Privacy Policy

Effective date: February 25, 2026

Who We Are

Adgentia, Inc. ("Adgentia," "we," "us," or "our") provides the adgentia.ai website and SaaS platform for AI agents supporting SEO, digital ads, and website publishing.

Adgentia, Inc. is a Delaware corporation and a wholly owned subsidiary of Quantum Grade Analytics, Inc. ("QGA"). As part of that corporate relationship, Adgentia may share limited personal information with QGA and other affiliates for shared services (security, finance, legal, HR, engineering) under appropriate intercompany agreements and data protection terms.

Scope

This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you visit adgentia.ai or use our platform and related online services (the "Services").

If you use the Services via a business account, our role is typically a processor/service provider to your organization (the "Customer"). The Customer's privacy notices apply to their collection and use of personal information about their end users and contacts. This Policy supplements those arrangements by describing our processing as a service provider.

Information We Collect

Identifiers and contact information: name, email, phone number (optional), company name, job title, role.

Account information: username, hashed password (if not using SSO), authentication tokens, roles/permissions.

Commercial and billing information: subscription plan, transaction history, billing contact details; we do not store full payment card data (processed by Stripe or another payment provider).

Internet/electronic activity: device/browser type, IP address (with approximate geolocation), pages viewed, referring URLs, feature usage, session metadata, event logs, and diagnostics.

In-app content and configurations: campaign settings, SEO/ads configurations, publishing parameters, approvals, analytics/reporting preferences.

Integrations metadata: tokens, scopes, and configuration metadata for integrations you authorize (e.g., Google Ads, Meta Ads, Search Console, GA4, CMS connectors).

Communications: support tickets, chat transcripts, email exchanges, feedback.

Inferences: product analytics and trend insights derived from usage to improve performance and quality.

Sensitive Personal Information: we do not intentionally collect SPI (e.g., government IDs, precise geolocation, health data). Optional phone numbers may be collected for MFA/SMS where you consent.

How We Collect It

Directly from you: when you create an account, configure settings, connect integrations, submit forms, or contact support.

Automatically: via cookies, pixels, SDKs, and similar technologies as you browse or use the Services.

From authorized integrations: when you connect third-party platforms to enable Service features (we receive only the data necessary to operate the integration, per your configuration).

From service providers/partners: diagnostics, analytics, and operational metrics supporting our security and product improvement.

How We Use Personal Information

Service delivery and account administration: to provide, maintain, and support the Services; enable SSO (SAML/OIDC); manage user permissions and configurations.

Security and abuse prevention: to detect, prevent, and investigate fraud, abuse, and unauthorized access; to protect the integrity and availability of the Services.

Billing and collections: to process payments, manage subscriptions, apply credits/refunds, and communicate about invoices and renewals.

Product analytics and improvement: to understand feature usage, improve performance, and develop new capabilities. Where feasible, we use aggregated or de-identified data.

Communications and support: to respond to inquiries, send service notices, and provide customer support and onboarding.

Compliance and enforcement: to comply with applicable laws, enforce our agreements and policies, and respond to lawful requests.

How We Share Personal Information

Service providers (subprocessors): hosting, infrastructure, security/observability, analytics, email/SMS tools, support, payment processing. We contractually require service providers to use data only to provide services to us and to implement appropriate safeguards. We maintain a current list at adgentia.ai/subprocessors.

Corporate affiliates (including QGA): for shared services (e.g., security incident response, finance, legal, HR, engineering) under intercompany data protection terms. QGA may act as a separate controller for limited administrative and compliance purposes; Adgentia remains primarily responsible for platform user personal information.

Legal and safety: to comply with the law, legal process, or lawful requests; to protect our rights, users, customers, or the public; or to investigate and prevent fraud or security issues.

Business transfers: in connection with any merger, acquisition, financing, sale of assets, or similar transaction; we will continue to protect personal information consistent with this Policy.

No sale; limited sharing: we do not sell personal information. We only "share" personal information for cross-context behavioral advertising with your consent via our cookie banner, and you can withdraw that consent at any time in your preferences.

Cookies and Tracking Technologies

We use cookies, pixels, local storage, and similar technologies to operate the site, maintain sessions, remember preferences, measure performance, and conduct analytics. Categories include: strictly necessary, functional, performance/analytics, and advertising (if enabled).

