Privacy Policy

Last updated: January 26, 2026

1. Introduction

This Privacy Policy explains how Distil ("we," "us," or "our") collects, uses, and protects your personal information when you use our feedback management platform. We are committed to protecting your privacy and handling your data responsibly.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Email address, name, workspace name
  • Feedback Content: Customer feedback, problem statements, and any data you enter into the platform
  • Payment Information: Processed by Stripe (we do not store credit card numbers)
  • Communications: Messages you send to our support team

2.2 Information Collected Automatically

  • Usage Data: Pages visited, features used, time spent, actions taken
  • Device Information: Browser type, operating system, IP address
  • Cookies: Session identifiers, authentication tokens, analytics cookies

3. How We Use Your Information

We use your information to:

  • Provide and maintain the Service
  • Process your payments and send receipts
  • Generate AI-powered weekly briefs based on your feedback data
  • Send you product updates and important notifications
  • Respond to your support requests and communicate with you
  • Analyze usage patterns to improve the Service
  • Detect and prevent fraud or abuse
  • Comply with legal obligations

4. How We Share Your Information

We do not sell your personal information. We may share your data with:

4.1 Service Providers

  • Supabase: Database and authentication (hosting your account and feedback data)
  • Stripe: Payment processing
  • Vercel: Application hosting and infrastructure
  • Analytics Tools: PostHog, Google Analytics, or similar (usage analytics)
  • OpenAI: AI-powered brief generation (your feedback is processed but not used for model training)

4.2 Legal Requirements

We may disclose your information if required by law, court order, or government request, or to protect our rights and safety.

4.3 Business Transfers

If Distil is acquired or merged with another company, your information may be transferred to the new owners. We will notify you before your data is subject to a different privacy policy.

5. Data Security

We implement industry-standard security measures to protect your data:

  • Encryption in transit (HTTPS/TLS)
  • Encryption at rest for sensitive data
  • Regular security audits and updates
  • Access controls and authentication
  • Secure backup and recovery procedures

However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.

6. Data Retention

We retain your data for as long as your account is active or as needed to provide the Service. If you cancel your account, we will delete your data within 30 days unless legally required to retain it. You may request an export of your data before deletion.

7. Your Rights (GDPR & CCPA)

Depending on your location, you may have the following rights:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate or incomplete data
  • Deletion: Request deletion of your personal data ("right to be forgotten")
  • Portability: Request a machine-readable export of your data
  • Objection: Object to processing of your data for certain purposes
  • Restriction: Request limitation of how we use your data
  • Opt-Out: Unsubscribe from marketing emails at any time

To exercise these rights, contact us at hello@distilhq.com. We will respond within 30 days.

8. Cookies and Tracking

We use cookies and similar technologies to:

  • Keep you signed in
  • Remember your preferences
  • Analyze how you use the Service
  • Improve performance and user experience

You can control cookies through your browser settings. Disabling cookies may affect functionality of the Service.

9. Third-Party Links

The Service may contain links to third-party websites or integrations (e.g., Linear). We are not responsible for the privacy practices of these third parties. We encourage you to read their privacy policies.

10. Children's Privacy

The Service is not intended for users under 18 years old. We do not knowingly collect data from children. If you believe we have inadvertently collected data from a child, please contact us immediately.

11. International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data in compliance with applicable laws, including GDPR.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by email or through a notice on the Service. Your continued use after such changes constitutes acceptance of the updated policy.

13. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

Email: hello@distilhq.com
Support: hello@distilhq.com

Stop guessing. Start building from customer evidence.

No credit card required