Privacy Policy

Last updated: April 10, 2026

1. Introduction

Consulti ("we," "us," or "our") operates the consulti.ai website and platform. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services. We are committed to protecting both the data of our registered users and the business professionals whose information appears in our B2B contact database.

2. Information We Collect

2.1 Account Information

When you create an account, we collect your name, email address, and authentication credentials (including via Google OAuth). If you subscribe to a paid plan, payment information is processed securely by Stripe — we do not store your full credit card details.

2.2 Usage Data

We automatically collect information about how you interact with the platform, including pages viewed, searches performed, tools used, features accessed, IP address, browser type, and device information. We use analytics services including PostHog and Google Analytics to understand usage patterns and improve our product.

2.3 B2B Contact Database

Our platform provides access to a database of business professional contact information, including names, business email addresses, job titles, company names, industries, and locations. This data is compiled from two categories of sources:

  • Publicly available information: Business data gathered from company websites, public business registries, professional networking profiles, and publicly listed business directories including Google Maps.
  • Licensed third-party data: Business contact information obtained from licensed data providers who collect and verify B2B data in compliance with applicable data protection laws.

This database contains professional business contact information only. We do not collect or store personal data unrelated to business activities (such as home addresses, personal phone numbers, or social media profiles).

3. How We Use Your Information

  • Provide, operate, and maintain the platform and its features
  • Process transactions and manage your account and subscription
  • Send transactional emails (account confirmations, billing receipts, security alerts)
  • Improve the platform based on usage patterns and feedback
  • Detect and prevent fraud, abuse, and unauthorized access
  • Comply with legal obligations

4. Data Sharing and Third Parties

We do not sell your personal account data to third parties. We share information only with the following categories of service providers that help us operate the platform:

  • Authentication: Supabase (account management and database)
  • Payments: Stripe (subscription billing and payment processing)
  • Hosting: Vercel (website hosting and edge functions)
  • Analytics: PostHog and Google Analytics (usage analytics)
  • Email verification: Third-party verification services used to validate email deliverability

Each provider processes data in accordance with their own privacy policies and our data processing agreements.

5. Cookies and Tracking

We use cookies and similar technologies to maintain your session, remember preferences, and analyze usage. These include:

  • Essential cookies: Required for authentication and core functionality
  • Analytics cookies: Help us understand how visitors use the platform (PostHog, Google Analytics)
  • Marketing cookies: Used for advertising attribution (Meta Pixel, Google Ads)

You can control cookie preferences through your browser settings. Disabling certain cookies may affect platform functionality.

6. Data Security

We implement industry-standard security measures to protect your data, including encryption at rest and in transit (AES-256-GCM), secure authentication protocols, regular security audits, and access controls. However, no method of electronic storage or transmission is 100% secure, and we cannot guarantee absolute security.

7. Data Retention

We retain your account data for as long as your account is active or as needed to provide services. If you delete your account, we will remove your personal data within 30 days, except where retention is required by law or for legitimate business purposes (such as fraud prevention or financial record keeping).

B2B contact data in our database is reviewed and updated regularly. Business professionals may request removal of their information — see our GDPR page for details.

8. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access: Request a copy of the data we hold about you
  • Correction: Request correction of inaccurate data
  • Deletion: Request deletion of your data
  • Portability: Request your data in a machine-readable format
  • Objection: Object to processing of your data for certain purposes

To exercise any of these rights, contact us at privacy@consulti.ai. For GDPR-specific rights and data removal requests, visit our GDPR Compliance page.

9. Children's Privacy

Our platform is intended for business use and is not directed at individuals under 18 years of age. We do not knowingly collect personal data from children.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users of material changes by email or through a notice on the platform. Continued use of the platform after changes constitutes acceptance of the updated policy.

11. Contact

If you have questions about this Privacy Policy or our data practices, contact us at privacy@consulti.ai.