Client Hub Privacy Policy

Last Updated: February 21, 2025

This Privacy Policy applies specifically to the Blue Rain Labs Client Hub. Due to the nature of the services provided, we handle more sensitive data here than on our public website. We are committed to protecting your data with industry-standard security practices.

1. Information We Collect in the Hub

In addition to basic contact information, the Client Hub stores:

  • Project details and configurations.
  • Billing history and subscription status.
  • Account credentials (managed securely via Firebase Authentication).
  • Usage statistics related to your hosted services.

2. Payment Information

We do NOT store your credit card information on our servers.

All payment processing is handled by Stripe, a PCI-DSS compliant third-party payment processor. We only store a reference token (Customer ID) to facilitate recurring billing and display your payment history. Your sensitive financial data never touches our database.

3. Data Security Measures

We implement robust security measures to protect your data, including:

  • Encryption: Data is encrypted in transit (using SSL/TLS) and at rest where applicable.
  • Access Control: Strict role-based access controls (RBAC) ensure only authorized personnel can access specific data.
  • Authentication: We use secure authentication providers (Google/Firebase) to prevent unauthorized access.
  • Regular Audits: We periodically review our security practices to address new threats.

4. Data Sharing

We do not share your Hub data with third parties except:

  • Service Providers: Like Stripe (for payments) or cloud hosting providers (Google Cloud), solely to deliver the service.
  • Legal Requirements: If required by law, such as in response to a subpoena or court order in Ontario, Canada.

5. Your Rights

As a client, you have the right to request access to the personal data we hold about you, request corrections, or request deletion of your account (subject to data retention for tax/legal purposes).