Privacy Policy

Privacy Policy

EffectiveJanuary 1, 2026UpdatedJanuary 1, 2026Version1.0
Section 01

Introduction

Welcome to Perception X2 ("we," "us," or "our"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you visit our website, use our platform, or engage with our services.

Perception X2 operates an AI-powered platform for communications intelligence, narrative analysis, and reputation management. This policy applies to all users, visitors, and clients ("you" or "your") who interact with our services across all platforms and devices.

We adhere to the highest standards of data protection, including compliance with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable privacy laws. Our commitment to transparency means we will always clearly explain what data we collect and why.

This Privacy Policy is designed to be accessible and easy to understand. We encourage you to read it in full to understand your rights and our practices.

---

Section 02

Information We Collect

We collect several categories of information to provide and improve our services:

- Email address and phone number - Mailing address and billing information - Account credentials and authentication data - Professional affiliations and organizational role

- Browser type, version, and operating system - Device identifiers and hardware information - Pages visited, time spent, and navigation patterns - Referring URLs and exit pages - Click-through rates and interaction metrics

- Communication preferences and settings - Search queries and filter configurations - Report exports and data downloads - API usage logs and integration data

- Feedback and survey responses - Newsletter subscriptions and preferences - Meeting notes and consultation records

- News articles and media mentions - Professional directory listings - Government and public records where legally accessible

We do not collect sensitive personal information such as racial or ethnic origin, political opinions, religious beliefs, health data, or sexual orientation unless explicitly required for specific services and with your explicit consent.

---

Personal Identification Information

- Full name and professional title

Usage and Technical Data

- IP address and geolocation data (country and region level)

Service Interaction Data

- Content you submit for analysis or monitoring

Communication Data

- Support tickets and correspondence

Third-Party Sourced Data

- Publicly available information from social media platforms

Section 03

How We Collect Your Information

We gather information through multiple channels:

- Form submissions and contact requests - Service agreements and contracts - Customer support interactions - Webinar and event registrations

- Server logs and analytics tools - Platform usage monitoring - API request logging - Performance monitoring systems

- Social media APIs (with platform authorization) - News and media monitoring services - Business partner referrals - Professional networking platforms

- Integration data from client systems - Communication content for reputation monitoring - Custom datasets for specialized analysis

We will always inform you at the point of collection about the purpose of data gathering and obtain consent where required by law.

---

Direct Collection

- Account registration and subscription processes

Automated Collection

- Cookies and similar tracking technologies

Third-Party Sources

- Public databases and directories

Client-Provided Data

- Data uploaded for analysis or monitoring

Section 04

How We Use Your Information

We use your information for the following purposes:

- Generating narrative analysis and sentiment reports - Monitoring reputation and media mentions - Delivering automated insights and recommendations - Processing API requests and integrations

- Developing new features and capabilities - Conducting A/B testing and optimization - Improving algorithm accuracy and performance - Debugging and resolving technical issues

- Delivering requested reports and insights - Providing customer support and assistance - Sharing relevant industry information (with consent) - Notifying you of policy changes

- Enforcing our terms of service - Protecting against fraud and abuse - Responding to lawful government requests - Maintaining audit trails for accountability

- Protecting against malicious activity - Ensuring platform integrity - Monitoring for suspicious behavior - Safeguarding client data

We will not use your data for purposes incompatible with those listed above without first obtaining your consent or as permitted by law.

---

Service Delivery

- Providing AI-powered communications intelligence

Platform Improvement

- Analyzing usage patterns to enhance user experience

Communication

- Sending service updates and notifications

Security

- Detecting and preventing unauthorized access

Section 06

Data Sharing and Third Parties

We may share your information in the following circumstances:

- Cloud infrastructure and hosting services - Payment processing providers - Analytics and monitoring tools - Customer support platforms - Communication and delivery services

These providers are contractually bound to protect your data and use it only for the purposes we specify.

- Integration partners whose services you connect to - Referral partners for joint service offerings - Industry collaborators for research purposes

- Comply with applicable laws or regulations - Respond to valid legal process or government requests - Enforce our terms of service and agreements - Protect our rights, property, or safety - Prevent fraud or illegal activity

We do not sell your personal information to third parties for their direct marketing purposes.

