Legal

Privacy Policy

Last updated August 2, 2026 · Effective August 2, 2026

This Privacy Policy explains how Atomik Digital ("we", "us", "our") collects, uses, discloses, and safeguards personal information when you visit atomikdigital.com, run a free AI visibility audit, create an account, or subscribe to a paid plan (collectively, the "Services").

We are the controller of the personal information described here. You can reach us at info@atomikdigital.com for any privacy question or request.

1. Information we collect

We collect only what we need to deliver and improve the Services:

  • Account data — name, email address, password hash (managed by our authentication provider), company name, company website, and industry.
  • Audit data — the website URL, brand name, and category you submit to the free AI visibility audit, plus the generated audit output.
  • Billing data — subscription plan, billing status, and payment identifiers. Card numbers are collected and stored by our payment processor (Stripe); we never receive or store full card details.
  • Communications — messages you send to us by email and the delivery status of transactional emails we send you.
  • Technical data — IP address, browser and device type, pages viewed, referring URL, and timestamps, collected through server logs and strictly necessary cookies.
  • Consent records — your cookie preferences and the date they were captured.

2. How we use information

  • To create and administer your account and authenticate you.
  • To run AI visibility audits, prompt tracking, and reporting you request.
  • To process subscriptions, renewals, refunds, and cancellations.
  • To send transactional and service messages (receipts, security notices, account and delivery notifications).
  • To send marketing email only where you have opted in or where permitted by law, always with a one-click unsubscribe.
  • To secure the Services, prevent abuse and fraud, and debug problems.
  • To comply with legal, tax, and accounting obligations.

3. Legal bases (EEA/UK)

  • Contract — to provide the Services you sign up for.
  • Legitimate interests — to secure, measure, and improve the Services, and to send service-related communications.
  • Consent — for non-essential cookies, analytics, and marketing email. You may withdraw consent at any time.
  • Legal obligation — for tax, accounting, and lawful requests.

4. AI processing

Audit and visibility features send the brand, website, and category information you provide to third-party large language model providers so we can measure how those models describe your brand. Do not submit confidential information, personal data about other individuals, or regulated data (health, financial account, or government identifiers) into audit fields.

See our AI Disclaimer for the limits of model-generated output.

5. Sharing and subprocessors

We do not sell personal information, and we do not share it for cross-context behavioral advertising. We disclose information to service providers who process it on our behalf under contract:

  • Cloud hosting, database, authentication, and email delivery infrastructure.
  • Stripe, for payment processing and subscription billing.
  • Large language model and AI search providers, for audit and visibility analysis.
  • Professional advisers, and authorities where required by law or to protect our rights.

6. International transfers

Our providers may process data in the United States and other countries. Where personal information moves out of the EEA or UK, we rely on Standard Contractual Clauses or another lawful transfer mechanism.

7. Retention

  • Account and profile data — for the life of your account and up to 24 months after closure.
  • Audit records and reports — up to 24 months, so you can compare visibility over time.
  • Billing and tax records — as long as tax and accounting law requires (typically 7 years).
  • Server and security logs — typically up to 12 months.
  • Cookie consent records — up to 12 months, then re-requested.

8. Your rights

Depending on where you live you may have the right to access, correct, delete, port, restrict, or object to processing of your personal information, and to withdraw consent.

California residents (CCPA/CPRA) may request disclosure of the categories and specific pieces of personal information collected, deletion, correction, and may opt out of sale or sharing — we do not sell or share personal information as those terms are defined. We will not discriminate against you for exercising any right.

To exercise a right, email info@atomikdigital.com from the address on your account, or use the account settings in your dashboard. We respond within 30 days (45 days for CCPA requests, extendable where permitted). You may appeal a decision by replying to our response, and EEA/UK residents may complain to their local supervisory authority.

9. Security

We use encryption in transit (HTTPS/TLS), encryption at rest at the database layer, row-level access controls, scoped service credentials, and least-privilege access for administrators. No method of transmission or storage is completely secure; we cannot guarantee absolute security.

10. Children

The Services are for business use and are not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child provided us data, contact us and we will delete it.

11. Changes and contact

We will post any change to this policy on this page and update the "Last updated" date. Material changes will also be emailed to account holders. Questions or requests: info@atomikdigital.com.

Questions about this policy? Email info@atomikdigital.com.