Privacy Policy

Last updated: March 2026

NextGuard is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information.

Information We Collect

We collect information you provide directly: name, email address, and account credentials. We automatically collect usage data: IP addresses, browser type, pages visited, features used, and scan results. Payment information is processed by Paddle.com and is not stored on our servers.

How We Use Your Information

We use your information to: (a) provide and maintain our services; (b) process transactions and send billing notifications; (c) send security alerts and vulnerability reports; (d) improve our platform and user experience; (e) comply with legal obligations; (f) communicate important updates about our service.

Information Sharing

We do not sell your personal information. We may share data with: (a) Paddle.com for payment processing; (b) email service providers for notifications; (c) law enforcement when required by law. All third-party providers are bound by data processing agreements.

Cookies & Tracking

We use essential cookies for authentication and session management. Analytics cookies help us understand usage patterns. You can control cookie preferences through your browser settings. See our Cookie Policy for details.

Data Retention

We retain your account data for as long as your account is active. Vulnerability scan data is retained according to your plan's history limits. After account deletion, we retain anonymized data for up to 90 days for backup purposes, then permanently delete it.

Your Rights

You have the right to: (a) access your personal data; (b) correct inaccurate data; (c) request deletion of your data; (d) export your data; (e) withdraw consent for non-essential processing. To exercise these rights, contact us at privacy@nextguardhq.com.

Security Measures

We implement industry-standard security measures including encryption in transit (TLS), secure password hashing, JWT-based authentication, and regular security audits. We promptly notify affected users in case of a data breach.

Children's Privacy

NextGuard is not intended for users under 16 years of age. We do not knowingly collect personal information from children.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or through the platform.

Contact Us

For privacy-related inquiries, please contact us at privacy@nextguardhq.com.