Privacy Policy

Privacy Policy

Effective Date: January 15, 2025

Northflow.io (“Northflow,” “we,” “us,” or “our”) is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, and protect your information when you access or use our website, platform, and services (collectively, the “Platform”).

If you are located in the European Economic Area (EEA), this policy explains your rights under the General Data Protection Regulation (GDPR).

By using our Platform, you agree to the terms of this Privacy Policy. If you do not agree, please do not use our services.

1. Information We Collect

We may collect the following types of information:

a. Personal Information (You Provide Directly)

  • Name

  • Email address

  • Billing and payment information

  • Profile image or headshot (optional)

  • Communication preferences

b. Usage Data (Automatically Collected)

  • IP address

  • Browser type and version

  • Pages visited, time and date of visit

  • Referral source and engagement patterns

  • Device information

c. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Analyze user behavior

  • Improve platform performance

  • Store user preferences

  • Personalize your experience

You can manage or disable cookies in your browser settings. For more details, see our Cookie Policy.

2. Legal Basis for Processing (GDPR)

If you are in the EEA, our legal basis for collecting and processing personal data depends on the context and type of data involved. We process your data on the following grounds:

  • Performance of a contract: To deliver our services and support

  • Consent: For marketing emails or where legally required

  • Legitimate interests: To improve our product and services

  • Legal obligations: Where required by law

3. How We Use Your Information

We use your information to:

  • Provide and manage access to the Platform

  • Personalize your experience

  • Process transactions and send confirmations

  • Send service-related and promotional communications

  • Monitor, maintain, and improve the Platform

  • Detect and prevent security threats or fraud

4. How We Share Your Information

We never sell your personal data. We may share your data with:

  • Service Providers: Including payment processors, email services, hosting providers, and analytics platforms under strict data processing agreements

  • Legal Authorities: When required by law or in response to valid legal requests

  • Business Transfers: In the event of a merger, acquisition, or sale of assets, your data may be transferred, subject to the safeguards described in this policy

5. Data Retention

We retain your personal information only as long as necessary to fulfill the purposes outlined in this policy, including legal, accounting, or reporting obligations.

If you close your account, we may retain certain data for compliance and recordkeeping, but we will delete or anonymize personal data that is no longer required.

6. Your Rights (Under GDPR)

If you reside in the EEA, you have the following rights:

  • Access: Request a copy of your personal data

  • Correction: Ask us to correct inaccurate or incomplete data

  • Deletion: Request deletion of your data (“right to be forgotten”)

  • Restriction: Request limitation on how we use your data

  • Objection: Object to processing based on legitimate interest or direct marketing

  • Data Portability: Receive your data in a machine-readable format

  • Withdraw Consent: Withdraw your consent at any time (for data processed based on consent)

To exercise any of these rights, contact us at: accounts@northflow.io
We may request verification of your identity before processing your request.

7. International Data Transfers

Our servers and third-party service providers may be located in countries outside the EEA, including the United States. When your personal data is transferred internationally, we implement safeguards such as Standard Contractual Clauses (SCCs) approved by the European Commission.

8. Data Security

We implement technical, administrative, and physical safeguards to protect your personal data. While we strive to use commercially acceptable means to secure your information, no method of transmission or storage is completely secure. You acknowledge and accept these risks when using the Platform.

9. Children’s Privacy

Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal data from minors. If you believe we have collected data from a child, please contact us immediately so we can take appropriate action.

10. Third-Party Links

Our Platform may contain links to other websites or services. We are not responsible for the privacy practices or content of those third parties. We encourage you to review their privacy policies before sharing personal data with them.

11. Changes to This Policy

We may update this Privacy Policy periodically. When we do, we will revise the “Effective Date” at the top of this page. We encourage you to review this policy regularly to stay informed about our privacy practices.

12. Contact Us

If you have questions or concerns about this Privacy Policy or how your data is handled, please contact us:

Email: support@northflow.io

If you are an EEA resident, you also have the right to lodge a complaint with your local data protection authority.

If you require this Privacy Policy in an alternative format or need assistance accessing your rights, please reach out to us.