Privacy Policy

Last updated: November 4, 2025

1. Introduction

Workfinity Private Limited ("we," "us," or "our") operates Profile Pilot, an N8N workflow templates marketplace. We are committed to protecting your privacy and ensuring transparency about how we collect, use, and safeguard your personal information.

This Privacy Policy explains our practices regarding data collection, usage, and protection when you use our Platform. By using Profile Pilot, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide

When you create an account or make a purchase, we collect:

  • Account Information: Full name, email address, and password (hashed and encrypted)
  • Profile Data: Optional avatar or profile picture
  • Purchase Information: Order history, payment details (processed through PayPal), purchase dates, and amounts
  • Content You Submit: Product reviews, ratings, and any feedback you provide

2.2 Automatically Collected Information

When you use the Platform, we automatically collect:

  • Usage Data: Pages visited, features used, and interaction patterns
  • Device Information: Browser type, device type, operating system, and IP address
  • Session Data: Login timestamps, session duration, and activity logs
  • Download Activity: Products downloaded, download timestamps, and frequency

2.3 Payment Information

Payment processing is handled by PayPal. We do not store credit card numbers or full payment details on our servers. PayPal provides us with transaction confirmations and payment status information necessary to fulfill your orders.

3. How We Use Your Information

We use the collected information for:

  • Service Provision: Processing purchases, managing your account, and providing access to purchased templates
  • Communication: Sending order confirmations, transaction updates, and responding to your inquiries
  • Platform Improvement: Analyzing usage patterns to enhance functionality and user experience
  • Security: Detecting and preventing fraudulent activity, unauthorized access, and security threats
  • Legal Compliance: Meeting legal obligations, enforcing our Terms of Service, and protecting our rights
  • Personalization: Tailoring content, recommendations, and features to your preferences
  • Analytics: Generating reports on Platform usage, sales trends, and user behavior (aggregated and anonymized)

4. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Authentication: HTTP-only JWT tokens stored in cookies to maintain your login session (valid for 7 days)
  • Session Management: Tracking your session state and preferences while using the Platform
  • Security: Preventing unauthorized access and detecting suspicious activity

You can control cookie preferences through your browser settings. However, disabling cookies may limit Platform functionality, particularly authentication features.

For detailed information about our cookie practices, please see our Cookie Policy.

5. Third-Party Services

5.1 PayPal

Payment processing is handled by PayPal. When you make a purchase, PayPal collects payment information according to their privacy policy. We receive transaction confirmations and payment status to fulfill your order. We encourage you to review PayPal's Privacy Policy.

5.2 Service Providers

We may share data with trusted service providers who assist in Platform operations (hosting, analytics, customer support) under strict confidentiality agreements. These providers are prohibited from using your information for purposes other than providing services to us.

6. Data Security

We implement industry-standard security measures to protect your information:

  • Encryption: Passwords are hashed using bcrypt with salt rounds
  • Secure Authentication: JWT tokens stored in HTTP-only cookies to prevent XSS attacks
  • Secure Connections: HTTPS encryption for all data transmission
  • Access Controls: Limited access to personal data on a need-to-know basis
  • Regular Updates: Security patches and updates applied to protect against vulnerabilities

While we strive to protect your data, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to maintaining robust security practices.

7. Your Privacy Rights

Depending on your location, you may have the following rights:

  • Access: Request a copy of your personal data we hold
  • Correction: Update or correct inaccurate information in your account
  • Deletion: Request deletion of your account and associated data (subject to legal retention requirements)
  • Data Portability: Request your data in a structured, machine-readable format
  • Opt-Out: Unsubscribe from marketing communications (transactional emails will still be sent)
  • Cookie Preferences: Manage cookie settings through your browser

To exercise these rights, please contact us at itsprofilepilot@gmail.com or visit our Contact Page. We will respond to your request within 30 days.

8. GDPR Compliance (EU Users)

If you are located in the European Union, you have additional rights under the General Data Protection Regulation (GDPR):

  • Right to be informed about data collection
  • Right of access to your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Rights related to automated decision-making

Our legal basis for processing your data includes: contract performance (order fulfillment), legitimate interests (Platform operation and security), and consent (where applicable).

9. Data Retention

We retain your information for as long as necessary to:

  • Provide services and maintain your account
  • Comply with legal obligations (tax records, transaction history)
  • Resolve disputes and enforce agreements
  • Maintain Platform security and prevent fraud

Account data is retained while your account is active. After account deletion, we may retain certain information as required by law (e.g., transaction records for tax purposes) or for legitimate business purposes (fraud prevention).

10. Children's Privacy

Profile Pilot is not intended for users under the age of 18. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately, and we will delete such information.

11. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. We will notify you of material changes by:

  • Posting the updated policy on this page with a new "Last updated" date
  • Sending an email notification for significant changes
  • Displaying a notice on the Platform

Your continued use of the Platform after changes constitutes acceptance of the updated Privacy Policy.

12. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Workfinity Private Limited

Email: itsprofilepilot@gmail.com

Privacy Inquiries: privacy@profilepilot.in

Visit our Contact Page for additional support options.

This Privacy Policy is effective as of the "Last updated" date above. By using Profile Pilot, you acknowledge that you have read and understood this Privacy Policy.