Privacy Policy

We appreciate your interest in Appstract (“we,” or “us”), our website at https://www.appstract.co (the “Site”), our software applications, and other services or related websites provided by us and on which a link to this Privacy Policy is displayed, and all other communications with individual employees though from written or oral means, such as email or phone (collectively, together with the Site, our “Service”).

This Privacy Policy (“Policy”) describes the information that we gather on or through the Service, how we use and disclose such information, and the steps we take to protect such information. By visiting the Site, or by purchasing or using the Service, you accept the privacy practices described in this Policy.

This Policy is incorporated into and is subject to, the Appstract Terms of Service. Capitalized terms used but not defined in this Policy have the meaning given to them in the Appstract Terms of Service.

Definitions

Client: A legal entity represented by a natural or legal person who has accepted this Privacy Policy.

Client Data: Files and any other digital data and information, which is subjected to the Appstract Services or otherwise inserted to the Appstract platform by the Client or End-consumer.

Consumption Fee: A fee paid to Appstract based on the usage of Appstract Services.

Public Area: The area of the Site that can be accessed both by End-consumers, without needing to log in.

End-consumer: A natural person using the Appstract Service functionalities through Client applications.

1. The Information We Collect on the Service

Appstract collects different types of information from or through the Service. The legal bases for Appstract’s processing of personal data are primarily that the processing is necessary for providing the Service in accordance with Appstract’s Terms of Service and that the processing is carried out in Appstract’s legitimate interests, which are further explained in the section “How We Use the Information We Collect” of this Policy. We may also process data upon your consent, asking for it as appropriate.

1.1 End-consumer-provided Information

When you use the Service, as an End-consumer, you may provide, and we may collect Personal Data. Examples of Personal Data include name, email address, mailing address, mobile phone number or behavioral information. Personal Data also includes other information, such as geographic area or preferences, when any such information is linked to information that identifies a specific individual. You may provide us with Personal Data in various ways on the Service. For example, when you interact with other End-consumers through the Service, or send us customer service -related requests.

1.2 Information Collected by Clients

Appstract has no direct relationship with the individuals whose Personal Data it hosts as part of Client Data. Each Client is responsible for providing notice to its customers and third persons concerning the purpose for which Client collects their Personal Data and how this Personal Data is processed in or through the Service as part of Client Data.

1.3 “Automatically Collected” Information

When an End-consumer uses the Service, we may automatically record certain information about the End-consumer by using various types of technology, including cookies. This “automatically collected” information may include IP address or other device address or ID, web browser and/or device type, the web pages or sites visited just before or just after using the Service, the pages or other content the End-consumer views or interacts with on the Service, and the dates and times of the visit, access, or use of the Service. We also may use these technologies to collect information regarding End-consumer’s interaction with messages, such as whether the End-consumer opens, clicks on, or e.g. forwards a message. This information is gathered from all End-consumers.

1.4 Information from Other Sources

We may obtain information, including Personal Data, from third parties and sources other than the Service, such as our partners, advertisers, credit rating agencies, and Integrated Services. If we combine or associate information from other sources with Personal Data that we collect through the Service, we will treat the combined information as Personal Data in accordance with this Policy.

2. How We Use the Information We Collect

We use the information that we collect in providing the service and to maintain the relationship between you, the Client and Appstract.

2.1 Operations

We use the information – other than Client Data – to operate, maintain, enhance and provide all features of the Service, to provide the services and information that you request, to respond to comments and questions and to provide support to users of the Service. We process Client Data solely in accordance with the directions provided by the applicable Client or End-consumer.

2.2 Communications

We may use an End-consumer’s email address or other information – other than Client Data – to contact that End-consumer (i) for administrative purposes such as customer service, to address intellectual property infringement, right of privacy violations or defamation issues related to the Client Data or Personal Data posted on the Service or (ii) with updates on promotions and events, relating to products and services offered by us and by third parties we work with.

2.3 Improvements

We use the information to understand and analyze the usage trends and preferences of End-consumers, to improve the Service, and to develop new products, services, features, and functionality. Should this purpose require Appstract to process Client Data, then the data will only be used in anonymized or aggregated form.

