Plexosoft is a platform that empowers creators, freelancers, and digital entrepreneurs to turn attention into clients. For those who want to create impact online but struggle to convert visibility into real income.

Privacy Policy

Privacy Policy

Last updated: 2026-02-15

Software developed by Plexotrade LLC — V2.4.3

Plexosoft™ (the Service): This Privacy Policy outlines how we collect, use, disclose, and safeguard your personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable laws. As seen on: GDPR Compliance

Contact and Data Controller Information

The data controller responsible for processing your personal data in connection with this Service is specified in our Legal Notice / Impressum.

• View Legal Notice / Impressum for full controller and contact details.

If you have any questions about this Privacy Policy, our data practices, or if you wish to exercise your data protection rights, please contact us via our contact form:

• Open contact form

Behavioral Tracking, Analytics, and Marketing Technologies

We use cookies, analytics tools, and tracking technologies such as Meta Pixel, Google Pixel, Google Tag Manager, and Google Analytics. These tools help us understand how visitors use our website, improve performance, and deliver more relevant content and offers.

This may include information about the pages you visit, buttons or offers you interact with, forms or lead magnets you submit, and steps you take during checkout. When you subscribe, download a resource, or place an order, these interactions may be associated with your profile—only with your explicit consent.

We use this data to personalize your browsing experience, recommend content aligned with your interests, and measure the effectiveness of our marketing campaigns on platforms such as Meta (Facebook and Instagram) and Google.

All tracking technologies are activated only with your consent, and you may withdraw that consent at any time using the cookie settings or unsubscribe links provided in our communications.

For a full list of cookies and tracking tools we use, please visit our Cookies Declaration. You may update your preferences at any time through Manage Cookies .

We honor consent choices made through our cookie tools and, where required by law, do not set non-essential cookies or similar technologies unless you have provided your consent.

0. User Data Agreement

By using our services, you acknowledge and understand the data practices described in this Privacy Policy. Certain processing activities rely on consent where required by law, while others are based on contractual necessity, legal obligations, or legitimate interests as explained below.

We use cookies to enhance site functionality, analyze traffic, and support personalized marketing to improve your experience. Please visit Cookies Declaration to learn further about the exact cookies we collect, how we use them, and how you can view them in your browser settings. For more Manage Cookies.

1. Newsletter, Programs, and Solutions

When you sign up for our newsletter, programs (funnels), or solutions (lead magnets), we may collect personal information such as your name, surname, email address, and phone number.

We use this information to provide you with free content, special offers, and other valuable materials, as well as to send marketing content tailored to your interests.

We do not sell your personal data to third parties. We only use your information for the purposes described here and take the necessary steps to protect your privacy.

2. Personal Data We Collect

We collect the following types of personal data to facilitate your use of our services:

  • Name and contact information (e.g., email address)
  • Payment information (processed via Stripe)
  • Account login credentials (encrypted)
  • Content you create or upload (e.g. Comments)
  • Technical data (e.g., IP address, browser type, device information)
  • Interaction data (e.g., pages visited, features used, time spent on site)

For more info refer to: Cookies

3. How We Use Your Data and Legal Bases

We use your personal data for the following purposes and under the following legal bases:

  • To provide and operate the Service, process transactions, and manage your account (performance of a contract, Art. 6(1)(b) GDPR).
  • To provide customer support and respond to inquiries (performance of a contract or legitimate interests, Art. 6(1)(b) and 6(1)(f) GDPR).
  • To improve and customize our services, perform analytics, and prevent abuse (legitimate interests, Art. 6(1)(f) GDPR).
  • To send you newsletters and marketing communications, where required with your consent (consent, Art. 6(1)(a) GDPR; or legitimate interests, Art. 6(1)(f) GDPR, where permitted).
  • To comply with legal obligations, such as tax and accounting requirements (legal obligation, Art. 6(1)(c) GDPR).
  • To prepare, conduct, and manage business relationships and sales processes, including internal research based on publicly available or user-provided information, internal sales notes and preparation activities, documentation of communications, qualification assessments, and internal operational record-keeping. Personal data may be accessed by authorized internal personnel (including sales, customer support, or operational staff) strictly on a need-to-know basis where necessary to perform their roles (legitimate interests, Art. 6(1)(f) GDPR).

