Privacy Policy
This Privacy Policy explains how Get Request Tech, LLC., a Delaware limited liability company ("Get Request," "we," "us," or "our"), collects, uses, stores, discloses, and protects information when you visit our websites, create an account, or use our APIs, applications, infrastructure, and related services (collectively, the "Service").
This Privacy Policy applies to information that Get Request processes in connection with the Service.
By using the Service, you acknowledge the practices described in this Privacy Policy.
1. Information We Process
The information Get Request processes generally falls into two categories:
- information relating directly to our users, accounts, subscriptions, and use of the Service; and
- information transmitted through the Service by our customers as part of API requests and responses.
1.1 Account Information
When you create or manage a Get Request account, we may collect information such as:
- your name;
- email address;
- company or organization name;
- account identifiers;
- login and authentication information;
- subscription plan;
- account settings; and
- communications you send to us.
1.2 Usage and Technical Information
When you access or use the Service, we may automatically collect technical and operational information such as:
- IP address;
- browser type;
- device information;
- operating system;
- timestamps;
- pages or features accessed;
- API usage;
- request counts;
- error information;
- authentication events;
- security events;
- system logs; and
- diagnostic and performance information.
We use this information primarily to operate, secure, monitor, maintain, troubleshoot, and improve the Service.
1.3 Customer API Data
When customers use Get Request, information contained in API traffic may pass through or be stored by the Service.
This may include:
- API request bodies;
- API response bodies;
- HTTP headers;
- query parameters;
- request methods;
- request and response metadata;
- endpoint information;
- timestamps;
- IP addresses;
- destination information;
- status codes; and
- related logs.
We refer to this information collectively as "Customer Data."
Get Request does not determine the contents of Customer Data. Our customers determine what information their applications transmit through the Service.
Customer Data may contain personal information if a customer or its application includes such information in an API request, response, header, parameter, or other transmitted data.
Customers are responsible for determining what information they transmit through Get Request and for ensuring that their collection and transmission of Customer Data complies with applicable law.
1.4 Payment and Billing Information
Payments for paid Get Request subscriptions are processed by Stripe or another payment processor identified by us.
Payment card information is collected and processed directly by the payment processor. Get Request does not store complete payment card numbers, CVVs, or other full payment credentials on its servers or databases.
We may receive limited billing information from our payment processor, such as:
- billing name;
- billing address;
- subscription status;
- payment status;
- transaction identifiers;
- customer identifiers;
- payment method type;
- last four digits of a payment card where provided by the processor; and
- invoice or transaction information.
We use this information to administer subscriptions, billing, account access, and financial records.
2. How We Use Information
We may use information collected through the Service to:
- create and administer accounts;
- authenticate users;
- provide and operate the Service;
- receive, relay, retain, inspect, manage, and replay API requests;
- enforce subscription and usage limits;
- process subscriptions and billing;
- provide customer support;
- communicate about accounts and the Service;
- monitor performance and reliability;
- diagnose technical issues;
- detect, investigate, and prevent fraud, abuse, unauthorized access, and security incidents;
- maintain and improve the Service;
- develop new functionality;
- comply with applicable laws and legal obligations;
- enforce our Terms of Use and other agreements;
- protect the rights, security, and integrity of Get Request, our customers, and third parties; and
- establish, exercise, or defend legal claims.
Where appropriate, we may use aggregated or de-identified information for analytics, product development, capacity planning, security, and improving the Service.
3. Our Role When Processing Customer Data
The role Get Request plays under privacy law depends on the type of information and the circumstances in which it is processed.
For information relating directly to Get Request accounts, billing, website visitors, security, and our own business operations, Get Request may act as the entity that determines why and how that information is processed.
For personal information contained in Customer Data that we process solely to provide the Service on a customer's instructions, the customer generally determines the purpose and means of that processing, and Get Request acts as a service provider or processor on the customer's behalf where those concepts apply under applicable law.
Customers are responsible for:
- determining whether personal information may lawfully be transmitted through the Service;
- providing appropriate privacy notices to their users;
- obtaining required consents or other legal authorization;
- responding to requests from individuals relating to Customer Data; and
- configuring their systems to avoid transmitting information that should not be processed through Get Request.
Where reasonably required and applicable, Get Request may assist customers with requests concerning personal information contained in Customer Data.
4. Sensitive Information
Get Request is not intended to serve as a repository for highly sensitive or specially regulated information unless we expressly agree otherwise in writing.
As provided in our Terms of Use, customers should not intentionally transmit or store through Get Request information such as:
- complete payment card information;
- CVVs;
- protected health information subject to HIPAA;
- long-lived passwords;
- private cryptographic signing keys;
- master or root credentials for any system;
- government-issued identification numbers; or
- other information requiring specialized regulatory protections that Get Request has not expressly agreed to provide.
