Privacy Policy

Last Updated: July 2, 2025

RedScope Inc. ("RedScope," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information. It applies to our website, redscope.ai (the "Site"), and the services we provide to our clients (the "Service").

Please read this policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site or use our Service.

This policy is divided into two parts:

Part 1: Information We Collect for Our Own Business
(e.g., when you visit redscope.ai or sign up)

Part 2: Information We Process on Behalf of Our Clients (when you use our Service on your website)

Part 1: Information We Collect for Our Own Business

When you visit our Site, sign up for a trial, or become a client, we act as the Data Controller.

A. Information We Collect:

Personal Data:
Your name, email address, company name, job title, and any other information you provide when you sign up, request a demo, or contact support.

Payment Data: We may collect data necessary to process your payments if you subscribe to a paid plan, such as your payment instrument number (e.g., a credit card number) and the security code associated with your payment instrument. All payment data is stored by our payment processor (e.g., Stripe).

Derivative Data: Information our servers automatically collect when you access our Site, such as your IP address, browser type, operating system, access times, and the pages you have viewed directly before and after accessing the Site.

B. How We Use Your Information:

To create and manage your account.
To provide, operate, and maintain our Service.
To process your payments and subscriptions.
To send you administrative information, such as updates to our terms, conditions, and policies.
To respond to your comments and questions and provide customer service.
To monitor and analyze usage and trends to improve your experience with our Site and Service.

Part 2: Information We Process on Behalf of Our Clients

When you install the RedScope SDK on your website ("Your Property"), you are the Data Controller for the data collected from your visitors. RedScope acts as a Data Processor, processing this data on your behalf and according to your instructions.

A. Information Our Service Collects from Your Website Visitors:

Behavioral & Contextual Data:
Our JS SDK collects information about a visitor's journey on Your Property, including pages viewed, scroll depth, time on page, and other engagement signals. This data is associated with a pseudonymous identifier stored in a first-party cookie or local storage.

Company Data: For clients on applicable plans, we use a visitor's IP address to identify the company they are likely associated with, using third-party services. This provides firmographic data (e.g., company name, size, industry). We do not receive personal data about specific individuals from this IP lookup process.

Consented Personal Data (Leads): When a visitor on Your Property willingly provides their information (e.g., email address, name) in response to an AI-generated offer from our Service, we collect this information on your behalf.

Enriched Data: For clients on applicable plans, we may enrich the consented lead data by using the provided email or company domain to look up publicly or commercially available professional information (e.g., job title, LinkedIn profile) via third-party enrichment APIs.

B. How We Use This Information (as a Data Processor):

To provide the core functionality of the Service to you, our client.
To power our AI engine to analyze visitor journeys and determine the best offer to display.
To generate analytics and reports for you in your dashboard.
To improve our global AI models through the use of aggregated and fully anonymized data (data that cannot be used to identify any individual or client).

C. Your Responsibilities as Data Controller:

As the Data Controller, you are responsible for ensuring you have a lawful basis to collect and process data from your visitors. This includes:

Clearly informing your visitors about your use of RedScope and similar technologies in your website's privacy policy.
Obtaining valid consent for the use of non-essential cookies and tracking technologies via a compliant Consent Management Platform (CMP), as required by laws like GDPR and the ePrivacy Directive. Our SDK is designed to respect consent signals from standard CMP frameworks.
Ensuring you have a lawful basis (e.g., legitimate interest, supported by a documented assessment) for using IP-to-company identification services.

General Provisions (Applicable to All Data)

Data Security:

We use administrative, technical, and physical security measures to help protect all data we process. While we have taken reasonable steps to secure the information, please be aware that no security measures are perfect or impenetrable.

Data Retention:

We will retain personal data we process on behalf of our clients for as long as needed to provide the Service to our clients, or as necessary to comply with our legal obligations, resolve disputes, and enforce our agreements.

Data Sharing & Disclosure

We do not sell personal data.We may share information in the following cases:
With Service Providers: We use third-party tools for hosting, analytics, payment processing, and customer support. These providers only access data as necessary to perform their services.
Legal Requirements: We may disclose data if required to comply with a legal obligation or protect our rights.
Business Transfers: In the event of a merger, sale, or acquisition, your data may be transferred as part of the transaction.

International Transfers:

Your information may be transferred to — and maintained on — computers located outside of your state, province, country, or other governmental jurisdiction where the data protection laws may differ. We will ensure appropriate safeguards, such as Standard Contractual Clauses (SCCs), are in place for such transfers.

Children’s Privacy

Our service is not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected such data, we will take steps to delete it.

Your Data Protection Rights:

If you are a resident of the European Economic Area (EEA), you have certain data protection rights. If you are a visitor to one of our client's websites, please direct any requests to exercise your data protection rights to the owner of that website (the Data Controller). We will assist our clients in responding to such requests.

Changes to This Privacy Policy:

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date.

Contact Us:

If you have any questions about this Privacy Policy, please contact us at legal@redscope.ai.