Privacy Policy
1. Introduction
Welcome to Athr. This Privacy Policy describes how Athr Intelligence collects, uses, and protects your personal and organizational information when you use our website, products, and services (collectively, the "Service"). We are committed to protecting your privacy and handling your data with transparency and care.
2. Information We Collect
We collect several types of information to provide and improve our Service to you:
- Personal Information: When you register for an account, we collect information that can be used to identify you, such as your name, email address, and password (which is immediately hashed and never stored in plaintext).
- Organizational Asset Data: To provide our threat intelligence service, we require you to submit assets to be monitored. This includes your organization's domain names, IP ranges, and specific brand or project keywords. This data is treated as highly confidential.
- Usage and Technical Data: We automatically collect information about how you interact with our Service. This may include your IP address, browser type, device information, pages visited, and the time and date of your visits. We use this data for security, fraud prevention, and to improve our service.
3. How We Use Your Information
We use the information we collect for the following core purposes:
- To Provide and Maintain the Service: This is our primary purpose. We use your Organizational Asset Data (domains, IPs, etc.) to scan external sources and provide you with relevant threat intelligence alerts.
- To Secure Your Account: We use your email, password, and technical data to authenticate you, secure your account, and protect our platform from fraud and abuse.
- To Improve Our Products: We analyze anonymized usage data to understand how our users interact with the platform, which helps us fix bugs and build new, valuable features.
- To Communicate With You: We use your email address to send you critical security alerts, service updates, and (with your consent) promotional information about new products or special offers. You can opt out of promotional emails at any time.
4. How We Share and Disclose Information
Your trust is paramount. We do not sell, rent, or trade your personal information or organizational data. We only share information in the following limited circumstances:
- With Third-Party Service Providers: We use trusted third-party services to operate our platform, such as cloud hosting (Firebase), user authentication (Firebase Auth), and IP intelligence (IPinfo.io). These providers are contractually obligated to protect your data and are only permitted to use it to provide their service to us.
- For Legal Requirements: We may disclose your information if required to do so by law or in response to valid requests by public authorities (e.g., a court order or government agency).
- For Security and Fraud Prevention: We may share information (like IP addresses) with services like Firebase App Check to protect our platform from bots and malicious activity.
- Business Transfers: If we are involved in a merger, acquisition, or asset sale, your information may be transferred as part of that transaction. We will notify you before your information is transferred and becomes subject to a different privacy policy.
5. Data Security
We take the security of your data extremely seriously. We implement industry-standard technical and organizational measures to protect your information from unauthorized access, use, alteration, or destruction. These measures include:
- Encryption of data at rest and in transit.
- Strict access controls, ensuring only authorized personnel can access sensitive data.
- Use of secure, battle-tested services like Firebase for authentication and database management.
- Regular security reviews and updates to our infrastructure.
6. Your Data Rights
You have control over your personal information. You have the right to:
- Access: Request a copy of the personal information we hold about you.
- Correction: Request that we correct any inaccurate or incomplete information.
- Deletion: Request that we delete your personal information, subject to certain legal obligations.
To exercise these rights, please contact us at the email address provided on our contact page.
7. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page. You are advised to review this Privacy Policy periodically for any changes.
8. Contact Us
If you have any questions about this Privacy Policy, please contact us through the "Contact" link on our website.