---

Service Providers

We engage trusted third-party providers who assist in operating our platform, including:

Business Partners

With your consent, we may share data with:

Business Transfers

In the event of a merger, acquisition, or sale of assets, your data may be transferred as part of the transaction. We will notify you via email and/or a prominent notice on our website of any change in ownership or use of your data.

Aggregated and Anonymized Data

We may share aggregated, anonymized, or de-identified data that cannot reasonably be used to identify you. This data may be used for industry analysis, demographic profiling, and other purposes.

Section 07

International Data Transfers

Your data may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place for all international transfers:

- **Adequacy Decisions:** Where available, we rely on adequacy decisions by the European Commission - **Data Processing Agreements:** All service providers execute DPAs with appropriate transfer provisions - **Binding Corporate Rules:** Where applicable, we rely on BCRs within our corporate group

- Regional data hosting options - Data processing within specified geographic boundaries - Compliance with local data localization requirements - Custom transfer impact assessments

---

Transfer Mechanisms

- **Standard Contractual Clauses (SCCs):** We use EU-approved SCCs for transfers outside the European Economic Area

Data Localization

For clients requiring data residency in specific jurisdictions, we offer:

Transfer Safeguards

We conduct transfer impact assessments to evaluate the legal framework in recipient countries and implement supplementary measures where necessary to ensure an essentially equivalent level of protection.

Section 08

Data Retention

We retain your data only as long as necessary for the purposes described in this policy:

|-----------|------------------|--------| | Account Information | Duration of account + 2 years | Service provision and reactivation | | Usage Data | 24 months | Analytics and improvement | | Communication Records | 3 years | Support and compliance | | Transaction Data | 7 years | Legal and financial compliance | | Marketing Preferences | Until consent withdrawal | Consent management | | API Logs | 12 months | Security and debugging | | Backup Data | 90 days | Disaster recovery |

- When data is no longer needed, it is securely deleted or anonymized - Retention periods are regularly reviewed and updated - Different data types may have different retention requirements based on legal obligations

- Securely deleted using industry-standard methods - Anonymized so that it can no longer be associated with you - Aggregated with other data for statistical purposes

You may request earlier deletion of your data subject to our legal obligations and legitimate business needs.

---

Retention Periods

| Data Type | Retention Period | Reason |

Retention Principles

- Data is retained only for as long as necessary to fulfill the purposes for which it was collected

Deletion and Anonymization

Upon expiration of the retention period, data is either:

Section 09

Data Security

We implement comprehensive security measures to protect your data:

- **Access Controls:** Role-based access with multi-factor authentication - **Network Security:** Firewalls, intrusion detection systems, and DDoS protection - **Monitoring:** 24/7 security monitoring and automated threat detection - **Vulnerability Management:** Regular security assessments and penetration testing

- Confidentiality agreements for all personnel - Access logging and audit trails - Incident response procedures - Regular security reviews and updates

- Physical access controls and surveillance - Environmental controls and redundancy - Disaster recovery and business continuity plans - Regular backup and restoration testing

- Contain the breach and mitigate immediate risks - Assess the scope and impact of the incident - Notify affected individuals within 72 hours where required by law - Report to relevant supervisory authorities as mandated - Implement measures to prevent future occurrences

While we implement robust security measures, no method of transmission or storage is 100% secure. We cannot guarantee absolute security but are committed to protecting your data using industry best practices.

---

Technical Measures

- **Encryption:** AES-256 encryption for data at rest, TLS 1.3 for data in transit

Organizational Measures

- Employee security training and awareness programs

Data Center Security

- SOC 2 Type II certified facilities

Incident Response

In the event of a data breach, we will:

Section 10

Your Rights Under GDPR

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have the following rights:

- The data is no longer necessary for the original purpose - You withdraw consent and there is no other legal ground - You object to processing and there are no overriding legitimate grounds - The data has been unlawfully processed - Erasure is required for compliance with legal obligations

- You contest the accuracy of the data - Processing is unlawful and you oppose erasure - We no longer need the data but you require it for legal claims - You have objected to processing pending verification

---

Right of Access

You have the right to request a copy of the personal data we hold about you and information about how it is processed.

