Policies

Privacy Policy

Effective Date: August 6, 2026

Scope: This Privacy Policy applies to Auspex Labs Inc. websites, business operations, professional services, and products other than the Not a Bad Life mobile application. Not a Bad Life is governed by its separate Not a Bad Life Privacy Policy.

1. Who We Are

Auspex Labs Inc. ("Auspex," "we," "us," or "our") develops and operates cybersecurity, analytics, certificate, email-authentication, software, and related professional services. This Policy explains how we collect, use, disclose, retain, and protect personal information when you visit our websites, communicate with us, create or use an account, purchase a service, or use a product covered by this Policy (collectively, the "Services").

When we process information submitted to a Service by or for a business customer, we generally act as a service provider or processor on that customer's behalf. The customer's agreement with Auspex and the customer's own privacy notice govern that customer-controlled information. This Policy still applies to account, billing, support, and relationship information that Auspex controls directly.

2. Information We Collect

Information you provide

  • Contact and business information: name, business email address, telephone number, company, role, product interest, and the contents of communications with us.
  • Account information: email address, organization membership, account and authentication identifiers, permissions, preferences, and information used to administer an account.
  • Support information: questions, troubleshooting details, attachments, and other information you choose to provide in a support request.
  • Transaction information: billing contact details, product, subscription, invoice, entitlement, marketplace, and transaction identifiers. Payment providers process payment-card or bank-account credentials under their own privacy policies; Auspex does not require those providers to give us complete payment credentials.
  • Professional-services information: project, technical, security, compliance, and business information you provide so we can perform contracted work.

Information generated through the Services

  • Product and customer data: information submitted to, generated by, or observed through a product, such as network and security metadata, domains and email-authentication report data, certificate signing requests and certificate records, configuration, findings, telemetry, and audit events. The particular data depends on the Service selected by the customer.
  • Device, log, and diagnostic information: IP address, browser or device type, operating system, app or service version, access time, requested page or operation, referral information, error details, and security events.
  • Usage information: features used, actions taken, session state, preferences, and performance information needed to operate, secure, support, and improve the Services.
  • Cookies and local storage: our websites and web applications may use cookies, local storage, or similar technologies for authentication, session continuity, security, load balancing, fraud prevention, and saved preferences. We do not use information covered by this Policy for third-party targeted advertising.

Information from other sources

We may receive information from your employer or organization, identity and authentication providers, cloud marketplaces, payment and subscription providers, referral sources, service partners, and publicly available business sources. We combine that information with information collected through the Services when necessary for the purposes described below.

3. How We Use Information

We use personal information to:

  • provide, configure, authenticate, maintain, and support the Services;
  • administer accounts, organizations, subscriptions, entitlements, transactions, and invoices;
  • respond to inquiries and provide technical or customer support;
  • send service, security, account, and administrative communications;
  • monitor availability, diagnose faults, improve performance, and develop features;
  • protect the Services, customers, Auspex, and others from fraud, abuse, unauthorized access, and security threats;
  • comply with contracts, laws, court orders, and valid legal process; and
  • evaluate or complete a financing, acquisition, merger, reorganization, or sale of all or part of our business.

4. Legal Bases

Where applicable law requires a legal basis, we process personal information as necessary to perform a contract or take requested pre-contract steps, to comply with law, with consent, or for legitimate interests such as operating and securing the Services, supporting customers, improving reliability, preventing fraud, and managing business relationships. When we rely on consent, you may withdraw it at any time without affecting processing already completed.

5. How We Disclose Information

We may disclose information:

  • To service providers: companies that provide cloud infrastructure, storage, authentication, communications, monitoring, customer support, payment, subscription, marketplace, security, and professional services. They may process information only for the contracted service and must protect it appropriately.
  • To your organization: account owners and administrators may manage users, permissions, subscriptions, and information associated with their organization.
  • At your direction: when you connect an integration, share information, or otherwise direct us to disclose it.
  • For legal and safety reasons: when reasonably necessary to comply with law or valid legal process, enforce agreements, investigate misuse, or protect rights, safety, systems, and property.
  • For a business transaction: in connection with a proposed or completed financing, merger, acquisition, reorganization, or sale, subject to appropriate confidentiality and use restrictions.

We may disclose aggregated or deidentified information that cannot reasonably identify an individual. We do not sell personal information, and we do not share personal information for cross-context behavioral advertising.

6. Retention

We retain personal information only for as long as reasonably necessary for the purpose for which it was collected, including to provide the Services, maintain security and audit records, meet contractual commitments, resolve disputes, and satisfy legal, tax, accounting, or reporting obligations. Retention depends on the type of information and Service:

  • account and relationship records are generally retained while an account or business relationship remains active and for a reasonable period afterward;
  • transaction and financial records are retained for legally required accounting and tax periods;
  • security, operational, and diagnostic logs are retained according to operational need and risk;
  • customer-controlled data is retained and deleted according to the applicable Service configuration and customer agreement; and
  • limited copies may remain in protected backups until those backups are overwritten under normal schedules.

We may retain information longer when required by law, necessary to establish or defend legal claims, or needed to investigate fraud or security incidents.

7. Security

We use administrative, technical, and physical safeguards designed to protect information against unauthorized access, alteration, disclosure, or destruction. Safeguards include access controls, encryption in transit and at rest where appropriate, monitoring, data isolation, and security review. No internet transmission or storage system can be guaranteed completely secure.

8. International Data Transfers

Auspex is based in the United States, and information may be processed in the United States and other countries where we or our service providers operate. When required, we use a legally recognized transfer mechanism, such as an adequacy decision, contractual protections, or another safeguard permitted by applicable law.

9. Your Rights and Choices

Depending on your location and subject to applicable exceptions, you may have the right to request access to, correction of, deletion of, or a portable copy of personal information; object to or restrict certain processing; withdraw consent; opt out of certain disclosures; or appeal a decision concerning a request. You may also have the right to complain to a privacy or data-protection authority.

To exercise a privacy right, email contact@auspex-labs.com with the subject "Privacy Request." Describe the request and the Service involved. We may verify your identity and authority before acting, and we will respond within the period required by applicable law. Authorized agents may submit requests where permitted by law. We will not discriminate against anyone for exercising a privacy right.

You may opt out of promotional email by using the unsubscribe mechanism in the message. You may still receive transactional, account, support, or security communications.

10. Children's Privacy

The business and technical Services covered by this Policy are not directed to children under 18, and we do not knowingly allow a child under 18 to create an account for those Services. This section does not apply to Not a Bad Life, which has its own privacy policy.

11. Changes to This Policy

We may update this Policy to reflect changes in our Services, practices, or legal obligations. We will post the revised Policy at this URL, update the effective date, and provide additional notice when required by law or when a change materially affects how we use personal information.

12. Contact Us

Auspex Labs Inc.
contact@auspex-labs.com
+1 540-860-0772