Privacy Policy
Last updated: May 12, 2026
1. Information We Collect
Information you provide directly. When you contact us through the chat widget, the contact form, the project-brief modal, or the idle-prompt, we collect the information you submit — typically your name, email address, project type or area of interest, and the contents of your message. If you reach us by email or phone, we also retain that correspondence.
Information collected automatically. When you visit the site, our hosting provider and analytics tools automatically collect technical information including your IP address (anonymized where possible), browser type and version, operating system, device type, screen size, referring URL, pages viewed, time spent on each page, and approximate location derived from your IP. This is standard server-log and analytics data.
Information from third-party assets. When your browser loads third-party resources (fonts, icons, scripts — see Section 4), those providers may receive your IP address and basic request metadata as part of normal HTTP requests.
2. How We Use Your Information
- To respond to inquiries, prepare estimates, and discuss potential projects.
- To deliver and improve the services you've contacted us about.
- To understand how the site is used (which pages, devices, regions) so we can improve the experience.
- To detect abuse and protect the site's security.
- To comply with legal obligations.
3. Cookies & Local Storage
We use a small number of cookies and browser-storage entries:
theme— a cookie and alocalStorageentry remembering your light/dark theme choice. First-party. No personal data.- Google Analytics cookies (typically
_ga,_ga_*) — set by Google to distinguish visitors and measure usage. See Google's privacy policy.
You can clear or block cookies through your browser settings. Doing so will reset your theme preference and prevent anonymous analytics measurement.
4. Third-Party Services
We use the following third parties to deliver and operate the site. Each receives only what their function requires, and each has its own privacy policy that applies:
- Netlify — site hosting and form delivery (your form submissions are routed through Netlify Forms).
- Google Analytics 4 (Google LLC) — anonymized usage analytics.
- Google Fonts — serves the typefaces used on this site.
- Cloudflare (cdnjs) — serves the Font Awesome icon CSS.
- jsDelivr — serves the Swiper carousel library.
- Iconify — serves brand icons (OpenAI, Anthropic, Trustpilot, etc.).
We also link out to Trustpilot, LinkedIn, and the live websites we've built. When you click such a link, the destination site receives a referrer header but no information is shared from our side.
5. Data Sharing
We do not sell, rent, or trade your personal information. We only share data with the service providers above (acting as processors on our behalf) and may disclose information when required by law, to protect our rights, or in connection with a business transfer.
6. Data Retention
We retain contact-form and chat submissions for as long as needed to respond to your inquiry and operate any resulting engagement, and for a reasonable period afterward for record-keeping (typically up to 3 years). Analytics data is retained according to Google Analytics' default retention (currently 14 months). Server logs are typically retained for 30–90 days by our hosting provider. You may request earlier deletion at any time (see Section 8).
7. Data Security
The site is served exclusively over HTTPS. Form submissions are processed by Netlify over an encrypted connection. We restrict access to submitted data to the people who need it to respond to you. No method of transmission over the internet is 100% secure, but we take reasonable industry-standard precautions to protect your information.
8. Your Rights
Depending on where you live (e.g., EU/UK under GDPR, California under CCPA), you may have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data.
- Object to or restrict certain processing.
- Request a portable copy of your data.
- Withdraw consent at any time (where processing is based on consent).
To exercise any of these rights, email hello@neptolab.com. We respond within 30 days. You also have the right to lodge a complaint with your local data-protection authority.
9. International Data Transfers
NeptoLab is based in the United States. Our service providers (Netlify, Google, Cloudflare, etc.) are also primarily US-based, so if you visit from outside the US your information will be transferred to and processed in the United States. We rely on the applicable safeguards offered by these providers (e.g., the EU–US Data Privacy Framework where relevant).
10. Children's Privacy
This site is intended for business users and is not directed to children under 16. We do not knowingly collect personal information from children. If you believe a child has provided us information, contact us and we will delete it.
11. Changes to This Policy
We may update this privacy policy from time to time to reflect changes to our practices, services, or applicable law. Material changes will be highlighted on this page with an updated revision date at the top.
12. Contact
If you have questions about this privacy policy, email hello@neptolab.com or call (224) 822-6090.