This does not restrict the ordinary transmission of request-scoped authentication data — such as bearer tokens, API keys, session tokens, or signature headers — present in the normal course of API traffic routed through the Service; capturing that data is a core function of the Service. Customers are responsible for redacting, rotating, excluding, encrypting, or otherwise appropriately protecting sensitive information before transmitting it through the Service.
5. How We Disclose Information
We do not sell Customer Data.
We may disclose personal information in the following circumstances.
5.1 Service Providers
We may engage service providers that help us operate Get Request, including providers of:
- cloud infrastructure and hosting;
- database and data storage;
- payment processing;
- logging and observability;
- security and fraud prevention;
- email and communications;
- customer support;
- analytics;
- authentication; and
- other technical or operational services.
These providers may process information only as necessary to perform services for Get Request and subject to applicable contractual and legal requirements.
5.2 Payment Providers
We share information necessary to process subscriptions and payments with Stripe or other payment providers used by Get Request.
Payment providers process payment information according to their own applicable privacy policies and terms.
5.3 Professional Advisors
We may disclose information to lawyers, accountants, auditors, insurers, financial institutions, and other professional advisors where reasonably necessary for legitimate business, financial, compliance, or legal purposes.
5.4 Legal Requirements
We may disclose information if we reasonably believe disclosure is necessary to:
- comply with applicable law;
- respond to lawful legal process;
- comply with a court order, subpoena, or governmental request;
- investigate fraud, abuse, or security threats;
- protect the rights, property, or safety of Get Request, our users, or others; or
- establish, exercise, or defend legal claims.
Where legally permitted and reasonably practicable, we may notify an affected customer before disclosing Customer Data in response to a governmental or legal request.
5.5 Business Transfers
If Get Request is involved in a merger, acquisition, financing, restructuring, bankruptcy, sale of assets, or similar transaction, information may be disclosed or transferred as part of that transaction.
Any successor's handling of personal information will remain subject to applicable law and any commitments applicable to the transferred information.
6. Sale and Targeted Advertising
As of the Effective Date of this Privacy Policy, Get Request does not sell personal information or Customer Data for monetary consideration.
Get Request also does not use Customer Data to provide third-party targeted advertising.
If our practices materially change in a way that creates additional privacy rights under applicable law, we will update this Privacy Policy and provide any required choices or notices.
7. Cookies and Similar Technologies
Get Request may use cookies, local storage, and similar technologies when you visit our website or use the Service.
These technologies may be used to:
- keep users signed in;
- maintain sessions;
- remember account preferences;
- provide security functionality;
- prevent fraud or abuse;
- understand Service performance; and
- understand how users interact with our websites and products.
Some cookies or technologies may be provided by third-party service providers.
Where required by applicable law, we will provide appropriate choices regarding non-essential cookies or similar technologies.
You may also be able to control cookies through your browser settings. Disabling certain cookies may affect the operation of the Service.
8. Data Retention
We retain information only for as long as reasonably necessary for the purposes described in this Privacy Policy, subject to applicable legal, operational, security, and contractual requirements.
Customer Data
While an account is active, Customer Data may be retained according to the retention period applicable to the customer's subscription plan.
Following account termination or deletion, Get Request will generally delete Customer Data from active systems within 30 days, unless retention is required or permitted for legal, security, fraud-prevention, dispute-resolution, or other legitimate purposes.
Residual copies may remain temporarily in backups, disaster-recovery systems, or system logs until those systems are overwritten or deleted through our normal processes.
Account and Business Records
Certain account, billing, transaction, security, and business records may be retained for longer periods where reasonably necessary to:
- comply with tax, accounting, and legal requirements;
- prevent fraud or abuse;
- enforce agreements;
- resolve disputes; or
- maintain appropriate business records.
9. Security
Get Request uses reasonable technical, administrative, and organizational measures designed to protect information against unauthorized access, loss, misuse, alteration, or disclosure.
These measures may include access controls, encryption in transit, authentication controls, monitoring, logging, infrastructure protections, and other security practices appropriate to the nature of the Service.
However, no internet-based service, transmission method, or storage system can be guaranteed to be completely secure.
Customers are responsible for securing their own accounts, API keys, authentication credentials, applications, infrastructure, and integrations.
If you believe your Get Request account or Customer Data has been compromised, contact us promptly at privacy@getrequest.io.
10. International Data Processing
Get Request is operated by a company established in the United States.
Information may therefore be processed or stored in the United States or in other locations where Get Request or its service providers operate.