Right to Rectification

You have the right to request correction of inaccurate personal data or completion of incomplete data.

Right to Erasure

You have the right to request deletion of your personal data where:

Right to Restriction

You have the right to request restriction of processing where:

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, and machine-readable format and to transmit it to another controller.

Right to Object

You have the right to object to processing based on legitimate interests or public interest. We will cease processing unless we demonstrate compelling legitimate grounds.

Exercising Your Rights

To exercise any of these rights, please contact us using the details in Section 16. We will respond to your request within 30 days.

Section 11

Your Rights Under CCPA

If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with additional rights:

- Categories of personal information collected - Sources from which information was collected - Business purposes for collecting information - Categories of third parties with whom information is shared

- Completing a transaction or providing a requested service - Detecting security incidents and protecting against malicious activity - Complying with legal obligations - Engaging in certain internal uses compatible with your expectations

- Denying goods or services - Charging different prices or rates - Providing a different level or quality of service - Suggesting that you will receive a different price or rate

---

Right to Know

You have the right to request disclosure of the categories and specific pieces of personal information we have collected about you, including:

Right to Delete

You have the right to request deletion of your personal information, subject to certain exceptions such as:

Right to Opt-Out of Sale

You have the right to opt-out of the sale of your personal information. As stated in Section 6, we do not sell your personal information to third parties for their direct marketing purposes.

Right to Non-Discrimination

We will not discriminate against you for exercising any of your CCPA rights, including:

Right to Correct

You have the right to request correction of inaccurate personal information we maintain about you.

Right to Limit Use of Sensitive Personal Information

You have the right to limit the use and disclosure of sensitive personal information to purposes necessary to perform the services.

Financial Incentive Programs

We do not offer financial incentive programs that require your opt-in or consent to collect personal information.

Exercising Your CCPA Rights

To exercise your CCPA rights, please contact us using the details in Section 16. We will verify your identity before processing your request.

Section 12

Cookies and Tracking Technologies

We use cookies and similar technologies to enhance your experience:

|-------------|---------|----------| | **Essential** | Core platform functionality | Session | | **Functional** | User preferences and settings | 1 year | | **Analytics** | Usage analysis and improvement | 2 years | | **Marketing** | Relevant content delivery | 90 days |

- Authentication and session management - Security and fraud prevention - Load balancing and performance - User interface preferences

- Page view tracking - Feature usage analysis - Performance monitoring - A/B testing measurement

- Our platform - Approved advertising partners - Social media platforms - Content distribution networks

- Browser settings and preferences - Our cookie consent management tool - Opt-out mechanisms provided by analytics partners - Do Not Track (DNT) browser signals

---

Types of Cookies

| Cookie Type | Purpose | Duration |

Essential Cookies

Required for the platform to function properly. These cannot be disabled and include:

Analytics Cookies

Help us understand how visitors interact with our platform. These include:

Marketing Cookies

Used to deliver relevant content and measure campaign effectiveness. These may be set by:

Managing Cookies

You can control cookies through:

Do Not Track Signals

We honor Do Not Track (DNT) signals and will not track, plant cookies, or use advertising when a DNT signal is present.

Section 13

Children's Privacy

Our services are not directed to individuals under the age of 16:

- Our platform is designed for professional and business use - Users must be at least 16 years of age to create an account

- Remove that information from our servers - Terminate any associated accounts - Prevent future collection from minors

---

Age Restrictions

- We do not knowingly collect personal information from children under 16

Parental Rights

If we become aware that we have collected personal data from a child under 16 without verification of parental consent, we will take steps to:

Compliance with COPPA

We comply with the Children's Online Privacy Protection Act (COPPA) and similar legislation worldwide.

Contact for Parental Inquiries

If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately using the details in Section 16.