For more info refer to: Cookies

3.1. Additional Disclosures for Residents of Certain U.S. States

If you are a resident of certain U.S. states, such as California, Colorado, Connecticut, Virginia, or Utah, you may have additional rights regarding your personal information under applicable state privacy laws.

Depending on your state of residence, these rights may include:

  • Right to know/access the categories and specific pieces of personal information we collect, use, and disclose about you.
  • Right to request deletion of your personal information, subject to certain exceptions.
  • Right to correct inaccurate personal information.
  • Right to opt out of the sale or sharing of personal information for targeted advertising, where applicable.
  • Right to non-discrimination for exercising any of your privacy rights.

We do not sell your personal information for money. We may use cookies and similar technologies for analytics and marketing, which may be considered a 'sale' or 'sharing' under certain state laws.

To exercise your U.S. state privacy rights, please contact us at the email provided in the Contact Us section and specify your state of residence and request type.

To exercise any of your data protection rights, please contact us using the details provided in the Contact Us section. We may need to verify your identity before responding to your request.

4. Third-Party Services

We use third-party services to perform certain functions on our behalf. These third parties are carefully selected and are required to comply with GDPR and this Privacy Policy.

  • AWS S3 & CloudFront: Used for secure storage and delivery of digital assets. Data is stored within the European Union or in other locations as permitted by GDPR. As seen on: AWS
  • Heroku: Our platform is hosted on Heroku, which may store your data in the United States or other jurisdictions. As seen on: Heroku
  • Stripe: Handles payment processing. We do not store your credit card information. Stripe's privacy policy applies. As seen on: Stripe
  • Google Services (OAuth, Recaptcha, Analytics, Search Console): We use Google services for authentication, security, analytics, and site indexing. These services may collect data such as your IP address and browsing behavior. As seen on: Google
  • Cloudflare: Used for content delivery network (CDN) services and security purposes, including DDoS protection. Cloudflare may process data such as IP addresses to provide these services. As seen on: Cloudflare
  • Mailchimp: Used for email marketing. We may share your email address and name with Mailchimp for sending promotional emails. See Mailchimp's privacy policy for details. As seen on: Mailchimp
  • EmailJS: Used for sending email notifications and communications. Your email address and message content may be processed by EmailJS. As seen on: EmailJS
  • Redis: Used for managing active user sessions, caching (only our data), and breaking news feeds. Data stored in Redis is managed according to its privacy and security policies. As seen on: Redis
  • GitHub: Used for version control and collaboration on our codebase. If you contribute code or report issues, your contributions and associated data may be stored on GitHub. As seen on: GitHub
  • Rate Limiting Services: We implement IP and session-based rate limiting to protect our platform from abuse. Data such as your IP address and session details may be temporarily stored for these purposes.
  • Database Services (Supabase, PostgreSQL on Heroku, and Others): We could utilize Supabase, PostgreSQL on Heroku, and other database services to store and manage user data, such as account information, content, and transaction records. These services are designed to ensure data integrity and security. For more detailed information on how your data is managed and protected, please refer to their respective privacy policies: Supabase, Heroku PostgreSQL.
  • OpenAI: We use OpenAI's models to process your prompts and generate responses. Your data may be sent to OpenAI and temporarily stored to deliver and improve their services.
  • Together AI: We also integrate Together AI to provide model access and routing. Your data may be processed through Together AI's infrastructure as part of delivering responses.
  • Meta Pixel (Advertising, Analytics, Conversion Tracking): We use Meta Pixel to measure the effectiveness of our advertising campaigns, track user interactions, and deliver more relevant ads across Meta platforms. This tool may collect data such as your IP address, browser type, and on-site actions to optimize ad performance.
  • Google Pixel (Advertising, Analytics, Conversion Tracking): We use Google Pixel to monitor the performance of our advertising campaigns, understand user interactions, and improve the relevance of ads across Google services. This tool may collect data such as your IP address, device information, and browsing activity to enhance campaign measurement and optimize ad delivery.
  • Salesforce (Optional CRM Integration): Our Service may offer an optional integration with Salesforce, a customer relationship management (CRM) platform provided by Salesforce, Inc. This integration is not enabled by default and may be activated at any time by the site administrator depending on operational needs. No data is transmitted to Salesforce unless the integration is actively enabled by the administrator. If activated, certain personal data (such as contact details, interaction data, form submissions, and order-related information) may be transmitted to and processed within Salesforce systems for customer relationship management, sales tracking, support, and internal operations. Users may be able to view within their account dashboard whether their profile and order data are connected to or synchronized with Salesforce, where such functionality is available. Salesforce may process personal data outside the European Economic Area (EEA), including in the United States, subject to appropriate safeguards such as Standard Contractual Clauses. The use of Salesforce is based on our legitimate interests (Art. 6(1)(f) GDPR) and, where applicable, your consent (Art. 6(1)(a) GDPR).

