Privacy Policy
Last updated: January 16, 2025
🔒 Compliance Statement
GDPR Compliant
CAN-SPAM Compliant
CCPA Compliant
Mailgun AUP Compliant
1. Introduction
Welcome to UpVocab ("we", "our", "us"). This Privacy Policy explains how we collect, use, share, and protect your personal information when you use our services, including our email communications powered by Mailgun email service provider.
2. Information We Collect
2.1 Personal Information
- Account Information: Name, email address, company name, phone number
- Communication Data: Email content, preferences, interaction history
- Technical Data: IP address, device information, browser type, operating system
- Usage Data: Email opens, clicks, engagement metrics, service usage patterns
2.2 Email Service Provider Information
We use Mailgun as our email service provider. When you interact with our emails, Mailgun may collect:
- Email delivery and bounce information
- Email open and click tracking data
- Anti-spam and security scanning results
- IP addresses and device information
3. How We Use Your Information
- Service Delivery: Process and deliver email communications
- Communication: Send transactional emails, notifications, and marketing messages (with consent)
- Analytics: Analyze email performance and user engagement
- Compliance: Ensure adherence to anti-spam laws and regulations
- Security: Protect against fraud, spam, and security threats
- Legal Obligations: Comply with applicable laws and regulations
4. Email Communications & Consent
⚠️ Important: Consent Requirements
We only send marketing emails to individuals who have provided explicit consent through:
- Double opt-in subscription forms
- Clear and unambiguous consent checkboxes
- Explicit verbal or written consent
4.1 Types of Emails
- Transactional Emails: Account confirmations, password resets, service notifications
- Marketing Emails: Promotional content, newsletters, product updates (requires opt-in)
- Service Emails: Important service updates, policy changes, security alerts
4.2 Unsubscribe Rights
Every marketing email includes an unsubscribe link. You can opt out at any time by:
5. Data Sharing & Third Parties
5.1 Mailgun Service Provider
We share necessary data with Mailgun to provide email services, including:
- Email addresses and content for delivery
- Engagement metrics for analytics
- Bounce and delivery information
Mailgun processes this data according to their Privacy Policy and Data Processing Agreement.
5.2 Other Third Parties
We may share data with:
- Analytics Providers: To understand service usage and performance
- Security Services: To protect against spam and fraud
- Legal Authorities: When required by law or to protect rights and safety
6. International Data Transfers
Your data may be transferred to and processed in countries outside your jurisdiction, including the United States where Mailgun operates. We ensure appropriate safeguards are in place, including:
- Standard Contractual Clauses (SCCs)
- Data Processing Agreements
- Adequate protection measures
7. Data Retention
We retain personal data for as long as necessary to provide services and comply with legal obligations:
- Active subscribers: Until unsubscribe or account deletion
- Transactional data: 7 years for legal compliance
- Marketing data: 3 years after last engagement
- Legal records: As required by applicable law
8. Your Rights
Under applicable privacy laws (GDPR, CCPA), you have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your personal data
- Portability: Receive your data in a structured format
- Objection: Object to processing based on legitimate interests
- Restriction: Limit how we process your data
- Withdraw Consent: Opt out of marketing communications
9. Security
We implement industry-standard security measures to protect your data:
- Encryption in transit and at rest
- Access controls and authentication
- Regular security audits and monitoring
- Incident response procedures
- Staff training on data protection
10. Children's Privacy
Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email or through our website. The "Last updated" date reflects the most recent changes.
12. Contact Information
For questions about this Privacy Policy or to exercise your rights, contact us at:
📋 Record of Processing Activities
We maintain detailed records of our data processing activities as required by GDPR Article 30. For more information, contact our Data Protection Officer at bondarenkosv13@gmail.com.