Privacy Policy
Last updated: October 1, 2026
1. Who we are
PishonIQ (“PishonIQ”, “we”, “us”) provides a product analytics platform that helps website and app owners (our “customers”) understand how visitors use their products. This policy explains what data we collect, why, and how it is handled — both for people who sign up for a PishonIQ account, and for end visitors tracked on a customer’s site via our SDK.
Legal entity: [company legal name, registered address]. Contact for privacy questions: privacy@pishoniq.com.
2. Data we collect
Account data (from you, if you sign up for PishonIQ): name, email, password (hashed), organization name, and billing details processed by our payment provider.
Visitor/event data (from the PishonIQ tracking SDK, on behalf of our customers): page views, clicks, scroll depth, custom events, session identifiers, approximate location derived from IP address, device/browser/OS, and any identifying traits a customer’s own code chooses to send viaidentify(). We do not control what a customer sends us — customers are responsible for not sending data they aren’t permitted to collect from their own visitors.
We do not sell personal data. We do not use visitor data collected on behalf of customers to build cross-customer profiles or for our own advertising.
3. How we use data
- To operate the dashboard, ingestion, and analytics features customers pay for.
- To generate the AI-written insights feature, where customer project data is sent to our AI provider solely to answer that customer’s own query.
- To detect abuse, secure accounts, and enforce rate limits.
- To contact account holders about service changes, billing, and — if opted in — product updates.
4. Cookies and local storage
The PishonIQ marketing site and dashboard use essential cookies/local storage for login sessions and to remember your workspace selection. The PishonIQ tracking SDK, embedded on a customer’s site, stores a session identifier and optional identity traits in the visitor’s browser (localStorage, not cookies) to group events into sessions. See the cookie banner on this site for controls over non-essential tracking here.
5. Data retention and deletion
Event and session data is retained according to each customer’s plan (default [X days]), after which it is automatically deleted. Account holders can request deletion of their account and associated data at any time by contacting privacy@pishoniq.com, or via the data-deletion control in account settings.
6. Your rights
Depending on where you live (including under GDPR for EU/UK residents, and CCPA/CPRA for California residents), you may have the right to access, correct, delete, or export your personal data, and to object to or restrict certain processing. To exercise these rights, contact privacy@pishoniq.com. If you are a visitor tracked on a customer’s website rather than a PishonIQ account holder, please contact that website directly — they control what data is collected and PishonIQ acts as their processor.
7. Sub-processors
We use third-party infrastructure to provide the service, including [hosting provider], [database provider], [email provider],[payment processor], and [AI provider] for the AI insights feature. A current list of sub-processors is available on request.
8. Changes to this policy
We’ll post material changes here with an updated “Last updated” date, and notify active account holders by email for significant changes.
9. Contact
Questions about this policy: privacy@pishoniq.com.