Privacy Policy

Privacy Policy

Last updated: October 1, 2025

Overview

At PromptHub, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our prompt management platform.

By using PromptHub, you agree to the collection and use of information in accordance with this policy.

Information We Collect

Personal Information

We collect information that you provide directly to us, including:

  • Name and email address
  • Authentication credentials (via Microsoft Azure AD or local authentication)
  • Profile information (department, role, preferences)
  • Content you create (prompts, components, templates)

Usage Information

We automatically collect information about your use of the platform, including:

  • Activity logs and usage patterns
  • Device information and browser type
  • IP addresses and location data
  • Performance and analytics data

How We Use Your Information

We use the collected information for the following purposes:

  • Provide, maintain, and improve our services
  • Authenticate users and maintain security
  • Analyze usage patterns to enhance user experience
  • Communicate with you about updates and features
  • Comply with legal obligations and enforce our policies
  • Detect, prevent, and address technical issues

Data Security

We implement appropriate technical and organizational security measures to protect your personal information, including:

  • Encryption of data in transit and at rest (TLS 1.3, AES-256)
  • Enterprise-grade authentication via Microsoft Azure AD
  • Role-based access control (RBAC) with granular permissions
  • Regular security audits and vulnerability assessments
  • Secure database connections with connection pooling
  • API rate limiting and protection against attacks
  • Comprehensive audit logging for compliance and forensics

Data Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:

  • With Your Consent: When you explicitly authorize us to share specific information
  • Service Providers: With trusted third-party service providers who assist in operating our platform
  • Legal Requirements: When required by law or to protect our rights and safety
  • Business Transfers: In connection with a merger, acquisition, or sale of assets

Your Rights (GDPR Compliance)

Under GDPR and other privacy regulations, you have the following rights:

  • Right to Access: Request copies of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data
  • Right to Restriction: Limit how we use your data
  • Right to Data Portability: Receive your data in a structured format
  • Right to Object: Object to processing of your personal data
  • Rights Related to Automated Decision-Making: Not be subject to automated decisions

To exercise these rights, please contact your system administrator or reach out to our support team.

Data Retention

We retain your personal information for as long as necessary to provide our services and fulfill the purposes outlined in this Privacy Policy. When data is no longer needed, we securely delete or anonymize it.

Specific retention periods depend on:

  • Legal and regulatory requirements
  • Your organization's data retention policies
  • The nature of the data and our legitimate interests

Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience:

  • Essential Cookies: Required for authentication and security
  • Functional Cookies: Remember your preferences and settings
  • Analytics Cookies: Help us understand how you use the platform

You can control cookie settings through your browser preferences.

Third-Party Services

Our platform integrates with the following third-party services:

  • Microsoft Azure AD: For enterprise authentication and SSO
  • Cloud Infrastructure Providers: For hosting and database services

These services have their own privacy policies, and we encourage you to review them.

International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. We ensure that such transfers comply with applicable data protection laws through appropriate safeguards.

Children's Privacy

PromptHub is not intended for use by children under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have collected such information, please contact us immediately.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.

We encourage you to review this Privacy Policy periodically for any changes. Your continued use of the platform after changes are posted constitutes acceptance of the updated policy.

Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact:

PromptHub Privacy Team

Email: privacy@prompthub.com

Or contact your system administrator

Compliance Standards

GDPR Compliant

SOC 2 Ready

ISO 27001 Aligned