Effective Date: July 15, 2025 | Last Updated: July 15, 2025
Conduct Compliance Inc. ("Conduct," "we," "us," or "our") operates the Conduct website and desktop application (the "Services"). We're committed to protecting your personal data and helping you understand how we collect, use, and share it. By using our Services, you agree to this Privacy Policy.
1. Information We Collect
1.1 Personal Identifiers
Name, email address, display name
Billing details (e.g., credit/debit card info)
1.2 Usage & Technical Data
IP address, device identifiers, browser type, operating system
Session activity, clickstreams, and session replay data (via PostHog)
Send newsletters & product updates (you may unsubscribe at any time via email link)
4. Sharing & Disclosure
We do not sell your personal data. We share it only with:
Service Providers & Subprocessors:
Stripe (payment processing)
PostHog (analytics & session replay)
DigitalOcean (hosting)
Sentry (error tracking)
Legal & Safety: To comply with legal obligations, enforce our Terms, or protect Conduct’s rights.
Business Transfers: In connection with a merger, acquisition, or sale of assets (with notice).
5. Cookies & Tracking Technologies
We use essential cookies for login, security, and basic functionality. We use analytics cookies and session replay (via PostHog) to understand how you use our Services and improve them. We do not display a cookie banner or provide an in-app opt-out—if you disable cookies in your browser, some features may break.
6. Children's Privacy
Our Services are intended for workplace use and not directed to children under 13. We do not implement age verification. If we learn that we’ve collected personal data from a child under 13, we will delete it immediately. We do not obtain parental consent under COPPA, as we do not target children.
Delete your personal data (subject to legal exceptions)
Correct or update inaccurate data
Withdraw consent for marketing emails (via the unsubscribe link in each email)
We honor all valid requests.
8. Data Security
We employ industry-standard measures to protect your data, including:
Encryption (TLS in transit; AES-256 at rest)
Secure servers and network controls (hosted in U.S. data centers)
Access controls, logging, and regular security audits
9. Data Retention & Transfers
Retention: We retain personal data for as long as your account is active plus 24 months of inactivity, unless law requires otherwise.
Transfers: All data is stored and processed in the U.S. We do not transfer data internationally.
10. Changes to This Policy
We may update this Policy as our Services or legal requirements change. We’ll revise the “Last Updated” date and, if the changes are material, notify you by email or in-app notice.
11. Contact Us
Privacy Contact:legal@useconduct.com We do not maintain a physical mailing address. Reach us anytime via email for questions or to exercise your privacy rights.