IntegrationIQ

Privacy Policy

Last updated: July 29, 2026

IntegrationIQ ("the Service") is operated by IAS Digital Group ("we", "us"). This policy explains what data we collect when you use the Service at integrationiq.io, why we collect it, and the choices you have.

1. Data we collect

  • Account information — your name, email address, and a hash of your password when you register.
  • Connected-platform credentials — when you connect a platform (for example, a Shopify store), we store the OAuth access tokens needed to run your audits. Tokens are encrypted at rest and are never shared with third parties.
  • Integration and audit data — configuration, API responses, and metadata from your connected platforms that the Service analyzes to produce audit results.
  • Billing information — payments are processed by Stripe. We store your subscription status and Stripe customer reference; we never see or store your card number.
  • Usage data — product analytics (via PostHog) and server logs, used to operate, secure, and improve the Service.

2. AI processing

Audit analysis is performed with the help of large language models provided by Anthropic, acting as our data subprocessor. Relevant integration data is transmitted to Anthropic's API solely to generate your audit results. Under Anthropic's commercial terms, this data is not used to train their models.

3. How we use data

We use your data to provide and improve the Service: authenticating you, running the audits you request, billing your subscription, responding to support requests, and keeping the Service secure. We do not sell your data, and we do not share it with third parties except the processors named above (Stripe, Anthropic, PostHog) and where required by law.

4. Cookies and sessions

The Service uses a session token to keep you signed in and a small number of functional cookies. We do not use third-party advertising cookies.

5. Data retention and deletion

We keep your data while your account is active. When you delete your account (or ask us to), we delete your account data, connected-platform tokens, and audit history within 30 days, except where retention is required for legal or accounting purposes. Disconnecting a platform revokes and deletes its stored tokens.

6. Security

All traffic is encrypted in transit with TLS. OAuth tokens are encrypted at rest, passwords are stored only as salted hashes, and access to production systems is restricted and logged.

7. Your rights

You may access, correct, export, or delete your personal data at any time — most of this is available directly in your account settings. For anything else, contact us and we will respond within 30 days.

8. Children

The Service is not directed at children and may not be used by anyone under 16 years of age.

9. Changes

We may update this policy from time to time. Material changes will be announced in the Service or by email before they take effect.

10. Contact

Questions or requests about your data: support@integrationiq.io.