Privacy Policy
Effective Date: 7/29/2025
Last Updated: June 29, 2025
FunnelSurfing ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains in clear terms howFunnelSurfing collects, uses, and safeguards information when you use our service. It is designed to comply with applicable global privacy laws including the GDPR and CCPA, ensuring transparency and legal adequacy for all our users worldwide.
1. Scope and Application
This Privacy Policy applies to the FunnelSurfing web application and any related services. By using FunnelSurfing, you acknowledge that you have read and understood this Policy. This Policy covers users globally and addresses the specific requirements of major privacy regulations.
2. Who We Are
FunnelSurfing is an email marketing intelligence platform that helps users analyze email funnels and landing pages. For the purposes of data protection laws, the data controller of any personal data collected by FunnelSurfing is:
FunnelSurfing
Email: contact@funnelsurfing.com
Website: www.funnelsurfing.com
3. Information We Collect
We collect information in the following categories:
Account Information
- Email address (for authentication and communication)
- Password (stored using secure encryption)
- Account preferences and settings
Service Usage Data
- Email funnels you create and analyze
- Landing pages you capture and analyze
- Analysis results and generated insights
- Credit usage and transaction history
Email Content
- Marketing emails forwarded to your unique funnel addresses
- Email metadata (sender, subject, timestamps)
- Automatically anonymized personal emails
Technical Information
- Browser type and version
- Device information and operating system
- IP address (for security and fraud prevention)
- Usage patterns and feature interactions
Payment Information
All payment transactions are processed by our third-party payment provider. We do not store credit card numbers or banking information directly.
4. How We Use Your Information
We use the collected information for the following purposes:
- Service Delivery: To provide, maintain, and improve our email and landing page analysis services
- Account Management: To manage your account, credits, and preferences
- Communication: To send service updates, security alerts, support messages, and marketing communications (with your consent)
- Analytics: To understand usage patterns and improve our service
- Security: To detect and prevent fraud, abuse, and unauthorized access
- Legal Compliance: To comply with legal obligations and enforce our terms
5. Email Content Privacy
We take special care with email content:
- Automatic Privacy Detection: Personal emails are automatically detected and anonymized using AI
- Business Email Analysis: Only business/marketing emails are fully analyzed
- User Control: You control the privacy settings of all captured content
- No Unauthorized Sharing: We never share your email content without explicit permission
- Secure Storage: All email content is encrypted at rest and in transit
6. Legal Basis for Processing
We process your data based on:
- Contract Performance: To provide the services you've requested
- Legitimate Interests: To improve our services and ensure security
- Consent: For optional features and marketing communications
- Legal Obligations: To comply with applicable laws
7. Data Storage and Security
Your data is stored and processed using industry-leading services:
- Database: Supabase (PostgreSQL) with encryption at rest
- File Storage: Supabase Storage with secure access controls
- Infrastructure: Cloud services with SOC 2compliance
- Security Measures: HTTPS encryption, secure authentication, regular security audits
We implement appropriate technical and organizational measures to protect your data against unauthorized access, alteration, disclosure, or destruction.
8. Third-Party Service Providers
We use carefully selected third-party services:
- Supabase: Database and authentication services
- OpenAI, Anthropic, Google Gemini: AI analysis (data processed under their privacy policy)
- Mailgun: Email receiving and processing
- Firecrawl: Web scraping for landing pages
- Stripe: Secure payment handling
All third-party providers are bound by data processing agreements and appropriate safeguards.
9. International Data Transfers
Your data may be transferred to and processed in countries outside your residence. We ensure appropriate safeguards are in place, including:
- Standard contractual clauses
- Data processing agreements
- Adequacy decisions where applicable
10. Data Retention
We retain your data according to the following schedule:
- Account Data: As long as your account is active
- Email Content: Until you delete it or close your account
- Analysis Results: Until you delete them or close your account
- Technical Logs: Up to 90 days for security purposes
- Deleted Data: Removed within 30 days of deletion request
11. Your Privacy Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion of your data
- Portability: Receive your data in a portable format
- Restriction: Limit how we process your data
- Objection: Object to certain processing activities
- Withdraw Consent: Where processing is based on consent
To exercise these rights, contact us at contact@funnelsurfing.com. We will respond within 30 days.
12. Marketing Communications
When you create an account, you are automatically opted in to receive marketing communications from us. We use your email address to send:
- Product updates and new features
- Educational content and best practices
- Special offers and promotions
- Community updates and success stories
Your Control: You can manage your email preferences at any time:
- Through your account settings under "Notification Preferences"
- By clicking the unsubscribe link in any marketing email
- By contacting us at contact@funnelsurfing.com
We respect your preferences and will process unsubscribe requests promptly. Note that you cannot opt out of essential service communications (e.g., security alerts, account notifications).
13. Cookies and Tracking
We use essential cookies and similar technologies to:
- Maintain your session and authentication
- Remember your preferences
- Ensure security and prevent fraud
We do not use third-party tracking cookies or advertising cookies.
14. Children's Privacy
FunnelSurfing is not intended for children under 13 (or 16 in certain jurisdictions). We do not knowingly collect information from children. If we discover such data, we will delete it immediately.
15. Changes to This Privacy Policy
We may update this policy to reflect changes in our practices or legal requirements. We will notify you of material changes via email or through the service. The latest version will always be dated at the top.
16. Contact Us and Privacy Officer
If you have questions, concerns, or wish to exercise your privacy rights, please contact:
Privacy Officer
FunnelSurfing
Email: contact@funnelsurfing.com
Website: www.funnelsurfing.com
You may also file a complaint with your local data protection authority if you believe your rights have been violated.