Privacy Policy
Last updated: February 18, 2026
Apexium ("we," "us," or "our") operates the website apexium.team and the Apexium platform. This Privacy Policy explains what information we collect, how we use it, who we share it with, and your rights regarding that information.
By creating an account or using our services you agree to the practices described in this policy. If you do not agree, please do not use the platform.
1. Information We Collect
1.1 Account Information
When you sign up we collect your name, email address, and an encrypted password. If you sign in via a third-party OAuth provider (e.g., Google) we receive the profile information that provider shares.
1.2 Payment Information
All payment processing is handled by Stripe, Inc. We never store your full credit card number on our servers. Stripe may collect your card details, billing address, and other payment-related data directly. Stripe's privacy policy governs their handling of that data.
1.3 Usage Data
We automatically collect information about how you interact with the platform, including pages visited, features used, workflow downloads, credit usage, timestamps, browser type, operating system, IP address, and referring URLs.
1.4 Affiliate and Referral Data
When you arrive on our site through a referral link, we store a first-party cookie (apx_ref) containing the referring affiliate's identifier. This cookie is used solely to attribute commissions to the referring affiliate.
2. How We Use Your Information
- Service Provision — to create and manage your account, process orders, deliver workflows, fulfill Done-For-You service requests, and manage subscriptions and credit balances.
- Communications — to send transactional emails (order confirmations, password resets, subscription updates) and, with your consent, marketing emails about new workflows and platform features.
- Analytics and Improvement — to understand usage patterns, improve the platform experience, and develop new features.
- Fraud Prevention and Security — to detect, prevent, and respond to fraud, abuse, and security incidents.
- Legal Compliance — to comply with applicable laws, regulations, and legal processes.
3. Data Sharing and Third-Party Services
We do not sell your personal information. We share data only with the following categories of service providers, each of which processes data on our behalf under appropriate contractual protections:
- Stripe — payment processing, subscription billing, and fraud detection.
- Supabase — database hosting, authentication, and file storage.
- Resend — transactional and marketing email delivery.
- Sentry — application error tracking and performance monitoring. Sentry may receive technical data such as IP addresses, browser information, and stack traces when errors occur.
- Vercel — application hosting and edge network delivery.
4. Cookies and Tracking Technologies
We use the following cookies:
| Cookie | Purpose | Duration |
|---|---|---|
sb-* | Authentication session (Supabase) | Session / 1 year |
apx_ref | Affiliate referral attribution | 30 days |
We do not use third-party advertising trackers. You can manage cookies through your browser settings, but disabling session cookies will prevent you from logging in.
5. Data Retention
We retain your account data for as long as your account is active. If you delete your account, we will remove your personal information within 30 days, except where we are required to retain it for legal, tax, or audit purposes (typically up to 7 years for financial records). Anonymized, aggregated analytics data may be retained indefinitely.
6. Data Security
We use industry-standard security measures to protect your data, including TLS encryption in transit, encrypted databases at rest, and row-level security policies on all database tables. No method of transmission or storage is 100% secure, so we cannot guarantee absolute security, but we are committed to protecting your information using commercially reasonable safeguards.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access — request a copy of the personal data we hold about you.
- Correction — request that we correct inaccurate or incomplete data.
- Deletion — request that we delete your personal data, subject to legal retention requirements.
- Portability — receive your data in a structured, commonly used format.
- Opt-Out — unsubscribe from marketing emails at any time using the link in the email footer.
To exercise any of these rights, contact us at support@apexium.team. We will respond within 30 days.
8. Children's Privacy
The Apexium platform is not directed at individuals under 18 years of age. We do not knowingly collect personal information from children. If we become aware that a child has provided us with personal data, we will delete it promptly.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date at the top of this page. For material changes, we will notify you by email or through a notice on the platform. Your continued use of the platform after changes are posted constitutes acceptance of the updated policy.
10. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us at:
Email: support@apexium.team