← Back to ExtractAPI
Privacy Policy
Effective: July 22, 2026
1. What We Collect
When you use ExtractAPI, we collect:
- Account data: Email address, billing information (processed by Stripe, not stored by us), and API key metadata
- Usage data: URLs submitted, timestamps, response status, response time, and bytes returned
- Technical data: IP address, user agent, and request headers (standard server logs retained for 30 days)
2. What We Don't Collect
We do not collect, store, or sell:
- Passwords or credentials
- Personal browsing history
- Cookies, tracking data, or behavioral information
- The full content of pages you extract (only the structured data returned to you, which is not stored permanently)
3. How We Use Data
We use collected data for:
- Providing and improving the service
- Usage tracking and billing
- Detecting and preventing abuse
- Diagnosing technical issues
4. Data Retention
- Request logs are retained for 90 days for billing and debugging purposes
- API usage statistics are retained monthly for billing
- Server access logs are retained for 30 days
- Account data is retained until account deletion
5. Third-Party Services
We use Stripe for payment processing. Stripe's privacy policy applies to payment data they process. We do not share usage data or URLs with third parties.
6. Data Security
API keys are stored hashed. All API traffic uses TLS encryption. Database access is restricted to the application only. We follow industry-standard security practices but cannot guarantee absolute security.
7. Your Rights
You may request access to, correction of, or deletion of your personal data at any time by contacting us. We will respond within 30 days.
8. No Sale of Data
We do not sell, rent, or share personal data with third parties for their marketing purposes.
9. Changes
We may update this policy. Material changes will be notified via email or service announcement.
10. Contact
For privacy-related inquiries: [email protected]