VStock Data
← Back to Home
Legal

Privacy Policy

Last updated: April 4, 2026  ·  Effective date: April 4, 2026

This Privacy Policy explains how VStock Data collects, uses, and protects information about you when you use our platform. We are committed to transparency and your right to control your personal data.

1. Information We Collect

We collect the following categories of information when you use VStock Data: **Account Information:** Name, email address, company name, and billing details when you register or subscribe. **Usage Data:** API request logs, scraping job configurations, error logs, and feature usage statistics — used to operate and improve the Service. **Payment Information:** Processed by our payment provider (Stripe). VStock Data does not store raw card numbers. **Communications:** Emails and support messages you send to us. **Technical Data:** IP addresses, browser type, device identifiers, and cookies for authentication and security purposes.

2. How We Use Your Information

We use collected information to: • Operate, maintain, and improve the Service • Process payments and manage subscriptions • Send transactional emails (receipts, job status, service alerts) • Respond to support requests • Detect and prevent fraud, abuse, or security incidents • Comply with legal obligations We do not sell your personal information to third parties. We do not use your data to train AI models.

3. Data We Process on Your Behalf

When you use VStock Data to scrape websites, the extracted data belongs to you. VStock Data acts as a data processor for any personal data that may be incidentally collected during scraping jobs you configure. You are the data controller and are responsible for ensuring your scraping activities comply with applicable data protection laws. We retain scraped data on our infrastructure only as long as necessary to deliver it to you, and for a maximum of 30 days thereafter unless you configure a longer retention period in your account settings.

4. Cookies & Tracking

We use essential cookies for authentication and session management. We use analytics cookies (aggregated, anonymized) to understand how the platform is used. You can disable non-essential cookies through your browser settings or our cookie preference center. Disabling essential cookies will prevent you from logging in.

5. Data Sharing

We share your information only with: • **Service providers:** Infrastructure (AWS), payment processing (Stripe), email delivery (SendGrid), error tracking (Sentry). All processors are contractually bound to protect your data. • **Legal requirements:** When required by law, court order, or regulatory authority. • **Business transfers:** In the event of a merger, acquisition, or sale of assets, you will be notified before your data is transferred under a different privacy policy.

6. Data Retention

Account data is retained for the duration of your subscription plus 90 days after cancellation, after which it is deleted or anonymized. You may request earlier deletion by contacting [email protected]. Usage logs are retained for 12 months for security and billing purposes.

7. Your Rights (GDPR / CCPA)

Depending on your location, you may have the following rights: • **Access:** Request a copy of personal data we hold about you • **Correction:** Request correction of inaccurate data • **Deletion:** Request deletion of your personal data ("right to be forgotten") • **Portability:** Receive your data in a machine-readable format • **Objection:** Object to processing based on legitimate interests • **Opt-out of sale:** We do not sell personal data, but you may contact us to confirm To exercise any of these rights, email [email protected]. We will respond within 30 days.

8. Security

We implement industry-standard security measures including TLS encryption in transit, AES-256 encryption at rest, access control with least-privilege principles, regular penetration testing, and SOC 2 Type II audit (in progress). No system is 100% secure — please notify us at [email protected] if you discover a vulnerability.

9. International Data Transfers

VStock Data operates primarily from data centers in the United States. If you are located in the EU/EEA, your data may be transferred to the US under Standard Contractual Clauses (SCCs) as approved by the European Commission. We maintain a GDPR-compliant data processing agreement available upon request.

10. Changes to This Policy

We may update this Privacy Policy periodically. We will notify you of material changes by email or prominent notice in the platform at least 14 days before the changes take effect. The "Last updated" date at the top of this page reflects the most recent revision.

Privacy Contact

For privacy-related inquiries, email [email protected]. For EU residents, our Data Protection Officer can be reached at the same address.