Privacy Policy

Your privacy is our priority. Learn how we protect and handle your personal information.

Last updated: January 1, 2025

Introduction

At PatternSight (operated by AlienNova Technologies), we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our lottery analysis platform and services.

Information We Collect

Personal Information

  • Name and email address when you create an account
  • Payment information processed securely through Stripe
  • Communication preferences and subscription settings
  • Support inquiries and correspondence

Usage Information

  • Prediction history and analysis results
  • Feature usage patterns and preferences
  • Login times and session duration
  • Device information and browser type

Technical Information

  • IP address and geographic location
  • Cookies and similar tracking technologies
  • Error logs and performance metrics
  • Security and fraud prevention data

How We Use Your Information

Service Provision

  • Generate lottery predictions and analysis
  • Manage your account and subscriptions
  • Process payments and billing
  • Provide customer support

Platform Improvement

  • Analyze usage patterns and preferences
  • Improve our algorithms and features
  • Enhance user experience and interface
  • Develop new products and services

Communication

  • Send service updates and notifications
  • Respond to inquiries and support requests
  • Share important account information
  • Provide educational content (with consent)

Security & Compliance

  • Prevent fraud and unauthorized access
  • Comply with legal obligations
  • Enforce our terms of service
  • Protect user safety and platform integrity

Data Security

Our Security Measures

Encryption

All data is encrypted in transit using TLS 1.3 and at rest using AES-256 encryption.

Access Control

Row Level Security (RLS) ensures users can only access their own data.

Payment Security

Payment processing handled by Stripe, a PCI DSS Level 1 certified provider.

Regular Audits

Regular security audits and penetration testing to identify vulnerabilities.

Information Sharing

We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:

Service Providers

We work with trusted third-party service providers (like Stripe for payments, Supabase for database services) who help us operate our platform. These providers are bound by strict confidentiality agreements.

Legal Requirements

We may disclose information when required by law, court order, or government regulation, or to protect our rights, property, or safety.

Business Transfers

In the event of a merger, acquisition, or sale of assets, user information may be transferred as part of the business transaction.

Your Privacy Rights

⚖️ ATTORNEY REVIEW REQUIRED

The following GDPR and CCPA provisions require review by a licensed privacy attorney to ensure full compliance with current regulations and case law.

You have the following rights regarding your personal information:

Access & Portability

Request a copy of your personal data and export your prediction history in standard formats (JSON, CSV).

Correction

Update or correct inaccurate personal information through your account settings or by contacting support.

Deletion

Request deletion of your account and associated data, subject to legal retention requirements (30-day grace period).

Opt-out

Unsubscribe from marketing communications while maintaining essential service notifications.

GDPR Rights (European Union Residents)

If you are a resident of the European Union, you have additional rights under the General Data Protection Regulation (GDPR):

Right to Access (Article 15)

You have the right to obtain confirmation that we are processing your personal data and to access that data. We will provide a copy of your data within 30 days of your request.

Right to Rectification (Article 16)

You have the right to correct inaccurate personal data and to have incomplete personal data completed. Changes will be implemented within 30 days.

Right to Erasure / "Right to be Forgotten" (Article 17)

You have the right to request deletion of your personal data when it is no longer necessary for the purposes for which it was collected, subject to legal retention requirements for financial records (7 years).

Right to Data Portability (Article 20)

You have the right to receive your personal data in a structured, commonly used, machine-readable format (JSON or CSV) and to transmit it to another data controller.

Right to Object (Article 21)

You have the right to object to processing of your personal data for direct marketing purposes or where processing is based on legitimate interests.

Right to Restrict Processing (Article 18)

You have the right to restrict processing of your personal data in certain circumstances, such as when you contest the accuracy of the data.

Right to Lodge a Complaint

You have the right to lodge a complaint with your local supervisory authority if you believe our processing of your personal data violates GDPR. In the EU, you can find your data protection authority at edpb.europa.eu.

To exercise any GDPR rights, please contact our Data Protection Officer at: privacy@patternsight.app

We will respond to your request within 30 days and provide verification of your identity before processing.

CCPA Rights (California Residents)

If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA):

Right to Know

You have the right to request disclosure of the categories and specific pieces of personal information we have collected about you over the past 12 months, including:

  • Categories of personal information collected
  • Sources from which the information was collected
  • Business or commercial purpose for collecting the information
  • Categories of third parties with whom we share personal information
  • Specific pieces of personal information we collected about you

Right to Delete

You have the right to request deletion of personal information we have collected from you, subject to certain legal exceptions (e.g., completing transactions, detecting security incidents, complying with legal obligations).

