This Privacy Policy explains how SeqOrbit (“SeqOrbit”, “WatchSeq”, “we”, “us”) handles information when you use the WatchSeq AI website, web application, browser extension, APIs, monitoring, extraction, notification, and billing services (together, the “Service”).
1. Who is responsible for your data
SeqOrbit operates WatchSeq AI and is responsible for the personal data described here. Questions, requests, and complaints can be sent to [email protected].
2. Information we collect
Account and authentication data
- Your email address, password hash, email-verification state, plan, and account creation date.
- Hashed refresh-session and password-reset tokens, expiration times, and revocation or use state.
- Your browser stores a refresh token for the current MVP. Access tokens are held in memory by the web app.
Content you ask WatchSeq to process
- URLs, page titles, natural-language instructions, target descriptions, selectors, conditions, and schedules for pages you explicitly choose to monitor.
- User-selected element text or simplified public-page text needed to resolve a target, compare changes, or perform an extraction.
- Monitor values, semantic embeddings, change history, AI summaries, significance decisions, alert state, and thumbs-up/down feedback.
- Extraction instructions and structured extraction results.
WatchSeq is designed for public pages you explicitly submit. It does not use your authenticated browser sessions to log into private dashboards. Do not submit sensitive personal information or content you are not permitted to process.
Billing, support, and technical information
- Plan and subscription state, Razorpay customer/subscription identifiers, and webhook event records. WatchSeq does not receive or store your full card or bank credentials.
- Security and operational information such as IP-derived rate-limit keys, request failures, and error diagnostics.
- Privacy-limited product events may be associated with a random installation identifier, rather than your email or database user ID.
3. How we use information
- Authenticate accounts, restore sessions, reset passwords, and prevent abuse.
- Fetch the public pages you choose, resolve targets, run scheduled comparisons, generate meaningful-change summaries, and create structured extractions.
- Deliver browser and email notifications, apply usage limits, provide data export and deletion, and support the Service.
- Process subscriptions, verify billing webhooks, troubleshoot failures, secure the Service, and understand privacy-safe product usage.
4. Service providers and disclosures
We disclose only the information needed for providers to perform services for us:
- Google Gemini: AI inference and embeddings used to resolve page targets, compare meaning, summarize changes, and structure extraction results.
- Razorpay: subscription checkout, payment processing, and billing status.
- Resend: password-reset, alert, and service emails.
- Hosting, database, browser automation, monitoring, and analytics providers: infrastructure necessary to run, secure, and improve WatchSeq. Production deployments may use Sentry for error diagnostics and PostHog for privacy-limited analytics when configured.
We may also disclose information when required by law, to protect users or the Service, or as part of a business transaction subject to appropriate safeguards. We do not sell your personal information.
5. Retention and deletion
We retain account and product data while your account is active and as needed to provide monitors, history, extraction, billing, security, and support. You can download an account export or permanently delete your account from the Account page. Account deletion first attempts to cancel an active subscription, then deletes user-owned application records and revokes sessions. Limited records may remain temporarily in backups, provider systems, fraud/security logs, or where law requires retention.
6. Security
We use measures including password hashing, short-lived access tokens, rotating refresh tokens, signed Razorpay webhooks, authenticated APIs, rate limits, and access controls. No online system is completely secure. Before WatchSeq handles significant payment volume, the web refresh token should move from browser local storage to a secure backend-set HTTP-only cookie.
7. Your choices and rights
Depending on where you live, you may have rights to access, correct, export, delete, restrict, or object to processing of personal data, or complain to a regulator. The Account page provides export and deletion controls. You can also contact us at [email protected]. We may need to verify your identity.
8. International processing and children
Our providers may process information in countries other than yours, subject to their contractual and legal safeguards. WatchSeq is not directed to children under 13, or a higher minimum age where local law requires it, and we do not knowingly collect their personal information.
9. Changes
We may update this policy as WatchSeq changes. We will post the updated date here and provide additional notice when required.