1. What we collect
We collect the minimum needed to run your account and the API:
| Data | When | Why |
|---|---|---|
| Email address, name, password (hashed, never stored in plain text) | Account registration | Create and secure your account, log you in |
| API key (stored only as a SHA-256 hash — the full key is shown once and never recoverable by us) | Registration / key regeneration | Authenticate your API requests |
| API request metadata: endpoint, timestamp, rate-limit counters | Every API call | Enforce plan limits, prevent abuse, basic usage analytics |
| Billing and payment details | Subscribing to a paid plan | Processed entirely by Paddle.com (see Section 3) — we never receive your card number |
| Session cookie (random token, HTTP-only) | Logging into the account dashboard | Keep you signed in; contains no personal data itself |
| Enterprise inquiry details (name, company, use case, contact info) | Submitting the "Get a quote" form | Follow up on your enterprise request |
We do not use tracking cookies or third-party advertising pixels on newspulse.io.
2. How we use it
- To provide, maintain, and secure the Service, including enforcing rate limits per your plan;
- To communicate with you about your account, billing, or material changes to the Service;
- To respond to support and enterprise sales inquiries;
- To detect and prevent fraud, abuse, or violations of our Terms of Service.
We do not sell your personal data, and we do not use it to train third-party models.
3. Who we share it with
We use a small number of service providers (subprocessors) to run NewsPulse.io:
- Paddle.com Market Limited — our payment processor and Merchant of Record for all subscriptions. Paddle collects and processes your payment details directly; see Paddle's Privacy Policy.
- Our infrastructure providers (database, cache, and application hosting) — process data on our behalf solely to run the Service, under standard hosting agreements.
We do not share your data with anyone else except where required by law, to enforce our Terms, or with your consent.
4. Data retention
We keep account and billing-relevant data for as long as your account is active, and for a reasonable period after closure for legal, tax, and dispute-resolution purposes (typically 3 years). Revoked API keys and their usage history are kept for audit purposes rather than deleted outright. Aggregated, non-identifying usage statistics may be kept indefinitely.
5. Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, or to object to certain processing. To exercise any of these rights, contact us at support@newspulse.io. We'll respond within the timeframe required by applicable law.
6. International transfers
Our infrastructure and service providers may process data outside your home country. Where required, we rely on appropriate safeguards (such as standard contractual clauses) for these transfers. [Confirm hosting region(s) and add specifics if you serve EU/UK customers.]
7. Children's privacy
The Service is intended for businesses and developers, not children. We do not knowingly collect personal data from anyone under 16.
8. Changes to this policy
We may update this policy from time to time. We'll post the updated version here with a new effective date, and for material changes we'll make reasonable efforts to notify active accounts in advance.
9. Contact
Questions about this policy or your data: support@newspulse.io.