Overview
Contropix is operated by [COMPANY LEGAL NAME] ("we", "us", "our"). This policy explains what information we collect when you use the platform — as an account holder, as a member of an Organization, or as a visitor to a Link-Tree or Landing Page hosted on the platform — and how we use, share and protect it.
We collect only what the platform needs to work. We do not run advertising, we do not use analytics or tracking services, and we do not sell information about you. This policy takes effect on [EFFECTIVE DATE] and forms part of our Terms of Use.
Information you give us
Account and profile
When you register we ask for your email address and a password. Your password is stored only as a cryptographic hash; we cannot read it. To complete your profile you add a display name and the link to your YouTube channel, and you may add a profile image, a short bio and links to your other social accounts.
Organizations and teams
We store the name of each Organization you create, its members, their roles and any function titles, and the email addresses of the people you invite. Invitations are sent to those addresses by email.
Content you create
Everything you add to the services is stored so we can show it back to you, your team and — where you publish it — the public: Link-Tree links, bio and image; Landing Page text, media and settings; Brand Kit logo, colour and font; and in the Production Workspace, projects, briefs, tasks, uploaded assets and every earlier version of them, approval decisions, comments and mentions.
Billing
Paid plans are handled by Polar, our payment provider. Polar collects your payment details directly; we never receive your full card number. From Polar we receive and store the subscription's plan and status, identifiers for your Polar customer and subscription, and invoice records (amount, currency, status, issue date and a link to the invoice).
Messages you send us
If you contact us, we keep the message and your contact details for as long as needed to answer you.
Information collected automatically
When you use the platform, our servers record a limited amount of technical information:
- Request logs: the address requested, the time, the outcome and response time, a request identifier, your IP address, and — for signed-in requests — your user and Organization identifiers. We use these logs to operate, secure and debug the platform.
- Session records: when you sign in we create a session that records your browser's user-agent string and the session's creation and expiry times, so you can stay signed in and so sessions can be revoked.
- Rate-limit counters: for sign-in, sign-up and password-reset requests we count attempts per IP address for a short window, to slow down abuse.
- Preferences: your language (English or Arabic), your theme (dark, light or system) and the Organization you last viewed.
We do not collect precise location, biometric, health or financial information, and we do not use advertising identifiers. Aggregate service metrics (such as request counts and response times) contain no personal information.
How we use information
We use the information described above to:
- create and secure your account, sign you in and keep your sessions valid;
- run your Organizations — memberships, roles, invitations and the content each member is allowed to see;
- provide the services: host your Link-Tree and published Landing Pages, store and version your production assets, and route tasks, approvals, comments and mentions to the right members through in-app notifications;
- show the latest uploads from your linked YouTube channel on your Landing Page, by fetching public channel data through the YouTube Data API;
- send transactional emails — password-reset links and Organization invitations. We do not send marketing email;
- bill paid plans through Polar and show the Owner the Organization's subscription and invoices;
- keep the platform secure and reliable — detecting abuse, rate-limiting sensitive requests, monitoring availability and keeping backups;
- respond to your requests and comply with legal obligations.
Public pages
A Link-Tree and a published Landing Page are public. Anyone with the address can view them without an account, and search engines may index them. Whatever you place on them — including your profile image, bio, links, media and the latest videos from your channel — becomes visible to those visitors.
Visitors to public pages are not asked to sign in and no tracking cookies are set for them; their requests appear in our request logs like any other visit. Content inside the dashboard and the Production Workspace is never public; it is visible only to the members of the Organization it belongs to, according to their roles.
How long we keep information
We keep information for as long as it is needed for the purpose it was collected for:
- Account, profile, Organization and content data — for as long as the account or Organization exists. Deleting an Organization removes its content, including uploaded files and earlier versions; deleting an account removes it and the personal Organization it owns.
- Sessions — an access token is valid for 15 minutes and a refresh token for 30 days; sessions are revoked immediately when you sign out or reset your password.
- Password-reset links — valid for one hour, or until used.
- Invitations — valid for seven days.
- Rate-limit counters — at most one hour.
- Request logs — [LOG RETENTION PERIOD].
- Backups — [BACKUP RETENTION PERIOD]; information deleted from the platform disappears from backups when they rotate.
- Invoice records — for as long as tax and accounting law require.
How we protect information
Information travels between your browser and the platform over encrypted connections. Passwords are stored as salted hashes, authentication uses short-lived tokens in httpOnly cookies backed by server-side sessions that can be revoked, and every request is checked against your membership and role so that one Organization can never see another's data. Files that are not published are only ever delivered through authenticated requests. We monitor the platform's health and keep backups so that we can recover from failures.
No system is completely secure, and we cannot guarantee that information will never be accessed without authorisation. If you discover a security problem, please tell us at info@contropix.com.
Your choices and rights
You are in control of most of your information from the dashboard:
- edit your display name, YouTube channel, bio, image and social links in account settings, and change your password;
- choose your language and theme;
- leave an Organization, or — as its Owner — manage its members and delete it;
- unpublish or delete your public pages and any content you added.
Depending on where you live, you may have legal rights to access, correct, delete or receive a copy of your personal information, to object to or restrict certain processing, and to complain to a data-protection authority. To exercise these rights, or to ask us to delete your account, contact us at info@contropix.com or through the contact page. We will respond within the time required by applicable law and may ask you to confirm your identity first.
International transfers
The platform is hosted in [HOSTING REGION]. Our service providers may process information in other countries. Where information is transferred across borders, we rely on the safeguards required by applicable law, such as approved contractual terms with those providers.
Children
The platform is not intended for children under [MINIMUM AGE], and we do not knowingly collect information from them. If you believe a child has created an account, please contact us and we will remove it.
Changes to this policy
We may update this policy as the platform changes. The date at the top shows when it last changed. For material changes we will notify you through the platform or by email before they take effect.
Contact
Privacy questions and requests can be sent to [COMPANY LEGAL NAME], [LEGAL ADDRESS], at info@contropix.com or through the contact page.