CanyonOps ("we," "our," or "us") operates the CanyonOps platform at canyonops.ai and the CanyonOps application at app.canyonops.ai. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our platform. Please read this policy carefully. By accessing or using CanyonOps, you agree to the terms of this Privacy Policy.
1. Information We Collect
Information You Provide Directly
- Account Information: When you create an account, we collect your name, email address, and password. If you sign up via Google OAuth, we receive your name and email from Google.
- Organization Information: When you create or join an organization, we collect the organization name and your role within it.
- Client & Household Data: Data you enter about your clients and households, including names, service tiers, planning categories, tasks, notes, and financial planning information.
- Contact Form Submissions: When you contact us through our website, we collect your name, email, company name, and message content.
- Payment Information: If you subscribe to a paid plan, payment processing is handled by our third-party payment processor. We do not store your full credit card number.
Information Collected Automatically
- Usage Data: We collect information about how you interact with CanyonOps, including pages viewed, features used, and actions taken within the platform.
- Device & Browser Information: We collect your IP address, browser type, operating system, device type, and screen resolution.
- Log Data: Our servers automatically record information including your IP address, access times, pages viewed, and the referring URL.
2. How We Use Your Information
We use the information we collect for the following purposes:
- Provide and maintain the Service: To operate the CanyonOps platform, process your requests, and deliver the features you use.
- Account management: To create and manage your account, verify your identity, and process organization membership.
- Communication: To send you service-related notices, respond to your inquiries, and provide customer support.
- Improvement: To understand how our platform is used and to improve our features, user experience, and performance.
- Security: To detect, prevent, and address fraud, abuse, and security issues.
- Legal compliance: To comply with applicable laws, regulations, and legal processes.
3. Data Storage & Security
We take the security of your data seriously and implement industry-standard measures to protect it:
- Encryption: All data transmitted between your browser and our servers is encrypted using TLS (Transport Layer Security). Sensitive data is encrypted at rest.
- Infrastructure: Our application is hosted on enterprise-grade cloud infrastructure with automated backups, redundancy, and monitoring.
- Database: Client data is stored in a secure PostgreSQL database with row-level security and organization-scoped access controls.
- Authentication: We use secure authentication protocols including password hashing, session management, and optional OAuth integration.
- Access controls: We limit internal access to personal data to employees who require it to provide our services.
While we strive to protect your information, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security.
4. Third-Party Services
We use the following third-party services that may have access to your data:
- Cloud hosting provider: For application hosting and data storage.
- Email service provider: To send transactional emails (account verification, password resets, notifications).
- Authentication provider: Google OAuth for optional single sign-on.
- Bot protection: Cloudflare Turnstile for spam and abuse prevention on forms.
- Analytics: To understand website traffic and usage patterns.
These third-party services have their own privacy policies governing their use of your data. We encourage you to review their policies.
5. Cookies
CanyonOps uses cookies and similar technologies for the following purposes:
- Essential cookies: Required for authentication, session management, and security. These cannot be disabled.
- Preference cookies: To remember your settings and preferences (e.g., active plan year, view configurations).
- Analytics cookies: To understand how visitors interact with our website and improve our services.
You can control cookie preferences through your browser settings. Disabling essential cookies may prevent you from using certain features of the platform.
6. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request correction of inaccurate or incomplete personal data.
- Deletion: Request deletion of your personal data, subject to legal retention requirements.
- Portability: Request a copy of your data in a structured, machine-readable format.
- Objection: Object to certain types of data processing.
- Withdrawal of consent: Withdraw previously given consent at any time.
To exercise any of these rights, please contact us at hello@canyonops.ai. We will respond to your request within 30 days.
7. Data Retention
We retain your personal data for as long as your account is active or as needed to provide our services. Specifically:
- Account data: Retained while your account is active and for a reasonable period after account closure.
- Client & household data: Retained while your organization's subscription is active. Upon termination, data is retained for 90 days before permanent deletion.
- Usage logs: Retained for up to 12 months for security and improvement purposes.
- Legal obligations: We may retain certain data longer if required by applicable law or regulation.
You may request deletion of your data at any time by contacting us.
8. Children's Privacy
CanyonOps is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected personal data from a child under 18, we will take steps to delete that information promptly. If you believe a child has provided us with personal data, please contact us at hello@canyonops.ai.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page and updating the "Last updated" date. For significant changes, we may also send you a notification via email. Your continued use of CanyonOps after any changes constitutes your acceptance of the updated Privacy Policy.
10. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
- Email: hello@canyonops.ai
- Website: canyonops.ai/contact