2.4 Tracking Technologies and Cookies

We use automatically collected information and other information collected on the Service through cookies and similar technologies to: (i) personalize our Service, such as remembering a End-consumer’s information so that the End-consumer will not have to re-enter it during a visit or on subsequent visits; (ii) provide customized advertisements, content, and information; (iii) monitor and analyze the effectiveness of Service and third-party marketing activities; (iv) monitor aggregate site usage metrics such as, but not limited to, the total number of pages viewed and shared experiences initiated; and (v) track entries, submissions, and status in any promotions or other activities on the Service.

2.5 Google Analytics

We might use Google Analytics e.g. to measure and evaluate access to and traffic in the Public Area of the Site and create user navigation reports for our Site administrators. Google operates independently from us and has its own privacy policy, which we strongly suggest you review. Google may use the information collected through Google Analytics to evaluate End-consumers’ activity on our Site. For more information, see Google Analytics Privacy and Data Sharing.

We take measures to protect the technical information collected by our use of Google Analytics. The data collected will only be used on a need to know basis to resolve technical issues, administer the Site and identify visitor preferences; but in this case, the data will be in non-identifiable form. We do not use any of this information to identify End-consumers.

3. To Whom We Disclose Information

Except as described in this Policy, we will not intentionally disclose the Personal Data or Client Data that we collect or store on the Service to third parties without the consent of the applicable End-consumer or Client. We may disclose information to third parties if you consent to us doing so, as well as in the following circumstances:

3.1 Unrestricted Information

Any information that you voluntarily choose to include in a Public Area of the Service, such as a public profile page, will be available to any Visitor or End-consumer who has access to that content.

3.2 Service Providers

We work with third-party service providers who provide the website, application development, hosting, maintenance, and other services for us. These third parties may have access to, or process Personal Data or Client Data as part of providing those services for us. We limit the information provided to these service providers to that which is reasonably necessary for them to perform their functions, and our contracts with them require them to maintain the confidentiality of such information.

3.3 Non-Personally Identifiable Information

We may make certain automatically-collected, aggregated, or otherwise non-personally-identifiable information available to third parties for various purposes, including (i) compliance with various reporting obligations; (ii) for business or marketing purposes; or (iii) to assist such parties in understanding our Clients’, End-consumers’ interests, habits, and usage patterns for certain programs, content, services, and/or functionality available through the Service.

3.4 Compliance, Law Enforcement and Legal Process

We may disclose Personal Data or other information if required to do so by law or in the good-faith belief that such action is necessary to comply with applicable laws, in response to a facially valid court order, judicial or other government subpoena or warrant, or to otherwise cooperate with law enforcement or other governmental agencies.

We also reserve the right to disclose Personal Data or other information that we believe, in good faith, is appropriate or necessary to (i) take precautions against liability, (ii) protect ourselves or others from fraudulent, abusive, or unlawful uses or activity, (iii) investigate and defend ourselves against any third-party claims or allegations, (iv) protect the security or integrity of the Service and any facilities or equipment used to make the Service available, or (v) protect our property or other legal rights, enforce our contracts, or protect the rights, property, or safety of others.

3.5 Change of Ownership

Information about End-consumers, including Personal Data, may be disclosed and otherwise transferred to an acquirer, successor or assignee as part of any merger, acquisition, debt financing, sale of assets, or similar transaction, as well as in the event of an insolvency, bankruptcy, or receivership in which information is transferred to one or more third parties as one of our business assets and only if the recipient of the End-consumer Data commits to a Privacy Policy that has terms substantially consistent with this Privacy Policy.

Client Data may be physically or electronically transferred to an acquirer, or successor or assignee as part of any merger, acquisition, debt financing, sale of assets, or similar transaction, as well as in the event of an insolvency, bankruptcy, or receivership in which information is transferred to one or more third parties as one of our business assets, for the sole purpose of continuing the operation of the Service, and only if the recipient of the Client Data commits to a Privacy Policy that has terms substantially consistent with this Privacy Policy.

4. Your Choices

You have a number of rights (choices) that you may exercise.

4.1 Access, Correction and Deletion

We respect your privacy rights and provide you with reasonable access to the Personal Data that you may have provided through your use of the Services. If you wish to access or amend any other Personal Data we hold about you or to request that we delete or transfer any information about you that we have obtained from an Integrated Service, you may contact us as set forth in the “How to Contact Us” section. At your request, we will have any reference to you deleted or blocked in our database.

