Privacy Policy

Last Updated: January 2025

Here's the deal with your data. We collect what we need to run a functional affiliate tracking platform. Nothing more. This isn't a data harvesting operation - it's tracking software.

What We Collect

Account Information: When you sign up, we get your email, company name, and payment details. Standard business stuff. We need this to operate your account and process transactions.

Technical Data: Our platform logs IP addresses, browser types, click timestamps, and conversion events. That's literally what affiliate tracking does. Without this data, you don't have a tracking system.

Usage Analytics: We monitor how you use the platform - which features get clicked, where users drop off, system performance metrics. This helps us fix bugs and build better tools.

How We Use Your Data

  • Operate core tracking functionality (attribution, reporting, fraud detection)
  • Process affiliate commissions and payments
  • Send critical account notifications and platform updates
  • Improve system performance and user experience
  • Comply with legal obligations in iGaming jurisdictions

We don't sell your data. Period. Not to advertisers, not to data brokers, not to anyone. Our business model is subscription fees, not data monetization.

Data Sharing

Your tracking data stays within your account dashboard. We share information only in these scenarios:

Service Providers: Payment processors (Stripe), cloud infrastructure (AWS), email delivery systems. They're contractually bound to protect your data.

Legal Requirements: If regulators or law enforcement demand it through proper legal channels, we comply. We'll notify you unless legally prohibited.

Business Transfers: If AffiTrack gets acquired, your data transfers with the platform. You'll get advance notice and options.

Data Security

We use industry-standard encryption (TLS 1.3 for transmission, AES-256 for storage). Access controls limit who sees what internally. Regular security audits catch vulnerabilities.

But let's be honest - no system is 100% hack-proof. We minimize risk, respond fast to incidents, and maintain liability insurance. That's the reality of data security in 2025.

Your Rights

You can request access to your data, corrections to inaccurate information, or complete account deletion. Email [email protected] with requests. We respond within 72 hours.

EU users have GDPR rights. California residents have CCPA protections. We comply with both frameworks globally because it's simpler than maintaining separate systems.

Cookie Policy

We use essential cookies for login sessions and platform functionality. Analytics cookies track aggregate usage patterns (anonymized). No third-party advertising cookies - we're B2B software, not an ad network.

Policy Updates

When privacy practices change, we update this page and email active accounts. Material changes get 30 days notice. Continued use after updates means acceptance.

Questions about this policy? Contact our data protection team at [email protected]. We'll give you straight answers, not legal runaround.