Privacy Policy
Last updated: February 22, 2026
1. Introduction
RedirX ("we," "our," or "us") is operated by Dylon Shattuck. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the RedirX web application at redirx.dev (the "Service"). By using the Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
We collect the following types of information:
- Account Information — Email address and password, managed through Supabase Auth, when you create an account.
- Payment Information — Billing details processed securely through Stripe. We do not store your full credit card number on our servers.
- Project Data — URL lists and redirect mappings you upload or generate within the Service.
- Website Content — When you use Deep Match, we scrape publicly accessible page content from the URLs you provide to generate semantic matches.
- Usage Analytics — We use PostHog to collect anonymized usage data such as page views, feature usage, and session information to improve the Service.
- Cookies — We use essential cookies for authentication sessions (Supabase) and analytics (PostHog).
3. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the Service
- Process your redirect matching projects (Quick Match and Deep Match)
- Process payments and manage subscriptions
- Send transactional emails related to your account and projects
- Analyze usage patterns to improve and optimize the Service
- Respond to support requests and communications
- Enforce our Terms of Service and protect against misuse
4. Third-Party Services
We rely on the following third-party services to operate RedirX. Each has its own privacy policy governing how they handle your data:
5. Data Retention
- Account data is retained for as long as your account remains active.
- Project data (URL lists and redirect mappings) is retained for as long as the project exists in your account.
- Scraped website content used for Deep Match is transient and is not permanently stored after processing is complete.
- Payment records are retained as required by applicable tax and financial regulations.
6. Data Security
We implement reasonable technical and organizational safeguards to protect your data. All data in transit is encrypted via HTTPS/TLS. Authentication is managed through Supabase with industry-standard security practices. Payment data is handled by Stripe, which is PCI-DSS compliant. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.
7. Your Rights
You have the right to:
- Access the personal data we hold about you
- Correct inaccurate or incomplete personal data
- Delete your account and associated data
- Export your project data
- Opt out of analytics tracking
To exercise any of these rights, contact us at support@redirx.dev.
8. Children's Privacy
The Service is not intended for individuals under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have collected data from a child under 16, we will take steps to delete that information promptly.
9. International Data Transfers
Your information may be transferred to and processed in the United States, where our service infrastructure and third-party providers are located. By using the Service, you consent to the transfer of your data to the United States.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Your continued use of the Service after any changes constitutes acceptance of the updated policy.
11. Contact
If you have questions about this Privacy Policy, contact us at:
Dylon Shattuck
support@redirx.dev