5. Data Security

We implement strong encryption, SSL certificates, and other security measures to protect your data from unauthorized access, disclosure, alteration, or destruction. However, please note that no method of transmission over the Internet or method of electronic storage is 100% secure. See more on: Site's Security

6. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your user experience, perform analytics, and for security purposes (e.g., to manage sessions and rate-limiting). You can manage your cookie preferences through your browser settings or as seen on: Cookies

7. Your Rights Under GDPR

Under GDPR, you have the following rights regarding your personal data:

  • Right to access your data and obtain a copy.
  • Right to rectification of inaccurate or incomplete data.
  • Right to erasure (right to be forgotten).
  • Right to data portability.
  • Right to object to processing or to restrict processing.
  • Right not to be subject to automated decision-making.
  • Right to withdraw consent at any time, without affecting the lawfulness of processing based on consent before its withdrawal.

To exercise any of your data protection rights, please contact us using the details provided in the Contact Us section. We may need to verify your identity before responding to your request.

8. Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes described in this Privacy Policy, including for legal, accounting, or reporting requirements. For example, transaction records may be retained for up to ten (10) years to comply with tax and accounting obligations, while marketing-related data is generally retained until you withdraw your consent or object to processing.

9. Data Breach Notification

In the event of a data breach, we will notify you and the relevant supervisory authority within 72 hours of becoming aware of the breach, in accordance with GDPR requirements.

10. International Data Transfers

Your personal data may be transferred to, and processed in, countries outside of the European Economic Area (EEA) and the United Kingdom, including the United States, where some of our service providers are located. Where such transfers occur, we rely on appropriate safeguards such as adequacy decisions, or Standard Contractual Clauses approved by the European Commission, and we take steps to ensure that your data is treated securely and in accordance with this Privacy Policy.

11. Use of Async and Sync Servers

We use both asynchronous (async) and synchronous (sync) servers to handle various aspects of our platform's operations. Async servers may process tasks such as background jobs and notifications, while sync servers handle immediate user interactions. Data processed by these servers is managed according to this Privacy Policy.

12. SSL Certificates

We use SSL certificates to encrypt data in transit between your browser and our servers, ensuring that your information remains secure.

13. Changes to this Privacy Policy

We may update this Privacy Policy from time to time in response to changing legal, technical, or business developments. We will notify you of any material changes by posting the new Privacy Policy on this page and, where appropriate, notifying you via email.

Artificial intelligence (AI)

Artificial intelligence (AI) is the development of computer systems that can perform tasks typically associated with human intelligence, such as learning, reasoning, problem-solving, and decision-making.

