Production trust center
Privacy
How AetherQuant handles public-site performance data and account-scoped product information.
Effective 2026-08-01
Public website measurement
Where the domain is proxied through Cloudflare, Cloudflare may inject its cookie-free performance beacon and measure page and browser performance without reading cookies, local storage, or form contents. Cloudflare edge totals can include crawlers and security probes, so they are not treated as customer counts.
Optional paid-search campaign context
A reviewed Google Manual CPC URL may include exact utm_source, utm_medium, utm_campaign, and matched-keyword labels. The tagged URL is processed by the site's hosting and security providers. Only after you choose “Allow in this tab,” the browser keeps the reviewed labels, relative landing path, and a random identifier in tab-scoped session storage. No application record is created before sign-in. After Auth0 returns in the same tab, the dashboard can save one account-linked first touch, associate it with the first successful post-touch operation, and expire it after 180 days. Expired records are physically deleted by the next daily authenticated maintenance run, normally in less than 181 days. The attribution record and aggregate report store or emit no direct identity, but the restricted internal account reference remains joinable inside the product database. The implementation does not collect Google click identifiers, email addresses, fingerprints, draft content, or payment data and does not load a Google analytics or advertising script. Choosing “No thanks,” closing the tab, blocked storage, an unreviewed label, or an interrupted capture leaves attribution unknown.
Account and product data
Market-research questions, evidence references, workspace artifacts, usage records, and account metadata that a signed-in customer deliberately submits.
Auth0 processes sign-in and Stripe processes checkout and subscription billing when a customer chooses those services. Payment-card data is entered on Stripe's hosted page and is not stored by this product.
Operational records
Bounded request metadata, usage events, audit events, and error diagnostics are retained to secure the service, enforce quotas, investigate failures, and support the account. Logs must not contain API-key values, payment data, or arbitrary customer payloads.
Your choices
You can decline optional campaign measurement, avoid creating an account, close the tagged tab before sign-in, revoke product API keys, use Stripe's billing portal where available, and request account assistance through the support or onboarding channel associated with your account.