Privacy Policy
Last updated: [insert publish date]
1. Who we are
This policy explains how Cloudsilicon Limited ("we," "us"), operating the Jump SEO service, collects, uses, and protects information when you use our website and dashboard. We're based in Toronto, Ontario, Canada [insert registered address], and this policy is written with reference to Canada's Personal Information Protection and Electronic Documents Act (PIPEDA). If you access the Service from the EU/UK or California, additional rights under GDPR or the CCPA may apply to you — contact us if you'd like to exercise them.
2. Information we collect
Account information: name, email address, password (stored as a salted hash, never in plain text), and two-factor authentication settings if enabled.
Workspace information: the website domains you audit, business and market details you provide (industry, target customer, target location), and content, leads, and outreach records generated or entered through the Service.
Third-party connection data: if you connect Google Search Console, Zoho CRM, or a publishing platform, we store the access tokens needed to act on your behalf, encrypted at rest, and the data those integrations return (e.g., search ranking rows, CRM record IDs).
Usage data: log data such as IP address, browser type, and pages visited, collected automatically for security and diagnostics.
Lead and outreach contact data: if you use Jump SEO's CRM or outreach features, we process the contact information of your leads and outreach prospects on your behalf, as your data processor.
3. How we use it
- To provide and operate the Service (running audits, generating content, drafting outreach, tracking rankings, syncing your CRM);
- To authenticate you and secure your account;
- To send you service-related communications (billing, security alerts, product updates);
- To monitor, debug, and improve the Service;
- To comply with legal obligations.
We don't sell your personal information, and we don't use your workspace content or client data to train AI models outside of what's needed to generate that specific request's output.
4. Who we share it with
We share data with the following categories of service providers, only as needed to run the Service:
- AI content generation — audit summaries and content prompts are sent to our AI model provider to generate recommendations, articles, and outreach drafts.
- Database and hosting — your workspace data is stored with our database and hosting providers.
- Email delivery — transactional email and, where you choose to send them, outreach emails are delivered through our email provider.
- Google — if you connect Search Console, we exchange data with Google's APIs under the scope you authorize.
- Zoho — if you connect Zoho CRM, lead records are synced to your Zoho account under the credentials you provide.
- Payment processing — if you're on a paid plan, billing is handled by our payment processor; we don't store your full card number.
[Insert the specific named sub-processors and a link to an up-to-date sub-processor list once your final hosting/database/email vendors are locked in — this should be a concrete, maintained list, not a general description, before this goes live.]
We don't share your data with third parties for their own marketing purposes, and we disclose it to law enforcement or regulators only where legally required.
5. Data retention
We retain account and workspace data for as long as your account is active, and for a reasonable period after cancellation in case you reactivate, unless you request earlier deletion. You can request deletion of your account and associated data at any time by contacting us.
6. Security
Passwords are hashed, not stored in plain text. Sensitive tokens (Zoho and Google OAuth credentials) are encrypted at rest. Access to production data is limited to personnel who need it to operate the Service. No system is perfectly secure, and we can't guarantee absolute security of information transmitted over the internet.
7. Cookies
We use a strictly necessary authentication cookie to keep you signed in. We don't currently use third-party advertising or tracking cookies on the dashboard. [Confirm and update this section to match whatever analytics you actually deploy on the public marketing site.]
8. Your rights
Depending on where you're located, you may have the right to access, correct, export, or delete your personal information, and to withdraw consent for optional processing. To exercise these rights, contact hello@jumpseo.ai. We'll respond within a reasonable time and in line with applicable law.
9. Children's privacy
The Service is intended for business use by adults and is not directed at children. We don't knowingly collect personal information from anyone under 18.
10. International transfers
Our service providers may process data outside of Canada, including in the United States. Where that happens, we rely on our providers' contractual and security safeguards for cross-border transfer.
11. Changes to this policy
We'll post updates here with a new "Last updated" date and notify you by email of material changes.
12. Contact
hello@jumpseo.ai · Cloudsilicon Limited, Toronto, Ontario, Canada [insert registered address].