Privacy policy
Last updated: 15 March 2026
dataSights ("we", "us", "our") is committed to protecting your privacy. This policy explains what information we collect, how we use it, and what rights you have in relation to it. Our service is operated by dataSights, 47 Denham Terrace, Brisbane QLD 4121, Australia. If you have questions, contact us at hello@datasights.co.
1. Information we collect
We collect information you provide directly and information collected automatically when you use dataSights.
Information you provide
- Account registration details: name, email address, company name, and password.
- Billing information: payment card details processed by our payment provider (Stripe). We do not store card numbers on our servers.
- Support communications: messages you send us via email or our support portal.
- Connector credentials: OAuth tokens for third-party services you connect (such as Xero, Shopify, HubSpot). These are encrypted at rest.
Information collected automatically
- Usage data: pages visited, features used, sync job logs, and error events.
- Device and browser information: IP address, browser type, operating system.
- Cookies and similar technologies (see Section 3).
2. How we use your information
We use the information we collect to:
- Provide, maintain, and improve the dataSights service.
- Process payments and send billing receipts.
- Send service-related communications (account activation, sync failure alerts, product updates).
- Respond to support requests and troubleshoot issues.
- Monitor for fraud, security incidents, and abuse.
- Analyse aggregate usage patterns to improve product features.
We do not sell your personal information to third parties. We do not use your data to train machine learning models without your explicit consent.
3. Cookies
We use cookies and similar tracking technologies to maintain your session and understand how the service is used.
- Essential cookies: required for authentication and session management. These cannot be disabled.
- Analytics cookies: we use a privacy-respecting analytics service to measure page visits and feature usage. No personal data is shared with advertising networks.
You can control cookie preferences through your browser settings. Disabling essential cookies will prevent you from logging in to dataSights.
4. Third-party services
dataSights integrates with and uses the following categories of third-party services:
- Payment processing: Stripe. Payment card data is handled entirely by Stripe under their own privacy policy.
- Cloud infrastructure: Microsoft Azure and/or Amazon Web Services for hosting, storage, and processing.
- Email delivery: a transactional email provider for delivering notifications and alerts.
- Source connectors: when you connect a third-party service (e.g. Xero, Shopify), we access only the data scopes you authorise via OAuth.
Each third-party provider has their own privacy policy governing their handling of your data. We encourage you to review those policies.
5. Data security
We take reasonable technical and organisational measures to protect your data, including:
- TLS encryption for all data in transit.
- AES-256 encryption for stored connector credentials and sensitive configuration.
- Role-based access controls limiting which staff can access production systems.
- Regular security reviews and vulnerability assessments.
No method of transmission over the internet is 100% secure. If you believe your account has been compromised, please contact us immediately at hello@datasights.co.
6. Data retention
We retain your account data for as long as your account is active. If you close your account, we will delete your personal data within 90 days, except where we are required to retain it for legal or compliance purposes (such as financial records). Sync logs are retained for 30 days.
7. Your rights
Depending on your location, you may have the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate data.
- Request deletion of your personal data.
- Object to or restrict certain processing activities.
- Export your data in a portable format.
To exercise any of these rights, contact us at hello@datasights.co. We will respond within 30 days.
8. Contact
For privacy-related questions or requests:
dataSights47 Denham Terrace
Brisbane QLD 4121
Australia
hello@datasights.co