0. AI Moderation and Privacy

  • We implement AI moderation via TogetherAI for user-assistant interactions to maintain safety, prevent abuse, and meet legal and compliance obligations.
  • Where harmful or high-risk content is detected, we may log the interaction for review. These logs are restricted to authorized staff and are not used for advertising or unrelated analytics.
  • Legal basis (GDPR): our legitimate interests in safety and platform integrity (Art. 6(1)(f)) and, where applicable, compliance with legal obligations (Art. 6(1)(c)).
  • Data we may process for moderation: message content, timestamps, user/account identifiers, model outputs, taxonomy labels (S1-S14), confidence scores, spans, and routing metadata.
  • Retention: moderation logs are retained only as long as necessary for safety, audit, and legal purposes. Requests to erase data may be restricted where retention is required for compliance or the establishment, exercise, or defense of legal claims.
  • Automated decisions and review: automated checks may temporarily restrict content or access. You can request human review and appeal moderation outcomes.
  • International transfers: our providers (including TogetherAI) may process data outside your country. We rely on appropriate safeguards (e.g., Standard Contractual Clauses) and require confidentiality and security measures.
  • We apply an S1-S14 taxonomy to tag harmful interactions. Exact label coverage may vary by moderation model:
  • Your rights: you may have rights of access, rectification, restriction, objection, and portability. Some rights (e.g., erasure) may be limited where retention is necessary for legal or safety reasons.
  • Zero-tolerance policy for Child Sexual Exploitation (CSE): related content is blocked, preserved for evidence, and may be reported to competent authorities.

1. Data Collection & Storage

  • Your interactions are sent to third-party AI providers (OpenAI and TogetherAI) and are stored temporarily on our systems.
  • We use Redis (a third-party cache) to improve performance and keep the chat responsive.
  • Interactions, summaries, and ascending summaries may be automatically deleted after 31 days to keep the system running smoothly.
  • In rare cases, unsafe interactions may be stored for longer to meet security or legal obligations.
  • Your general site interactions—such as comments, likes, newsletter signup, funnels, lead magnets or contact messages—may be processed by our AI systems to understand how the site functions and to support business decision-making.

2. Lawful Basis for Processing

We process personal data on the basis of consent, performance of a contract, legitimate interests (e.g., service improvement, security), and/or legal obligations, as applicable.

3. Data Sharing

  • Your data may be stored or processed by third-party providers to deliver and improve their services when relevant.
  • We do not sell your personal data.
  • We may disclose information if required by law or to protect the rights, property, and safety of users or the public.

4. Data Retention

  • Stored interactions are automatically deleted after 31 days, unless retention is required for security, compliance, or legal reasons.
  • Aggregated or anonymized data may be retained for analytics and service improvement.

5. Security

  • We apply hardcoded policies and multi-layer safety mechanisms, including AI moderation.
  • No system is 100% secure; we cannot guarantee absolute security.

6. Managing Your Data

  • You can access, export, and delete your conversations using the chat interface, where available.
  • For additional requests, contact us using the details provided on the site.

7. Your Rights Under GDPR

Under GDPR, you have the following rights regarding your personal data:

  • Right to access your data and obtain a copy.
  • Right to rectification of inaccurate or incomplete data.
  • Right to erasure (right to be forgotten).
  • Right to data portability.
  • Right to object to processing or to restrict processing.
  • Right not to be subject to automated decision-making.
  • Right to withdraw consent at any time, without affecting the lawfulness of processing based on consent before its withdrawal.

8. Children's Data

The Service is not directed to children under 13 years of age, and we do not knowingly collect personal data from children under 13. In the European Economic Area (EEA), where the age of digital consent may range from 13 to 16 depending on the country, we do not knowingly process personal data of children below the age of consent set by local law without verifiable parental consent.

9. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be indicated on Plexosoft; continued use constitutes acceptance of the updated Policy.

14. Contact Us

If you have any questions or concerns about this Privacy Policy or our data practices, please contact us:

• Open contact form

We use cookies to enhance your browsing experience and deliver more relevant content. This may include remembering the pages you visit, the buttons or features you engage with, and any offers or forms you interact with so we can personalize your experience.

Read our Privacy Policy and Terms of Service