Privacy Policy
Last updated: January 23, 2026
1. Introduction
MechCloud ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our cloud infrastructure management platform and related services (the "Service").
By using the Service, you consent to the data practices described in this policy.
2. Information We Collect
2.1 Information You Provide
- Account Information: Name, email address, and password when you create an account
- Profile Information: Organization name, job title, and profile picture
- Payment Information: Billing address and payment method details (processed by our payment provider)
- Cloud Provider Credentials: Access keys, tokens, or OAuth connections to your cloud accounts
- Support Communications: Information you provide when contacting our support team
2.2 Information Collected Automatically
- Usage Data: Features used, actions taken, and time spent on the Service
- Device Information: Browser type, operating system, and device identifiers
- Log Data: IP address, access times, and pages viewed
- Cookies and Tracking: Information collected through cookies and similar technologies
2.3 Cloud Infrastructure Data
- Resource Metadata: Information about your cloud resources (names, types, configurations)
- Cost Data: Pricing and cost information from your cloud providers
- Infrastructure Configurations: Templates and configurations you create
3. How We Use Your Information
We use the collected information to:
- Provide, maintain, and improve the Service
- Process transactions and send related information
- Send administrative notifications and updates
- Respond to your comments, questions, and support requests
- Monitor and analyze usage patterns and trends
- Detect, prevent, and address technical issues and security threats
- Personalize your experience and provide tailored content
- Comply with legal obligations
4. Data Storage and Security
4.1 Data Storage
Your data is stored on secure servers provided by reputable cloud infrastructure providers. We implement appropriate technical and organizational measures to protect your data.
4.2 Cloud Credentials
Cloud provider credentials are:
- Encrypted at rest using industry-standard encryption (AES-256)
- Transmitted only over secure, encrypted connections (TLS 1.2+)
- Never stored in plain text
- Accessible only to authorized systems required to provide the Service
4.3 Security Measures
- Regular security assessments and penetration testing
- Access controls and authentication mechanisms
- Monitoring and logging of system access
- Employee security training and background checks
5. Data Sharing and Disclosure
We do not sell your personal information. We may share your information in the following circumstances:
5.1 Service Providers
We may share information with third-party service providers who perform services on our behalf, including:
- Payment processing (e.g., Stripe, LemonSqueezy)
- Analytics services (e.g., Microsoft Clarity)
- Customer support tools
- Infrastructure hosting
5.2 Legal Requirements
We may disclose information if required by law or in response to valid legal requests.
5.3 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
5.4 With Your Consent
We may share information with your consent or at your direction.
6. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to:
- Keep you logged in to your account
- Remember your preferences and settings
- Understand how you use the Service
- Improve the Service based on usage patterns
You can control cookies through your browser settings. Note that disabling cookies may affect the functionality of the Service.
7. Your Rights and Choices
7.1 Access and Portability
You can access and export your data through the Service or by contacting us.
7.2 Correction
You can update your account information through your account settings.
7.3 Deletion
You can request deletion of your account and associated data by contacting us. Some data may be retained as required by law or for legitimate business purposes.
7.4 Marketing Communications
You can opt out of marketing emails by clicking the unsubscribe link in any marketing email or by updating your preferences in your account settings.
7.5 Do Not Track
We currently do not respond to "Do Not Track" browser signals.
8. Data Retention
We retain your information for as long as your account is active or as needed to provide the Service. We may also retain information as necessary to:
- Comply with legal obligations
- Resolve disputes
- Enforce our agreements
- Maintain security and prevent fraud
When you delete your account, we will delete or anonymize your personal information within 30 days, except where retention is required by law.
9. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. We implement appropriate safeguards to protect your information during such transfers.
10. Children's Privacy
The Service is not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. If you believe we have collected information from a child under 16, please contact us immediately.
11. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the new Privacy Policy on this page
- Updating the "Last updated" date
- Sending an email notification for significant changes
13. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us at:
- Email: privacy@mechcloud.io
- Support: support@mechcloud.io
14. Additional Rights for Specific Regions
14.1 European Economic Area (EEA) Residents
If you are in the EEA, you have additional rights under GDPR, including:
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to lodge a complaint with a supervisory authority
14.2 California Residents
If you are a California resident, you have rights under CCPA, including:
- Right to know what personal information is collected
- Right to know if personal information is sold or disclosed
- Right to opt out of the sale of personal information
- Right to request deletion of personal information
- Right to non-discrimination for exercising your rights
We do not sell personal information as defined by CCPA.