Please note that while any changes you make will be reflected in active user databases instantly or within a reasonable period of time, we may retain all information you submit for backups, archiving, prevention of fraud and abuse, analytics, satisfaction of legal obligations, or where we otherwise reasonably believe that we have a legitimate reason to do so.

You may decline to share certain Personal Data with us, in which case we may not be able to provide to you some of the features and functionality of the Service.

At any time, you may object to the processing of your Personal Data, on legitimate grounds, except if otherwise permitted by applicable law. If you believe your right to privacy granted by applicable data protection laws has been infringed upon, please contact Appstract’s Data Protection Officer at legal@appstract.co. You also have a right to lodge a complaint with data protection authorities.

This provision does not apply to Personal Data that is part of Client Data. In this case, the management of the Client Data is subject to the Client’s own Privacy Policy, and any request for access, correction or deletion should be made to the Client responsible for the uploading and storage of such data into the Service.

4.2 Opting out from Commercial Communications

If you receive commercial emails from us, you may unsubscribe at any time by following the instructions contained within the commercial email or by sending an email to the address provided in the “How to Contact Us” section.

Please be aware that if you opt-out of receiving commercial email from us or otherwise modify the nature or frequency of promotional communications you receive from us, it may take up to fifteen (15) business days for us to process your request. Additionally, even after you opt-out from receiving commercial messages from us, you will continue to receive administrative messages from us regarding the Service.

Appstract has no direct relationship with the Client’s customers or third party whose Personal Data it may process on behalf of a Client. An individual who seeks access, or who seeks to correct, amend, delete inaccurate data or withdraw consent for further contact should direct his or her query to the Client or End-consumer they deal with directly. If the Client requests Appstract to remove the data, we will respond to its request within thirty (30) days. We will delete, amend or block access to any Personal Data that we are storing only if we receive a written request to do so from the Client who is responsible for such Personal Data unless we have a legal right to retain such Personal Data.

The Client will be charged for the cost of this. We reserve the right to retain a copy of such data for archiving purposes or to defend our rights in litigation. Any such request regarding Client Data should be addressed as indicated in the “How to Contact Us” section and include sufficient information for Appstract to identify the Client or its customer or third party and the information to delete or amend.

4.3 Navigational Information

You may opt-out from the collection of navigation information about your visit to the Site by Google Analytics by using the Google Analytics Opt-out feature.

5. Third-Party Services

The Service may contain features or links to websites and services provided by third parties. Any information you provide on third-party sites or services is provided directly to the operators of such services and is subject to those operators’ policies, if any, governing privacy and security, even if accessed through the Service. We are not responsible for the content or privacy and security practices and policies of third-party sites or services to which links or access are provided through the Service. We encourage you to learn about third parties’ privacy and security policies before providing them with information.

6. Minors and Children’s Privacy

Protecting the privacy of especially young children is important. Our Service is not directed to or specifically intended for children, however it is likely that people under the age of 18 will use the Service.. All control, usage and application of the Service in a minor and children perspective  is the sole responsibility of the Client (who are in control of e.g. the access) and we do not technically distinguish on data handling or rights based on age. 

7. Data Security

Appstract follows generally accepted industry standards to protect all information submitted to us, both during transmission and once we receive it. We maintain appropriate administrative, technical and physical safeguards to protect Personal Data against accidental or unlawful destruction, accidental loss, unauthorized alteration, unauthorized disclosure or access, misuse, and any other unlawful form of processing of the Personal Data in our possession. This includes, for example, firewalls, password protection and other access and authentication controls. We use SSL technology to encrypt data during transmission through the public internet, and we also employ application-layer security features to further anonymize Personal Data. However, no method of transmission over the Internet, or method of electronic storage, can be claimed to be 100% secure. We cannot ensure or warrant the security of any information you transmit to us or store on the Service, and you do so at your own risk. We also cannot guarantee that such information may not be accessed, disclosed, altered, or destroyed by breach of any of our physical, technical, or managerial safeguards. If you believe your Personal Data has been compromised, we urge you to contact us as stated in section 13: “How to Contact Appstract.

If we learn of a security systems breach, we will inform you and the authorities of the occurrence of the breach in accordance with applicable law.

