Skip to content

    Privacy Notice

    How GetPRBoost handles account, organization, release, billing, support, and service-operation information.

    Last updated August 29, 2026 · Effective August 29, 2026

    Information collected

    We collect account identifiers and contact details; organization profiles, branding and media contacts; release content and media; team membership; order and editorial history; billing references and transaction status; provider job and placement data; support communications; and security and operational logs.

    Stripe collects and processes payment credentials. GetPRBoost does not receive or store full card numbers.

    To measure conversion across public pages we record first-party aggregate page-view counts. Each counter stores only a step name, a calendar date, and a running total — no user identifier, IP address, device fingerprint, cookie, or session ID is ever stored. These counts cannot be joined to an individual and are visible only to staff administrators.

    How information is used

    Information is used to authenticate users, isolate organizations, process and review orders, collect payment, coordinate distribution, publish approved newsrooms, generate reports, communicate status, prevent abuse, troubleshoot failures, maintain audit history, and comply with legal obligations.

    Service providers and public content

    Information is shared as necessary with infrastructure, payment, email, fulfillment, and selected distribution partners, including Supabase, Stripe and Resend. Approved release content, company profiles, media contacts, images, links, and newsroom pages are intended for public distribution.

    We do not sell personal information through the current product. If advertising, analytics, or data-sharing practices materially change, this notice and required controls must be updated before that change is enabled.

    Retention and security

    We retain information while needed for service delivery, audit, billing, dispute, security, reporting, and legal purposes, then delete or de-identify it under the applicable retention schedule. Access is role-restricted, reports are private by default, and sensitive server credentials are not delivered to the browser.

    Requests and choices

    Subject to applicable law, you may request access, correction, deletion, or information about processing by contacting [email protected]. Some records may be retained where required for security, billing, disputes, provider evidence, or legal compliance.

    Jurisdiction-specific rights

    Privacy rights vary by location, and several jurisdictions give you rights over the personal information a business holds about you — commonly access, correction, deletion, portability, and the right to object to or opt out of certain processing. Where such rights apply to you, we honour them regardless of where you live. Send the request from the email address on the account, or tell us enough to locate the records another way, and we will confirm receipt and respond within the period your local law allows. If we decline a request, we will say why and how to appeal it. We do not sell personal information, and we do not use it to build advertising profiles.