Right to Opt-Out of Sale

We do NOT sell your personal information. However, California law requires us to provide a "Do Not Sell My Personal Information" link. If our practices change, we will update this policy and provide an opt-out mechanism.

Do Not Sell My Personal Information

Right to Non-Discrimination

You have the right to not be discriminated against for exercising any of your CCPA rights. We will not deny goods or services, charge different prices, provide different quality of service, or suggest you will receive different pricing or quality based on your exercise of CCPA rights.

Authorized Agent Requests

You may designate an authorized agent to submit requests on your behalf. The authorized agent must provide proof of authorization, and we may require you to verify your identity directly with us.

To exercise any CCPA rights, please contact us at: privacy@patternsight.app or call toll-free: 1-800-555-0199

We will respond to verifiable requests within 45 days. For complex requests, we may extend this period by an additional 45 days with notice.

Categories of Personal Information We Collect (CCPA Disclosure)

CategoryExamplesCollected
IdentifiersName, email, IP address, device IDYes
Commercial InformationPurchase history, subscription tierYes
Internet ActivityBrowsing history, feature usage, clicksYes
Geolocation DataIP-derived location (city/state level)Yes
InferencesPreferences, behavior patterns, interestsYes
Financial InformationPayment card details (via Stripe only)No (Stripe)
Sensitive Personal InfoSocial Security, health data, biometricsNo

Cookies and Tracking

We use cookies and similar technologies to enhance your experience and analyze platform usage:

Essential Cookies

Required for basic platform functionality, authentication, and security. These cannot be disabled.

Analytics Cookies

Help us understand how users interact with our platform to improve performance and user experience.

Preference Cookies

Remember your settings and preferences to provide a personalized experience.

International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place:

  • Standard Contractual Clauses approved by the European Commission
  • Adequacy decisions for countries with equivalent data protection laws
  • Certification schemes and codes of conduct
  • Regular assessment of data protection measures

Data Retention

We retain your information for as long as necessary to provide our services and comply with legal obligations:

  • Account Information: Retained while your account is active and for 30 days after deletion
  • Prediction History: Retained for the duration of your subscription plus 1 year
  • Payment Records: Retained for 7 years for tax and accounting purposes
  • Support Communications: Retained for 3 years for quality assurance

Data Breach Notification Procedures

Security Incident Response

We take data breaches seriously and have established procedures to detect, respond to, and notify affected parties in accordance with GDPR and CCPA requirements.

Our Breach Response Process

1

Detection & Assessment

Immediate identification and containment of the breach within 1 hour of discovery. Assessment of affected data and potential impact.

2

Containment & Remediation

Immediate action to stop the breach, secure affected systems, and prevent further unauthorized access within 4 hours.

3

User Notification

Notification to affected users within 72 hours via email, including details of the breach, data affected, and protective measures to take.

4

Regulatory Notification

Notification to relevant supervisory authorities (EU DPAs, California Attorney General) within 72 hours as required by GDPR/CCPA.

What We Will Tell You

If a breach occurs that affects your personal data, our notification will include:

  • Description of the nature of the breach (what happened and when)
  • Categories and approximate number of affected users and data records
  • Likely consequences of the breach and potential impact on you
  • Measures we have taken or will take to address the breach and mitigate harm
  • Contact information for our Data Protection Officer and further inquiries
  • Recommended actions you should take to protect yourself (e.g., password changes, credit monitoring)

Your Rights After a Breach

If your personal data is compromised in a breach, you have the right to:

  • Request detailed information about what specific data of yours was affected
  • Request immediate deletion of your account and all associated data
  • File a complaint with your supervisory authority (GDPR) or Attorney General (CCPA)
  • Seek compensation for damages resulting from the breach
  • Receive free identity theft protection services if financial data was compromised

Report a Security Concern

If you believe you have discovered a security vulnerability or data breach affecting PatternSight, please report it immediately:

Security Email: security@patternsight.app

Privacy Email: privacy@patternsight.app

We appreciate responsible disclosure and will acknowledge your report within 24 hours and provide updates on our investigation.

Children's Privacy

PatternSight is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information promptly.

Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will:

  • Notify you of material changes via email or platform notification
  • Update the "Last Updated" date at the top of this policy
  • Provide a summary of key changes when significant updates are made
  • Give you the opportunity to review changes before they take effect

Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us:

Email

privacy@patternsight.app

support@patternsight.app

Mailing Address

AlienNova Technologies
Attn: Privacy Officer
123 Innovation Drive
San Francisco, CA 94105
United States