Privacy Policy

Last updated: October 2, 2025

1. Introduction

At Axomatik (“we,” “our,” or “us”), we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web accessibility audit services.

By using our Service, you consent to the data practices described in this policy. If you do not agree with our policies and practices, please do not use our Service.

2. Information We Collect

2.1 Personal Information

We collect personal information that you provide directly to us, including:

  • Name and email address when you create an account
  • Payment information (processed securely through Paddle)
  • Profile information and preferences
  • Communication preferences and marketing consent
  • Support requests and feedback

2.2 Usage Information

We automatically collect certain information about your use of our Service:

  • IP address and device information
  • Browser type and version
  • Pages visited and features used
  • Time spent on our Service
  • Error logs and performance data

2.3 Website Scan Data

When you use our accessibility scanning service:

  • We process the URLs you submit for scanning
  • Scan results and audit data are stored to provide you with historical access and trend analysis
  • We store accessibility violation details, compliance scores, and audit reports
  • We do not store your website content beyond what is necessary for accessibility analysis
  • Aggregated, anonymized data may be used for service improvement

3. How We Use Your Information

We use the information we collect for the following purposes:

  • Provide and maintain our accessibility audit services
  • Process payments and manage subscriptions
  • Send important service updates and notifications
  • Respond to your support requests and inquiries
  • Improve our services and develop new features
  • Ensure security and prevent fraud
  • Comply with legal obligations
  • Send marketing communications (with your consent)

4. Information Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share your information in the following limited circumstances:

  • Service Providers: With trusted third-party service providers who assist us in operating our Service (e.g., Paddle for payments, hosting providers)
  • Legal Requirements: When required by law or to protect our rights and safety
  • Business Transfers: In connection with a merger, acquisition, or sale of assets
  • Consent: With your explicit consent for specific purposes

5. Data Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption of data in transit and at rest
  • Regular security assessments and updates
  • Access controls and authentication measures
  • Secure data centers and infrastructure
  • Employee training on data protection

However, no method of transmission over the internet or electronic storage is 100% secure, and we cannot guarantee absolute security.

6. Data Retention Policy

We retain your personal information and data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy and in compliance with EU data protection laws:

  • Account Information: Retained while your account is active and for 30 days after account deletion to allow for account recovery
  • Scan Results & Audit Data: Retained indefinitely unless you request deletion, to provide historical access and trend analysis
  • Payment Information: Retained for 7 years as required by EU accounting and tax laws
  • Usage Logs: Retained for 12 months for security monitoring and service improvement
  • Marketing Data: Retained until consent is withdrawn or for 3 years after last interaction
  • Support Communications: Retained for 3 years to provide continuity of support

7. Data Deletion Rights

You have the right to request deletion of your data at any time:

  • Account Deletion: You can delete your account through your account settings, which will remove all associated data
  • Selective Deletion: You can request deletion of specific scan results or audit data while keeping your account active
  • Right to be Forgotten: Under GDPR, you can request complete deletion of all your personal data
  • Processing Time: Deletion requests are processed within 30 days of receipt

To exercise your deletion rights, contact us at privacy@axomatik.eu with your request.

8. Your Rights and Choices

Depending on your location, you may have the following rights regarding your personal information:

  • Access: Request access to your personal information
  • Correction: Request correction of inaccurate information
  • Deletion: Request deletion of your personal information
  • Portability: Request a copy of your data in a portable format
  • Restriction: Request restriction of processing
  • Objection: Object to processing of your personal information

To exercise these rights, please contact us at privacy@axomatik.eu. We will respond to your request within 30 days.

9. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience on our Service:

  • Essential Cookies: Required for basic functionality
  • Analytics Cookies: Help us understand how users interact with our Service
  • Preference Cookies: Remember your settings and preferences
  • Marketing Cookies: Used for targeted advertising (with consent)

You can control cookie settings through your browser preferences. However, disabling certain cookies may affect Service functionality.

10. Third-Party Services

Our Service may contain links to third-party websites or integrate with third-party services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.

Key third-party services we use include:

  • Paddle (payment processing)
  • Google Analytics (website analytics)
  • Email service providers
  • Cloud hosting and infrastructure providers

11. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure that such transfers comply with applicable data protection laws and implement appropriate safeguards to protect your information.

12. Children's Privacy

Our Service is not intended for children under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have collected information from a child under 16, please contact us immediately.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the “Last updated” date. Your continued use of the Service after such changes constitutes acceptance of the updated policy.

14. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us at:

Email: privacy@axomatik.eu
Address: COFFEE GUAP SRL, 8 Gheorghe Tache St, Bucharest, Romania, 041502
Website: https://axomatik.eu

For EU residents, you also have the right to lodge a complaint with your local data protection authority.

This Privacy Policy is effective as of the date listed above and applies to all users of our Service.