Consent and controls: we provide a cookie banner and preference center. In the EEA/UK, we use opt-in for non-essential cookies. Elsewhere, you can opt out of advertising cookies and manage analytics cookies in the preference center or via your browser settings.

Global Privacy Control (GPC): where required by law, we treat a valid GPC signal as an opt-out from cross-context behavioral advertising.

Data Retention

We retain personal information only as long as needed for the purposes described above, to comply with our legal obligations, and to resolve disputes.

By default, account-level data is deleted or de-identified within 90 days after account closure or termination, subject to backup aging and retention of billing/transaction records for seven years for tax and accounting.

Security

We use administrative, technical, and physical safeguards appropriate to the nature of the information, including encryption in transit and at rest, role-based access controls, MFA for privileged accounts, logging/monitoring, vulnerability management, and incident response procedures.

While we take reasonable measures, no security program is perfect. We cannot guarantee absolute security.

Your Privacy Rights

California (CCPA/CPRA): subject to verification and applicable exceptions, you may request access, deletion, and correction of your personal information, and opt out of sale/sharing (we do not sell; we only share for advertising with your consent, which you can withdraw in the cookie preferences). We do not use Sensitive Personal Information for additional purposes that require a right to limit.

Colorado/Connecticut/Virginia/Utah and other states: you may have rights to access, delete, correct, and opt out of targeted advertising or certain profiling. We honor these rights where applicable.

EEA/UK (GDPR) when applicable: rights include access, rectification, erasure, restriction, portability, objection, and lodging a complaint with your supervisory authority. Our legal bases may include performance of a contract, legitimate interests, compliance with legal obligations, and consent (where used).

How to exercise: submit requests via adgentia.ai/privacy-request or email privacy@adgentia.ai. We will verify your identity before fulfilling a request and respond within 45 days (extendable by 45 as permitted).

International Transfers

We primarily process data in the United States. If you access the Services from outside the U.S., your information may be transferred to the U.S. or other jurisdictions that may have different data protection rules.

For EEA/UK transfers, we use appropriate safeguards such as the EU Standard Contractual Clauses and the UK IDTA/Addendum. Some subprocessors may participate in the Data Privacy Framework.

Controller vs. Processor Roles

When a Customer uses the Services, Adgentia typically processes personal information as a processor/service provider, following the Customer's instructions under a Data Processing Addendum (DPA).

Adgentia is a controller for limited data such as website visitor analytics, our account administration, billing, security logs, and service communications.

Children's Privacy

The Services are not directed to children. We do not knowingly collect personal information from children under 13 (or under 16 where law restricts targeted advertising). If you believe a child provided information, contact privacy@adgentia.ai.

Third-Party Websites and Integrations

Third-party links and integrations (e.g., Google Ads, Meta Ads, Search Console, analytics, CMS connectors) are governed by those providers' privacy policies. Review their policies and permissions before enabling integrations.

Notice at Collection for California

Categories of personal information collected: identifiers; account and commercial information; internet/electronic activity; in-app content/configurations; integration metadata; communications; and inferences.

Purposes: service delivery and administration; security; billing; analytics and product improvement; compliance; shared services with QGA.

Retention: lifecycle-based; 90 days after account closure for deletion/de-identification; seven years for finance/tax.

Sale/Sharing: we do not sell personal information; we share for advertising only with consent, which you can manage at any time in cookie preferences.

Do Not Track and GPC

We do not respond to "Do Not Track" browser signals. We honor valid Global Privacy Control signals where required.

Changes to This Policy

We may update this Policy from time to time. If we make material changes, we will notify you via email or prominent notice in the Services. The effective date at the top shows the latest revision.

Jurisdiction

This Policy and any disputes arising from it are governed by Delaware law, with exclusive venue in the state and federal courts located in Delaware, subject to applicable law.

Adgentia, Inc. is a wholly owned subsidiary of Quantum Grade Analytics, Inc. (Delaware, USA).

Subprocessors

We maintain a current list of subprocessors at adgentia.ai/subprocessors and provide notice of material changes there or within the Services.

Contact

Support: support@adgentia.ai

Security: security@adgentia.ai

Privacy / Data Rights: privacy@adgentia.ai