Privacy and data-protection laws in those locations may differ from the laws in your jurisdiction.
Where applicable law requires specific safeguards for international transfers of personal information, Get Request will take appropriate steps required by applicable law.
11. Legal Bases for Processing
Where laws such as the GDPR or similar frameworks require a legal basis for processing personal information, Get Request may rely on one or more of the following, depending on the circumstances:
- Contract: processing necessary to provide the Service or administer an account;
- Legitimate interests: operating, securing, improving, and protecting Get Request and its users, where those interests are not overridden by applicable privacy rights;
- Legal obligations: processing necessary to comply with applicable law;
- Consent: where we specifically request and rely upon consent; or
- Other legal bases available under applicable law.
Where Get Request processes Customer Data solely on behalf of a customer, the customer is responsible for determining the appropriate legal basis for its collection and processing of that information.
12. Your Privacy Rights
Depending on where you live and the laws that apply, you may have rights concerning your personal information.
These may include the right to:
- confirm whether we process your personal information;
- access personal information about you;
- obtain a copy of certain personal information;
- correct inaccurate information;
- request deletion of information;
- request portability of certain information;
- object to or restrict certain processing;
- withdraw consent where processing is based on consent;
- opt out of certain sales, targeted advertising, or profiling where applicable; and
- appeal certain decisions concerning a privacy request where required by law.
We will not unlawfully discriminate against you for exercising applicable privacy rights.
These rights are not absolute and may be subject to exceptions or limitations under applicable law.
13. How to Exercise Your Privacy Rights
To submit a privacy request, contact:
privacy@getrequest.io
Please include enough information for us to understand your request and reasonably verify your identity.
We may request additional information where necessary to verify that a request relates to you or that someone submitting a request on your behalf is authorized to do so.
We will respond within the period required by applicable law.
If applicable law gives you the right to appeal our decision concerning a privacy request, you may submit an appeal by emailing privacy@getrequest.io and stating that your request is an appeal of a previous privacy decision.
We do not require you to create a new Get Request account solely to submit a privacy request.
14. Customer End Users
If your personal information was transmitted to Get Request by one of our customers through an API request, application, or integration, that customer is generally the appropriate party to contact regarding your privacy rights.
Because Get Request processes such information primarily on behalf of its customer, we may direct your request to the relevant customer or ask you to contact that customer directly.
Where applicable, we will reasonably assist our customer in responding to valid privacy requests concerning Customer Data.
15. California Privacy Information
If you are a California resident and applicable California privacy law applies to Get Request's processing of your personal information, you may have rights including the right to:
- know or access certain personal information;
- request deletion;
- request correction;
- receive information about categories of personal information collected and disclosed;
- opt out of certain sales or sharing of personal information;
- limit certain uses of sensitive personal information where applicable; and
- exercise applicable rights without unlawful discrimination.
Get Request does not currently sell personal information or Customer Data for monetary consideration and does not use Customer Data for cross-context behavioral advertising.
You may submit applicable requests using the process described in Section 13 — How to Exercise Your Privacy Rights.
16. European Economic Area, United Kingdom, and Switzerland
Where applicable data-protection law in the European Economic Area, United Kingdom, or Switzerland applies to our processing of your personal information, you may have rights including access, correction, deletion, restriction, objection, portability, and withdrawal of consent.
You may also have the right to lodge a complaint with the data-protection authority responsible for your jurisdiction.
Where Get Request processes Customer Data on behalf of a customer, requests concerning that Customer Data should generally be directed to the customer that collected the information.
17. Children's Privacy
Get Request is intended for developers, development teams, and organizations and is not directed to children.
You must be at least 18 years old, or the age of legal majority applicable to you, to create a Get Request account.
We do not knowingly collect personal information directly from children through account registration.
If you believe that a child has created an account or directly provided personal information to Get Request contrary to this policy, contact us at privacy@getrequest.io.
18. Third-Party Websites and Services
The Service may contain links to or integrate with third-party websites, applications, APIs, or services.
This Privacy Policy does not govern the independent privacy practices of those third parties.
We encourage you to review the privacy policies of third-party services before providing information to them.
19. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes to:
- the Service;
- our data practices;
- our service providers;
- applicable laws; or
- other operational or legal requirements.
When we update the Privacy Policy, we will revise the Effective Date above.
If changes are material, we may provide additional notice through the Service, by email, on our website, or through another reasonable method where appropriate or required by law.
20. Contact Us
If you have questions about this Privacy Policy, our privacy practices, or a request concerning your personal information, contact:
Get Request Tech, LLC.
2093 Philadelphia Pike
Suite #1480
Claymont, DE 19703
United States
Email: privacy@getrequest.io