ClearFeedback is operated by clearfeedback.io (“ClearFeedback,” “we,” “us”). This Privacy Policy explains how we collect, use, and share personal information when you use our website, app at app.clearfeedback.io, APIs, embeddable widget, and related services (the “Service”).
1. Who this policy applies to
This policy applies to customers who create an account or use the dashboard (workspace owners and team members). It also describes how we handle end users who submit feedback through a customer’s embedded widget or public boards. For widget submissions, your customer (the workspace administrator) is usually the data controller for that feedback; ClearFeedback acts as a processor on their instructions, except for account and billing data where we are the controller.
2. Information we collect
Account and profile data: email address, display name, password (stored in hashed form via our authentication provider), and sign-in activity.
Workspace and team data: workspace name and settings, team roles, invite emails, in-app notifications, and actions you take in the dashboard.
Feedback and product data: messages, categories (e.g. bug, feature), optional email and name from submitters, page URL, browser/device/environment metadata, screenshots or attachments, assignment, status, priority, comments, and public-roadmap or ideas-board fields when you use those features.
Survey responses: scores, choices, or text submitted through in-product surveys, plus page URL and technical context.
Billing data: subscription status, plan, and billing interval. Payment card details are collected and processed by Polar.sh; we do not store full card numbers.
Communications: emails we send (password reset, team invites, feedback status updates, changelog notifications to subscribers) and delivery metadata.
Usage and technical data: IP address, device/browser type, logs, and security/rate-limiting data needed to operate and protect the Service.
Integrations: if you connect Slack, Linear, Jira, ClickUp, or custom webhooks, we send only the event types you enable (e.g. new feedback) to those services.
3. How we use information
We use personal information to provide, maintain, and improve the Service; authenticate users and manage workspaces; deliver service-related emails; process subscriptions and prevent fraud; provide support; comply with law; and enforce our Terms. We may use aggregated or de-identified data to improve the product. We do not sell personal information.
4. Legal bases (EEA/UK users)
Where UK GDPR or EU GDPR applies, we rely on: contract (providing the Service); legitimate interests (security, product improvement, and proportionate B2B communications); consent where required (e.g. changelog email subscriptions); and legal obligation where applicable. End-user widget data is primarily processed on behalf of our customers as processor.
5. How we share information
We share information with service providers that help us run the Service, including Vercel (hosting), Neon (database), Resend (email), Polar.sh (payments), object storage when configured for screenshots, and authentication infrastructure. We may also share information when required by law, to protect rights and safety, or in connection with a merger or sale of assets, with notice where required by law.
6. International transfers
We and our providers may process data in countries outside your own. Where required, we use appropriate safeguards for transfers from the UK or EEA.
7. Retention
We keep account and workspace data while your account or workspace is active and for a reasonable period afterward for backups, legal compliance, and dispute resolution. You may delete your account from Settings in the dashboard (re-authentication required). Workspace owners may delete a workspace; associated workspace data is removed subject to backup and legal retention requirements. End-user feedback retention is controlled by the workspace administrator.
8. Security
We use technical and organizational measures appropriate to a B2B SaaS product. No method of transmission or storage is completely secure.
9. Your rights and choices
Depending on your location, you may have rights to access, correct, delete, restrict, object to, or port your data, and to withdraw consent where processing is consent-based. You may complain to the UK Information Commissioner’s Office or your local supervisory authority.
Account holders may exercise rights by emailing hello@clearfeedback.io. Widget submitters should contact the organization that operates the site where they submitted feedback. Changelog subscribers may use the unsubscribe link in emails or the unsubscribe page we provide.
10. Cookies and similar technologies
We use cookies and local storage as needed for authentication, session management, and security. A separate marketing site may use additional cookies; see that site’s notice if applicable.
11. Children
The Service is not directed at children under 16. We do not knowingly collect children’s personal information.
12. Changes
We may update this policy. We will post the new version with an updated “Last updated” date and, where appropriate, provide additional notice of material changes.
13. Contact
clearfeedback.io
London, UK
Email: hello@clearfeedback.io