Section 14

Automated Decision-Making and Profiling

Our platform uses artificial intelligence and automated processing:

- Sentiment analysis of public communications - Narrative pattern detection and classification - Reputation scoring and risk assessment - Content prioritization and filtering

- All automated outputs are reviewed by qualified personnel - Critical decisions require human validation - Regular audits of algorithm performance and fairness - Escalation procedures for disputed automated outcomes

- Request information about the logic involved in automated decision-making - Contest decisions based solely on automated processing - Request human intervention in automated decisions - Express your point of view regarding automated outcomes

- Regular bias testing and fairness assessments - Transparency about data sources and processing methods - Ability to override or correct automated decisions - Continuous monitoring for unintended outcomes

---

Automated Processing

Our services may involve automated decision-making including:

Human Oversight

We maintain meaningful human oversight over automated systems:

Your Rights

You have the right to:

Safeguards

We implement the following safeguards:

Section 15

Changes to This Privacy Policy

We may update this Privacy Policy from time to time:

- Update the "Last Updated" date at the top of this page - Post the revised policy on our website - Send email notifications for material changes - Display prominent notices on our platform

- Provide advance notice before changes take effect - Offer opt-out mechanisms where required - Maintain previous versions for reference - Seek fresh consent where necessary

---

Notification of Changes

When we make changes to this policy, we will:

Material Changes

For material changes to our privacy practices, we will:

Review and Acknowledgment

We encourage you to review this policy periodically. Continued use of our services after changes constitutes acceptance of the updated policy.

Archive

Previous versions of this Privacy Policy are available upon request or through our website archive.

Section 16

Contact Us

For questions, concerns, or requests related to this Privacy Policy:

- **Website:** https://perception.ac/contact

- **Subject Line:** Privacy Request - [Your Request Type] - **Response Time:** Within 30 days of verified request

[Company Address] [City, State/Province, Postal Code] [Country]

- **EU/EEA:** Your local data protection supervisory authority - **UK:** The Information Commissioner's Office (ICO) - **California:** The California Attorney General's Office - **Other Jurisdictions:** Relevant data protection authority in your country

---

General Inquiries

- **Email:** privacy@perception.ac

Data Protection Requests

- **Email:** dpo@perception.ac

Mailing Address

Perception X2 Privacy Team

Complaints

If you are not satisfied with our response, you have the right to lodge a complaint with:

Section 17

Data Protection Officer

We have appointed a Data Protection Officer (DPO) to oversee our data protection strategy:

- **Role:** Oversight of data protection compliance - **Availability:** Business hours, Monday through Friday

- Monitoring compliance with GDPR and other data protection laws - Advising on Data Protection Impact Assessments - Training staff on data protection obligations - Serving as the point of contact for supervisory authorities - Handling data subject requests and complaints

---

DPO Contact

- **Email:** dpo@perception.ac

DPO Responsibilities

Our DPO is responsible for:

Independence

Our DPO operates independently and reports directly to the highest level of management. They are not penalized for performing their tasks and have access to all resources necessary to carry out their duties.

Section 18

Accessibility

We are committed to making this Privacy Policy accessible to all users:

- HTML (web page) - PDF (downloadable document) - Plain text (accessible format) - Large print (upon request)

- Proper heading structure for screen readers - Sufficient color contrast for readability - Keyboard navigation support - Alternative text for any visual elements

---

### Related Legal Documents

- [Terms of Service](/legal/terms) -- Platform usage terms and conditions - [Security](/legal/security) -- Our security architecture and practices - [Compliance](/legal/compliance) -- Regulatory compliance and certifications - [Data Processing Agreement](/legal/data-processing) -- Data processing obligations and safeguards - [Cookie Policy](/legal/cookies) -- How we use cookies and tracking technologies

---

**Perception X2** | Protecting Your Data, Empowering Your Decisions

© 2026 Perception X2. All rights reserved.

Format Availability

This Privacy Policy is available in the following formats:

Language Support

We strive to provide this policy in multiple languages to serve our global user base. In case of conflict, the English version shall prevail.

Accessibility Standards

We aim to ensure this policy meets WCAG 2.1 Level AA accessibility standards, including:

Request Assistance

If you require this policy in an alternative format or need assistance understanding its contents, please contact us using the details in Section 16.

15+ Years
300+ Clients
50+ Platforms
99.9999% Uptime
Zero Incidents