Your Privacy Matters

Privacy Policy

Last updated: December 30, 2025

At Proposalix, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered RFP response platform. Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the application.

Information We Collect

We collect information that you provide directly to us and information automatically collected when you use our service.

Personal Information

  • Account information (name, email address, password)
  • Organization information (company name, logo)
  • Payment information (processed securely through Stripe)
  • Profile information and team member details

Content and Documents

  • Uploaded documents (proposals, case studies, RFPs)
  • Library content and metadata
  • Generated proposals and AI interactions
  • Project data and collaboration activity

Automatically Collected Information

  • Usage data and analytics (pages viewed, features used, session duration)
  • Device information (IP address, browser type, operating system)
  • Cookies and similar tracking technologies

How We Use Your Information

We use the information we collect to provide, maintain, and improve our services.

Provide and deliver our AI-powered proposal generation services
Process and store your uploaded documents and content
Generate AI-powered proposal responses using your library content
Process payments and manage subscriptions
Send you service-related notifications and updates
Improve our platform and develop new features
Ensure security and prevent fraud or abuse
Comply with legal obligations and respond to legal requests

Third-Party Services

We work with trusted third-party service providers to deliver our services.

Supabase (Database & Authentication)

We use Supabase to securely store your account data, content library, and project information. Supabase is SOC 2 Type 2 certified and compliant with GDPR.

Stripe (Payment Processing)

All payment information is processed securely by Stripe. We do not store your credit card details on our servers. Stripe is PCI DSS compliant.

Anthropic Claude AI

We use Anthropic's Claude AI to generate proposal content. Your content is processed through Anthropic's API in accordance with their privacy policy. Anthropic does not train on customer data submitted via their API.

Analytics Services

We may use analytics services to understand how our platform is used and to improve user experience. These services may use cookies and similar technologies.

Data Security

We implement industry-standard security measures to protect your information.

Encryption

All data is encrypted in transit using TLS/SSL and at rest using AES-256 encryption.

Access Controls

We implement strict access controls and authentication mechanisms to prevent unauthorized access to your data.

Regular Audits

We regularly review and update our security practices to protect against emerging threats.

Data Backup

Regular backups are performed to ensure data availability and recovery capabilities.

Data Retention

We retain your information for as long as necessary to provide our services and comply with legal obligations.

Active Accounts: We retain your data for as long as your account is active or as needed to provide you with services.

Deleted Accounts: When you delete your account, we will delete or anonymize your personal information within 30 days, except where we are required to retain it for legal or compliance purposes.

Backup Data: Data may persist in backup systems for up to 90 days after deletion.

Your Privacy Rights

You have certain rights regarding your personal information, depending on your location.

Access

Request a copy of your personal data

Correction

Update or correct inaccurate information

Deletion

Request deletion of your personal data

Portability

Export your data in a portable format

Objection

Object to certain data processing activities

Restriction

Restrict how we process your data

To exercise any of these rights, please contact us at the email address below. We will respond to your request within 30 days.

Cookies and Tracking Technologies

We use cookies and similar technologies to improve your experience on our platform.

Cookies are small data files stored on your device. We use the following types of cookies:

Essential Cookies

Required for the platform to function properly, including authentication and security.

Analytics Cookies

Help us understand how users interact with our platform to improve functionality and user experience.

Preference Cookies

Remember your settings and preferences for a better experience.

You can control cookies through your browser settings. Note that disabling certain cookies may affect the functionality of our platform.

Children's Privacy

Our service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us, and we will delete such information.

International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws than your country.

When we transfer your information internationally, we ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy and applicable laws.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.

We encourage you to review this Privacy Policy periodically for any changes. Your continued use of the platform after any modifications indicates your acceptance of the updated Privacy Policy.

Contact Us

If you have questions or concerns about this Privacy Policy, please contact us.

Email: privacy@proposalix.com

Response Time: We aim to respond to all privacy-related inquiries within 48 hours.

GDPR & CCPA Compliance

Proposalix is committed to complying with the General Data Protection Regulation (GDPR) for users in the European Economic Area and the California Consumer Privacy Act (CCPA) for California residents.

If you are a resident of the EEA or California, you have specific rights regarding your personal information. Please contact us to exercise these rights or if you have any questions about how we handle your data.