Legal

Privacy Policy

Effective Date: January 1, 2025 Last Updated: March 2025 Metovix — Statistical Analysis Platform
Privacy at a Glance
Your research data is processed locally in your browser. We collect only what is necessary to operate the Service — account details, usage analytics, and payment information. We do not sell your data to third parties. You can request deletion of your account data at any time.
01

Overview

Metovix ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy describes how we collect, use, and protect information when you use our statistical analysis platform ("Service").

This policy applies to all users of the Service, including visitors to our website, registered users on free plans, and paid subscribers. By using the Service, you consent to the data practices described in this Policy.

02

Information We Collect

We collect the following categories of information:

CategoryWhat We CollectWhen Collected
Account InformationEmail address, password (hashed), account creation dateWhen you register
Usage DataFeatures used, session duration, error logs, pages visitedDuring use of the Service
Payment InformationBilling details processed via our payment provider (we do not store card numbers)When you subscribe
Device & BrowserBrowser type, operating system, screen resolution, IP addressAutomatically on access
CommunicationsEmail content when you contact our support teamWhen you contact us

We do not collect or require your name, postal address, phone number, or other identifying information beyond your email address to operate the Service.

03

How We Use Information

We use the information we collect for the following purposes:

  • Service Operation: To create and manage your account, process payments, and provide access to features based on your plan.
  • Service Improvement: To understand how features are used, identify bugs, and prioritise development based on user behaviour.
  • Communications: To send account-related emails (password reset, billing notifications, service announcements). We do not send unsolicited marketing emails without your opt-in consent.
  • Security: To detect and prevent fraudulent activity, unauthorised access, and abuse of the Service.
  • Legal Compliance: To comply with applicable laws, regulations, and legal processes.

We do not sell, rent, or trade your personal information to third parties for their marketing purposes.

04

Research Data

Your Research Data Stays Yours
Statistical data you enter into Metovix — study outcomes, effect sizes, variance values, and other research inputs — is processed locally in your browser. We do not store this data on our servers unless you explicitly use a cloud save or synchronisation feature.

When cloud save features are used, your research data is stored in encrypted form and is associated with your account. This data is used solely to provide the Service to you. We do not analyse, aggregate, or share individual research datasets.

You retain full ownership of your research data at all times. You may export or delete your data at any time through your account settings.

05

Cookies & Tracking

We use the following types of cookies and local storage:

  • Essential Cookies: Required for the Service to function — authentication state, session management, user preferences (e.g. theme setting). These cannot be disabled without breaking core functionality.
  • Analytics Cookies: Used to understand aggregate usage patterns. We use privacy-focused analytics that do not build individual user profiles or share data with advertising networks.

We do not use tracking pixels, fingerprinting, cross-site tracking, or advertising cookies. You may clear cookies and local storage at any time through your browser settings, which will log you out of the Service.

06

Third-Party Services

We use the following third-party services to operate the Service:

  • Authentication & Database: Supabase — for account management and secure authentication. Your email address and authentication tokens are stored on Supabase infrastructure.
  • Payment Processing: A PCI-compliant payment processor handles all billing. We do not store your payment card details.
  • Hosting: The Service is hosted on industry-standard cloud infrastructure with security certifications.

Each third-party service operates under its own privacy policy. We select partners who maintain appropriate data protection standards. We do not share your personal data with third parties beyond what is necessary to operate the Service.

07

Data Retention

We retain your account information for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it for legal or compliance purposes (such as billing records, which may be retained for up to 7 years).

Usage analytics data is retained in aggregated, anonymised form and is not associated with your account after deletion.

08

Data Security

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. These measures include:

  • Encrypted transmission of all data (HTTPS/TLS)
  • Hashed and salted password storage — we never store passwords in plain text
  • Encrypted storage for any cloud-saved research data
  • Access controls limiting who within our team can access user data

No method of transmission over the internet or electronic storage is 100% secure. While we take reasonable steps to protect your data, we cannot guarantee absolute security.

09

Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate or incomplete data.
  • Deletion: Request deletion of your account and associated personal data.
  • Portability: Request your data in a structured, machine-readable format.
  • Restriction: Request restriction of processing in certain circumstances.
  • Objection: Object to processing of your data in certain circumstances.

To exercise any of these rights, contact us at privacy@metovix.com. We will respond within 30 days.

10

Children's Privacy

The Service is not directed at individuals under 18 years of age. We do not knowingly collect personal information from anyone under 18. If you believe we have inadvertently collected information from a minor, please contact us and we will promptly delete it.

11

International Users

The Service is operated globally. If you access the Service from outside the country where our servers are located, your information may be transferred to and processed in that country. By using the Service, you consent to such transfer in accordance with this Policy.

For users in the European Economic Area (EEA) or United Kingdom: if you believe we are processing your personal data under GDPR or UK GDPR, the rights described in Section 9 apply to you. Our lawful basis for processing is performance of a contract (to provide the Service) and legitimate interests (to improve and secure the Service).

12

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by updating the "Last Updated" date and, where appropriate, by sending an email notification. Your continued use of the Service after any change constitutes acceptance of the updated Policy.

13

Contact

For privacy-related questions, data requests, or to exercise your rights, contact us:

Metovix Privacy
Email: privacy@metovix.com
Website: metovix.com