCPA / CPRA Rights

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):

The right to know what categories of personal information we have collected, the sources, the business purposes, and the categories of third parties with whom we share it.

The right to delete personal information we have collected from you, subject to certain exceptions.

The right to opt out of the sale or sharing of your personal information. We do not sell personal information as defined by the CCPA/CPRA.

The right to non-discrimination for exercising your CCPA/CPRA rights.

The right to correct inaccurate personal information.

The right to limit the use and disclosure of sensitive personal information.

To exercise these rights, contact us at privacy@upquirk.com or submit a request through your account settings. We will verify your identity before processing your request and respond within 45 days.

11

Cookies and Tracking Technologies

We use cookies and similar tracking technologies to operate and improve the Service. The types of cookies we use include:

Essential Cookies

Required for the Service to function properly. These include session cookies for authentication and security. You cannot opt out of essential cookies.

Analytics Cookies

Help us understand how visitors interact with the Service. We use privacy-focused analytics tools to collect aggregated usage data. You can opt out of analytics cookies through your browser settings or our cookie preference center.

Preference Cookies

Store your settings and preferences (such as billing toggle state or notification preferences) to improve your experience.

We do not use advertising cookies or tracking pixels from advertising networks. We do not engage in cross-site tracking or behavioral advertising.

Most web browsers allow you to control cookies through their settings. Note that disabling essential cookies may affect the functionality of the Service.

12

Third-Party Services

The Service integrates with or relies on the following categories of third-party services, each governed by their own privacy policies:

Payment processing (Stripe), cloud infrastructure and hosting (AWS, Vercel), email delivery (Postmark, SendGrid), analytics (privacy-focused, no advertising analytics), customer support tools, and third-party authentication providers (Google OAuth).

We recommend reviewing the privacy policies of any third-party service you connect to Upquirk (such as Slack, HubSpot, or email clients). We are not responsible for the privacy practices of third-party services.

13

Children's Privacy

The Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal data from a child under 18, we will take steps to delete that information promptly. If you believe we have inadvertently collected data from a minor, please contact us at privacy@upquirk.com.

14

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will notify you by posting the updated policy on this page with a revised "Last Updated" date. For significant changes, we may also send an email notification to the address associated with your account.

Your continued use of the Service after changes are posted constitutes your acceptance of the updated policy. We encourage you to review this page periodically.

15

Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: privacy@upquirk.com

General inquiries: hello@upquirk.com

Website: https://upquirk.com

For GDPR-related inquiries, you may also contact your local data protection authority if you believe your rights have not been adequately addressed.

This Privacy Policy is effective as of March 1, 2026. By continuing to use Upquirk, you acknowledge that you have read and understood this policy. If you have any questions, reach out to us anytime at privacy@upquirk.com.