Privacy Policy
Last updated: March 9, 2026
Introduction
Testimonix ("we," "us," or "our") operates the website testimonix.io and related services. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform.
By using Testimonix, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use our services.
What Data We Collect
Account Information
When you create an account, we collect your name, email address, and password. If you sign up via a third-party provider (e.g., Google), we receive your name, email, and profile picture from that provider.
Testimonial Content
We store the testimonials you collect through our platform, including text content, video recordings, reviewer names, photos, and any metadata associated with them (e.g., timestamps, ratings, job titles).
Usage Data
We automatically collect information about how you interact with our service, including pages visited, features used, browser type, device information, IP address, and referring URLs.
Payment Information
When you subscribe to a paid plan, payment details (credit card number, billing address) are collected and processed directly by Stripe. We never store your full card number on our servers.
How We Use Your Data
- To provide, maintain, and improve our services
- To process transactions and send related billing information
- To send transactional emails (account confirmation, password resets, billing receipts)
- To respond to support requests and communicate with you
- To detect, prevent, and address technical issues or abuse
- To analyze usage patterns and improve user experience
- To enforce our Terms of Service
We do not sell your personal data to third parties. We do not use your testimonial content for advertising purposes.
Cookies & Tracking
We use essential cookies to keep you logged in and remember your preferences. We may use analytics cookies (e.g., via Vercel Analytics) to understand how users interact with our site. These cookies do not track you across other websites.
You can configure your browser to refuse cookies, though some features of the service may not function properly without them.
Third-Party Services
We share data with the following trusted providers, each with their own privacy policies:
- Supabase — Authentication and database hosting. Your account data and testimonial content are stored in Supabase-managed infrastructure.
- Vercel — Website hosting and edge delivery. Vercel may process request logs including IP addresses.
- Stripe — Payment processing. Stripe handles all credit card data under PCI DSS compliance. We only receive a token and billing summary.
We may also use analytics or error-tracking services. We will update this section if additional providers are added.
Data Retention
We retain your account data for as long as your account is active. If you delete your account, we will remove your personal data within 30 days, except where retention is required by law (e.g., billing records).
Testimonial content you have collected is deleted when your account is deleted, unless it has been embedded on third-party websites via our widget (cached versions may persist in CDN caches for up to 24 hours).
Data Security
We implement industry-standard security measures, including encrypted connections (TLS), secure password hashing, and access controls. However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
Your Rights (GDPR)
If you are located in the European Economic Area (EEA) or the United Kingdom, you have the following rights under the GDPR:
- Access — Request a copy of the personal data we hold about you.
- Rectification — Request correction of inaccurate data.
- Erasure — Request deletion of your personal data ("right to be forgotten").
- Portability — Request your data in a structured, machine-readable format.
- Restriction — Request that we limit processing of your data.
- Objection — Object to processing based on legitimate interests.
To exercise any of these rights, contact us at hello@testimonix.io. We will respond within 30 days.
Children's Privacy
Our service is not intended for children under 16 years of age. We do not knowingly collect personal data from children. If you become aware that a child has provided us with personal data, please contact us so we can take appropriate action.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the new policy on this page and updating the "last updated" date. Continued use of the service after changes constitutes acceptance of the revised policy.
Contact Us
If you have questions about this Privacy Policy or your personal data, please contact us:
- Email: hello@testimonix.io
- Website: testimonix.io