Your Privacy Matters

Privacy
Policy

Last updated: December 21, 2025

At Navlens, we are committed to protecting your privacy and ensuring transparency about how we collect, use, and safeguard your information. This Privacy Policy explains our data practices for both our users (you) and the visitors to websites using our analytics services.

GDPR & CCPA Compliant

We respect user privacy and comply with major data protection regulations worldwide.

1. Information We Collect

We collect information to provide and improve our analytics services. This includes:

Account Information:

  • Email address and name when you register
  • Billing information for paid subscriptions
  • Communication preferences

Analytics Data:

  • Website visitor interactions (clicks, scrolls, mouse movements)
  • Session recordings and heatmap data
  • Form interaction data (anonymized)
  • Page view and navigation patterns

Technical Data:

  • Browser type and version
  • Device type and screen resolution
  • IP addresses (anonymized after processing)
  • Cookies and similar tracking technologies

2. How We Use Your Information

We use the collected information for the following purposes:

  • Providing Services: Generating heatmaps, session recordings, and analytics reports
  • Account Management: Processing subscriptions and communicating about your account
  • Service Improvement: Analyzing usage patterns to enhance our platform
  • Security: Detecting and preventing fraud, abuse, and security incidents
  • Legal Compliance: Meeting regulatory requirements and responding to legal requests

We do NOT sell your personal information to third parties.

3. Data We Collect via Tracking Script

When our tracking script is installed on your websites, we collect:

Automatically Collected:

  • Click coordinates and element information
  • Scroll depth and patterns
  • Mouse movement paths
  • Form field interactions (without actual input values)
  • Session duration and page navigation

Privacy by Design:

  • All password and payment fields are automatically masked
  • Sensitive input patterns (emails, phones) are detected and anonymized
  • You can add custom masking using CSS classes
  • IP addresses are hashed and not stored in plain text

4. Data Sharing & Third Parties

We share data only in these limited circumstances:

Service Providers:

  • Cloud hosting (Vercel, Supabase) for infrastructure
  • ClickHouse for analytics data storage
  • Payment processors (PayHere) for billing

Legal Requirements:

  • When required by law, subpoena, or court order
  • To protect our rights, privacy, safety, or property

Business Transfers:

  • In connection with a merger, acquisition, or sale of assets

All service providers are bound by confidentiality agreements and data processing terms.

5. Your Rights (GDPR & CCPA)

Depending on your location, you may have the following rights:

Access & Portability:

  • Request a copy of your personal data
  • Export your analytics data in common formats

Correction & Deletion:

  • Correct inaccurate information
  • Request deletion of your data ("right to be forgotten")

Restriction & Objection:

  • Restrict processing of your data
  • Object to processing for marketing purposes

Withdraw Consent:

  • Withdraw consent at any time where processing is based on consent

To exercise these rights, contact us at navlensanalytics@gmail.com

6. Data Retention

We retain data based on your subscription plan and legal requirements:

Analytics Data:

  • Free Plan: 14 days
  • Starter Plan: 30 days
  • Pro Plan: 90 days
  • Enterprise Plan: 1 year

Account Data:

  • Retained while your account is active
  • Deleted within 30 days of account closure

Backup Data:

  • May be retained in encrypted backups for up to 90 days after deletion

You can request earlier deletion by contacting support.

7. Cookies & Tracking Technologies

We use cookies and similar technologies for:

Essential Cookies:

  • Authentication and session management
  • Security and fraud prevention

Analytics Cookies:

  • Understanding how visitors use our dashboard
  • Improving our services based on usage patterns

Preferences:

  • Remembering your settings and preferences

You can control cookies through your browser settings. Our tracking script uses localStorage for session management on your tracked websites.

8. Security Measures

We implement industry-standard security measures:

  • Encryption: All data transmitted using TLS 1.3
  • Access Controls: Role-based access and two-factor authentication
  • Infrastructure: Secure cloud hosting with regular security audits
  • Data Isolation: Customer data is logically separated
  • Monitoring: 24/7 security monitoring and incident response

Despite our efforts, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.

9. International Data Transfers

Your data may be transferred to and processed in countries outside your residence. We ensure appropriate safeguards:

  • Standard Contractual Clauses (SCCs) for EU data transfers
  • Data Processing Agreements with all service providers
  • Compliance with applicable data protection laws

By using our Service, you consent to these transfers.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on this page
  • Updating the "Last Updated" date
  • Sending an email notification for significant changes

Your continued use of the Service after changes constitutes acceptance of the updated policy.

Privacy Concerns?

If you have questions about our privacy practices or want to exercise your data rights, please reach out to our privacy team.