Privacy Policy
Last updated: April 28, 2026
1. What Data We Collect
When you use Inceptrax, we collect the following information:
- Account Information: Name, email address, and hashed password when you create an account.
- Startup Ideas & Analysis Data: The ideas you submit, AI-generated analysis results, stage scores, and any notes or checklists you create.
- Usage Data: Pages visited, features used, timestamps, browser type, and device information collected via analytics tools.
- Communication Data: Messages sent through the platform's chat feature and contact form submissions.
- AI-Generated Content: Reports, pitch decks, and business plans generated by our AI on your behalf.
2. How We Use Your Data
- Service Delivery: To provide AI-powered idea validation, market research, competitor analysis, and report generation.
- Product Improvement: To understand usage patterns and improve our AI models and user experience.
- Analytics: Aggregated, anonymized usage data helps us make product decisions. We use PostHog for product analytics.
- Communication: To send analysis completion notifications, account-related emails, and (with consent) product updates.
- Security: To detect and prevent fraud, abuse, and unauthorized access.
3. Data Storage & Security
Your data is stored securely using industry-standard practices:
- Passwords are hashed using bcrypt with a cost factor of 12. We never store plaintext passwords.
- Authentication uses JWT tokens stored as httpOnly cookies, preventing XSS attacks.
- All data is transmitted over HTTPS in production.
- Database access is restricted and monitored.
- We do not sell, rent, or trade your personal data to third parties.
4. Your Rights
You have the following rights regarding your data:
- Access: You can view all your data through your dashboard.
- Deletion: You can request complete deletion of your account and all associated data by contacting us.
- Export: You can export your analysis reports as PDF or PPT at any time.
- Correction: You can update your profile information through your settings page.
- Opt-out: You can opt out of non-essential analytics by contacting us.
5. Cookies
We use the following cookies:
- Essential:
access_token(httpOnly, authentication) — required for the service to function. - Functional:
auth_session(session flag) — used for client-side navigation protection. - Analytics: PostHog analytics cookies — used to understand product usage (anonymized).
6. Third-Party Services
We integrate with the following services that may process your data:
- Google Gemini / Groq / OpenRouter: AI model providers that process your idea descriptions to generate analysis. Data is sent securely via API.
- Vercel Analytics: Anonymous page view analytics.
- PostHog: Product analytics for usage patterns.
- Resend: Transactional email delivery.
7. Contact Us
For any privacy-related concerns, data deletion requests, or questions about this policy, contact us at:
privacy@inceptrax.com
8. Jurisdiction
This privacy policy is governed by and construed in accordance with applicable law. By using Inceptrax, you consent to the collection and use of your data as described in this policy.