Privacy Policy

Information We Collect

When you use FlixFolio, we collect and process:

  • Email address and profile information from Google OAuth for authentication
  • Portfolio content including personal information, projects, education, experience, and skills
  • Theme preferences and customization settings
  • Usage analytics including page views, interaction data, and performance metrics
  • Payment information processed through secure payment providers
  • Portfolio draft data stored in local storage for auto-save functionality
  • Session data for authentication state management

How We Use Your Information

  • To create and maintain your FlixFolio account
  • To generate and host your portfolio websites
  • To process credit purchases and portfolio creation transactions
  • To provide draft auto-save functionality
  • To track portfolio credits and usage
  • To send service updates and announcements
  • To monitor and improve platform performance
  • To provide customer support and resolve issues
  • To ensure platform security and prevent abuse

Data Storage and Security

We implement industry-standard security measures to protect your data:

  • All data is stored securely in Supabase databases with encryption at rest
  • Authentication is handled through secure OAuth providers
  • All communications are encrypted using HTTPS
  • Regular security audits and updates are performed
  • Local storage is used only for temporary draft data
  • Access to user data is strictly controlled and monitored

Third-Party Services

We use the following third-party services:

  • NextAuth.js for authentication management
  • Google OAuth for user authentication
  • Supabase for database and storage
  • Vercel for hosting and deployment
  • Payment processors for handling transactions
  • Analytics tools for performance monitoring

Each third-party service has its own privacy policy and data handling practices. We carefully select providers that maintain high security standards.

Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Delete your account and associated data
  • Export your portfolio data
  • Opt-out of non-essential communications
  • Withdraw consent for data processing

Data Processing Locations

Your data is processed and stored in:

  • Primary hosting: Vercel's global infrastructure
  • Database: Supabase servers in EU/US regions
  • Analytics: Processed in compliance with GDPR
  • Backups: Encrypted and stored in multiple secure locations

Cookie Policy

We use the following types of cookies:

  • Essential: Authentication and security
  • Functional: Theme preferences and draft saving
  • Analytics: Anonymous usage tracking (optional)
  • Session: Temporary data during your visit

Security Measures

  • 256-bit SSL/TLS encryption for all data transfer
  • Regular security audits and penetration testing
  • Multi-factor authentication support
  • Real-time monitoring for suspicious activities
  • Automated backup systems with encryption
  • Strict access controls for employee data access

Contact Us

For questions about these terms, please contact hi@hextastudio.in