1. Information we collect
1.1 Account information
When you sign in we store your email address (sign-in is passwordless via a one-time magic link) and, optionally, a display name and branding settings you choose.
1.2 Documents you upload
We store the PDFs you upload and the tracked links you create so we can serve them to your recipients and show you analytics. Your document contents are yours; we do not read, sell, or share them, and our analytics tooling never captures their contents (see 1.8).
1.3 Viewer activity
When someone opens one of your tracked links we record view events: which pages were viewed, time spent per page, an approximate country derived from the network IP, the browser user agent, and, if you gated the link by email, the email the viewer entered. We surface this to you as the analytics that are the entire point of the product.
1.4 Payment information
Subscriptions are processed by Stripe. We never see or store your full card number; we keep a Stripe customer id and your subscription status.
1.8 Web analytics and session replay
We use PostHog for product analytics, including page views, click events, and session recordings of our own application UI. Session recordings are aggressively masked: every form input is masked by default, and every surface that could contain a customer document (the PDF viewer, the document iframe, and any signed document URL) is fully excluded from recording. We do this so we can improve the product without ever watching your documents or your recipients' content. PostHog data is consumed by us only and is not shared with advertisers.
1.9 Advertising measurement
When we run Google Ads campaigns for DocPulse, we load Google's advertising tag (gtag) to measure campaign clicks and conversions such as signup and paid subscription. That tag may set Google advertising cookies. We do not sell personal data. See the Cookie Policy for the cookie list and opt-out paths (Do Not Track and Global Privacy Control both suppress the ads tag).
2. How we use information
- To operate tracked links and show you who opened your documents.
- To send transactional and notification emails you've opted into.
- To process payments and manage your subscription.
- To detect abuse, debug issues, and improve the product.
3. Third-party processors
We rely on the following processors, each under their own data-processing terms:
| Processor | Purpose |
|---|---|
| Neon | Managed Postgres database (accounts, documents, view events). |
| Amazon Web Services (S3) | Encrypted storage of uploaded PDFs and brand logos. |
| Fly.io | Application server hosting. |
| Cloudflare | DNS, CDN, and static site hosting (Cloudflare Pages). |
| Stripe | Subscription billing and payment processing. |
| Resend | Transactional and notification email delivery. |
| PostHog | Product analytics and masked session replay (under DPA). |
| Google Ads | Paid-search advertising and conversion measurement when campaigns are active. |
| Sentry | Error tracking (PII scrubbed before submission). |
4. Data retention and deletion
You can delete your account from Settings at any time, which soft-deletes your documents and tracked links. Backups age out on a rolling basis. Contact privacy@docpulse.net for a full deletion request.
5. Your choices
You can opt out of analytics via the Do Not Track or Global Privacy Control signals in your browser, both of which we honor. See our Cookie Policy for the details and the opt-out paths. You can unsubscribe from notification emails from any email's footer or in Settings.
6. Contact
Questions about this policy? Email privacy@docpulse.net.