8. Data Retention

We only retain the Personal Data collected from an End-consumer for as long as the Client’s account is active or otherwise for a limited period of time as long as we need it to fulfill the purposes for which we have initially collected it unless otherwise required by law. We will retain and use information as necessary to comply with our legal obligations, resolve disputes, and enforce our agreements.

Billing information is retained for a period of 5 years as of their provision to Appstract in accordance with the Danish accounting and taxation laws. Information on legal transactions between Client and Appstract is also retained for a period of 5 years as of their provision to Appstract in accordance with the general limitation period set for civil claims in the Danish General Part of the Civil Code Act.

9. Settings

Although we may allow you to adjust your privacy settings to limit access to certain Personal Data, please be aware that no security measures are perfect or impenetrable. We are not responsible for circumvention of any privacy settings or security measures on the Service. Additionally, we cannot control the actions of other users with whom you may choose to share your information. Further, even after information posted on the Service is removed, caching and archiving services may have saved that information, and other users or third parties may have copied or stored the information available on the Service. We cannot and do not guarantee that information you post on or transmit to the Service will not be viewed by unauthorized persons.

10. Data Transfer

We may transfer, process and store Personal Data we collect through the Services in centralized databases and with service providers located in the U.S. The U.S. may not have the same data protection framework as the country from which you may be using the Services. When we transfer Personal Data to the U.S., we will protect it as described in this Privacy Policy.

The Service is hosted in Germany. We will comply with the European Union’s General Data Protection Regulation (Regulation (EU) 2016/679, hereinafter “GDPR”) requirements providing adequate protection for the transfer of personal information from Europe to the U.S. Also, we may transfer your data to the U.S., the EEA, or other countries or regions deemed by the European Commission to provide adequate protection of personal data in connection with storage and processing of data, fulfilling your requests, and operating the Service.

11. Data Controller and Data Processor

Appstract does not own, control or direct the use of any of the Client Data stored or processed by a Client or End-consumer via the Service (e.g. chat). Only the Client or End-consumers are entitled to access, retrieve and direct the use of such Client Data. Appstract is largely unaware of what Client Data is actually being stored or made available by a Client or End-consumer to the Service and does not directly access such Client Data except as authorized by the Client, or as necessary to provide Services to the Client and its End-consumers.

Because Appstract does not collect or determine the use of any Personal Data contained in the Client Data and because it does not determine the purposes for which such Personal Data is collected, the means of collecting such Personal Data, or the uses of such Personal Data, Appstract is not acting in the capacity of data controller in terms of the European Union’s General Data Protection Regulation (Regulation (EU) 2016/679, hereinafter “GDPR”) and does not have the associated responsibilities under the GDPR. Appstract should be considered only as a processor on behalf of its Clients and End-consumers as to any Client Data containing Personal Data that is subject to the requirements of the GDPR. Except as provided in this Privacy Policy, Appstract does not independently cause Client Data containing Personal Data stored in connection with the Services to be transferred or otherwise made available to third parties, except to third party subcontractors who may process such data on behalf of Appstract in connection with Appstract’s provision of Services to Clients. Such actions are performed or authorized only by the applicable Client or End-consumer.

The Client or the End-consumer is the data controller under the Regulation for any Client Data containing Personal Data, meaning that such party controls the manner such Personal Data is collected and used as well as the determination of the purposes and means of the processing of such Personal Data.

Appstract is not responsible for the content of the Personal Data contained in the Client Data or other information stored on its servers (or its subcontractors’ servers) at the discretion of the Client or End-consumer nor is Appstract responsible for the manner in which the Client or End-consumer collects, handles disclosure, distributes or otherwise processes such information.

12. Updates to this Policy

Kindly revisit this Policy periodically to stay aware of any changes to our Policy, as we might update it from time to time. If we modify the Policy, we will make it available through the Service, and indicate the date of the latest revision, and will comply with applicable law. Your continued use of the Service after the revised Policy has become effective indicates that you have read, understood and agreed to the current version of the Policy.

13. How to Contact Appstract

Please contact us with any questions or comments about this Policy, your Personal Data, our use and disclosure practices, or your consent choices by email at support@Appstract.com.

If you have any concerns or complaints about this Policy or your Personal Data, you should  contact our Data Protection Officer by email at legal@appstract.co.

The Appstract Team, 2025