Last Updated: September 27, 2026

Privacy
Policy

Your privacy and data security are our top priorities. Learn how we protect and manage your information.

Introduction

Welcome to Risenexa. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform. By accessing or using Risenexa, you agree to this Privacy Policy.

We are committed to protecting your privacy and ensuring the security of your data with enterprise-grade encryption and industry best practices.

Information We Collect

Personal Information

When you create an account, we collect:

  • Name and email address
  • Company name and business information
  • Payment information (processed securely through Stripe)
  • Profile information you choose to provide

Business Data

To provide our services, we collect and process:

  • Startup financial metrics (revenue, expenses, MRR, ARR)
  • Marketing campaign data and analytics
  • Integration data from connected services (Stripe, Google Analytics, etc.)
  • Custom data you upload or input via API

Usage Data

We automatically collect certain information, including:

  • Device and browser information
  • IP address and location data
  • Usage patterns and feature interactions
  • Log data and error reports

How We Use Your Information

Service Delivery

To provide, maintain, and improve our platform, process transactions, and deliver the features you expect.

Analytics & AI Insights

To generate insights, forecasts, and recommendations using AI and machine learning algorithms.

Communication

To send you service updates, security alerts, and respond to your inquiries.

Security & Fraud Prevention

To detect and prevent unauthorized access, fraud, and abuse of our services.

Legal Compliance

To comply with legal obligations, respond to lawful requests, and protect our rights.

Data Security

We implement industry-leading security measures to protect your data:

Encryption

AES-256 encryption at rest and TLS 1.3 in transit

Access Control

Role-based permissions and multi-factor authentication

Backups

Automated daily backups with 30-day retention

Compliance

SOC 2 Type II, GDPR, and CCPA compliant

Data Sharing & Disclosure

We do not sell your personal information. We may share your data only in these limited circumstances:

Service Providers

Trusted third-party vendors who help us operate our platform (e.g., Stripe for payments, AWS for hosting, OpenAI for AI features).

Legal Requirements

When required by law, court order, or government regulation to comply with legal obligations.

Business Transfers

In connection with a merger, acquisition, or sale of assets, with your data protected under the same terms.

With Your Consent

When you explicitly authorize us to share specific information.

Your Rights & Choices

You have the following rights regarding your personal data:

Access

Request a copy of the personal data we hold about you.

Correction

Request corrections to inaccurate or incomplete data.

Deletion

Request deletion of your personal data, subject to legal requirements.

Export

Export your data in a portable, machine-readable format.

Opt-Out

Unsubscribe from marketing communications at any time.

Restrict Processing

Request limitations on how we process your data.

To exercise your rights: Email us at [email protected] or contact us through your account settings. We will respond within 30 days.

Cookies & Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience:

Essential Cookies

Required for authentication, security, and basic functionality. Cannot be disabled.

Analytics Cookies

Help us understand how you use our platform to improve performance and features.

Preference Cookies

Remember your settings and preferences for a personalized experience.

You can manage cookie preferences through your browser settings. Note that disabling certain cookies may affect functionality.

Data Retention

We retain your data only as long as necessary to provide our services and comply with legal obligations:

  • Active accounts: Data retained while your account is active
  • Deleted accounts: Data deleted within 90 days, except as required by law
  • Legal requirements: Financial records retained for 7 years per tax regulations
  • Backups: Automated backups deleted after 30 days

International Data Transfers

Risenexa is a global platform. Your data may be processed in countries outside your residence, including the United States and European Union.

We ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) and adherence to the EU-U.S. Data Privacy Framework, to protect your data regardless of where it is processed.

Children's Privacy

Risenexa is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have inadvertently collected data from a child, please contact us immediately at [email protected].

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. When we make significant changes, we will:

  • Update the "Last Updated" date at the top of this page
  • Notify you via email or in-app notification
  • Provide a 30-day notice period before changes take effect

Your continued use of Risenexa after the effective date constitutes acceptance of the updated policy.

Questions About Privacy?

We're here to help. Contact our privacy team with any questions or concerns.

Risenexa Inc.
Email: [email protected]
Data Protection Officer: [email protected]