Privacy Policy
Last updated: March 21, 2026
Pontex ("we", "us", or "our") is committed to protecting the privacy of our users. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our platform at pontex.io.
1. Information We Collect
We collect the following categories of information:
- Account information: Name, email address, and organization details provided during registration.
- Deal and business data: Information you enter about deals, contacts, commissions, and documents as part of your brokerage operations.
- Usage data: Pages visited, features used, and general interaction patterns to help us improve the platform.
- Device information: Browser type, operating system, and IP address for security and troubleshooting purposes.
2. How We Use Your Information
We use your information to:
- Provide and maintain the Pontex platform and its features.
- Process your subscription and manage billing.
- Send transactional emails (invitations, notifications, password resets).
- Improve our platform based on aggregated usage patterns.
- Comply with legal obligations and enforce our terms.
We do not sell your personal information to third parties. We do not use your data for advertising purposes.
3. Data Retention
Your active account data is retained for as long as your account is active. When you delete records (deals, contacts, commissions, etc.), they are soft-deleted and permanently purged after 90 days. You may request immediate deletion by contacting us.
If you close your account, all associated data will be permanently deleted within 90 days of account closure.
4. Data Security
We use industry-standard security measures to protect your data, including encryption in transit (TLS), encryption at rest, and row-level security policies to ensure organizational data isolation. Access to production systems is strictly limited and audited.
5. Cookies
Pontex uses only functional cookies that are strictly necessary for the platform to operate. These include authentication session cookies and user preference cookies. We do not use tracking cookies, analytics cookies, or advertising cookies.
6. Third-Party Services
We use the following third-party services to operate the platform:
- Supabase: Database hosting and authentication.
- Stripe: Subscription billing and payment processing.
- Resend: Transactional email delivery.
- Vercel: Application hosting.
Each of these providers has their own privacy policies and is GDPR-compliant.
7. Your Rights (GDPR)
If you are located in the European Economic Area (EEA) or the United Kingdom, you have the following rights under the General Data Protection Regulation (GDPR):
- Right of access: Request a copy of all personal data we hold about you.
- Right to rectification: Request correction of inaccurate or incomplete personal data.
- Right to erasure: Request deletion of your personal data, subject to legal retention requirements.
- Right to data portability: Request an export of your data in a machine-readable format (JSON or CSV).
- Right to restrict processing: Request that we limit how we use your data.
- Right to object: Object to certain types of data processing.
To exercise any of these rights, contact us at privacy@pontex.io. We will respond within 30 days.
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page and updating the "Last updated" date. Continued use of the platform after changes constitutes acceptance of the updated policy.
9. Contact Us
For privacy-related questions or requests, contact us at: privacy@pontex.io