Privacy Policy

Last updated: December 16, 2025

Introduction

VibeInsight (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and services.

By using VibeInsight, you agree to the collection and use of information in accordance with this policy.

Information We Collect

Account Information

  • • Email address (used for authentication and notifications)
  • • Name (optional, for display purposes)
  • • Profile image (optional, from OAuth providers)
  • • Team and role information
  • • Account creation and last login timestamps
  • • Login count for usage analytics

Usage Data

  • • Dashboard pages and components you create
  • • Data source connections and configurations
  • • Chat exploration sessions and messages
  • • Analytics tracking of feature usage and interactions
  • • Error logs and performance metrics
  • • Page views, clicks, and navigation patterns

Data Sources

  • • Database connection strings (encrypted)
  • • CSV file data you upload
  • • Google Sheets OAuth tokens (encrypted)
  • • Data snapshots and cached query results
  • • Schema information from connected databases

Technical Information

  • • IP address and browser information
  • • Device type and operating system
  • • Session tokens and authentication data
  • • Cookies and local storage preferences
  • • API usage logs and response times

How We Use Your Information

Service Provision

  • • Authenticate and manage your account
  • • Process and display your data
  • • Generate insights and analytics
  • • Sync data across your team

Communication

  • • Send authentication emails
  • • Notify about data changes
  • • Team invitation emails
  • • Service updates and notifications

Analytics & Improvement

  • • Track feature usage patterns
  • • Monitor application performance
  • • Identify and fix bugs
  • • Improve user experience

Security & Compliance

  • • Prevent unauthorized access
  • • Detect fraudulent activity
  • • Maintain audit logs
  • • Comply with legal requirements

Third-Party Services

Authentication Providers

We use third-party OAuth providers for secure authentication:

  • Google OAuth: For sign-in and Google Sheets access
  • NextAuth.js: For session management

Analytics Services

We use analytics services to understand how our application is used:

  • Mixpanel: For behavioral analytics and user tracking
  • Mailmodo: For email analytics and campaign tracking

Email Services

We use email services for transactional communications:

  • Mailjet: For sending authentication emails, notifications, and team invitations

Data Storage & Processing

We use cloud services for data storage and processing:

  • Vercel: For application hosting and deployment
  • PostgreSQL: For primary data storage
  • Google Cloud Platform: For data backups and processing

Data Security

Encryption

  • • All sensitive data (database credentials, OAuth tokens) is encrypted at rest
  • • Data transmission uses HTTPS/TLS encryption
  • • Google Sheets tokens are encrypted using AES encryption

Access Controls

  • • Role-based access control within teams
  • • Secure authentication with session management
  • • Regular security audits and monitoring

Data Isolation

  • • Team data is strictly isolated and not shared between organizations
  • • Dynamic tables for Google Sheets data with unique identifiers
  • • Secure deletion of data when sources are disconnected

Data Retention

Account Data

Retained while your account is active and for 30 days after deletion.

Usage Analytics

Retained for up to 2 years for service improvement purposes.

Data Sources

Retained until you disconnect the data source or delete your account.

Email Logs

Retained for 90 days for delivery tracking and troubleshooting.

Your Rights

Access & Export

Request a copy of your personal data in a portable format.

Correction

Update or correct inaccurate personal information.

Deletion

Request deletion of your account and associated data.

Portability

Download your dashboard data and configurations.

To exercise these rights, please contact us at privacy@vibeinsight.com. We will process your request within 30 days.

Cookies and Local Storage

Essential Cookies

Required for basic functionality:

  • • Session authentication tokens
  • • User preferences and settings
  • • CSRF protection tokens

Analytics Cookies

Help us understand usage patterns and improve our service:

  • • Page view tracking
  • • Feature usage analytics
  • • Performance monitoring

Analytics tracking is essential for service improvement and cannot be disabled.

Local Storage

Stored locally in your browser:

  • • Dashboard layout preferences
  • • Analytics counter values
  • • User interface settings

Updates to This Policy

We may update this Privacy Policy from time to time. When we do, we will:

  • • Update the “Last updated” date at the top of this page
  • • Notify you via email if there are material changes
  • • Post a notice in our application for significant updates
  • • Give you an opportunity to review changes before they take effect

Your continued use of VibeInsight after any changes indicates your acceptance of the updated Privacy Policy.

Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us:

Email: privacy@vibeinsight.com

Support: support@vibeinsight.com

General Inquiries: hello@vibeinsight.com

We will respond to privacy-related inquiries within 30 days.

© 2025 VibeInsight. All rights reserved.

XS